##// END OF EJS Templates
auth: add scope and login restrictions to rhodecode plugin, and scope restriction to token plugin....
auth: add scope and login restrictions to rhodecode plugin, and scope restriction to token plugin. - allows limiting the usage of builtin auth to HTTP only (so force usage of tokens) - allows migration to something like saml keeping only super-admin for login.

File last commit:

r1:854a839a default
r3392:5cc5c872 default
Show More
release-notes-2.2.7.rst
13 lines | 256 B | text/x-rst | RstLexer
/ docs / release-notes / release-notes-2.2.7.rst
project: added all source files and assets
r1 |RCE| 2.2.7 |RNS|
-----------------
General
^^^^^^^
* 2015-02-03
Fixes
^^^^^
* Security: fixed severe issue with leaking of auth_tokens(api_keys) on the
following API calls; ``get_repo``,
``update_repo``, ``get_locks``, and ``get_user_groups``.