##// END OF EJS Templates
security: limit the maximum password lenght to 72 characters to prevent possible...
security: limit the maximum password lenght to 72 characters to prevent possible server side resource consumption attack. - bcrypt heavy computation can lead to DOS using a very long password .eg 10**8 lenght. - we allowed this on registration or on password update

File last commit:

r1:854a839a default
r2192:a51e727d stable
Show More
release-notes-3.8.1.rst
28 lines | 542 B | text/x-rst | RstLexer
/ docs / release-notes / release-notes-3.8.1.rst
project: added all source files and assets
r1 |RCE| 3.8.1 |RNS|
-----------------
Release Date
^^^^^^^^^^^^
- 2016-03-10
General
^^^^^^^
- Fixed the problem due to a missing index when migrating from very old databases.
- Fixed problem with being unable to delete users which have set permissions on user groups.
Authentication
^^^^^^^^^^^^^^
- Take user group base DN in LDAP filtering.
API
^^^
- Better error handling if an inactive user account is used to make an API call.
VCS Server
^^^^^^^^^^
- Avoid error message around missing “object_store” being printed in logs.