##// END OF EJS Templates
auth-token: expose fetched token in unified way into request attribute....
auth-token: expose fetched token in unified way into request attribute. - This will allow re-using exposed access token for HTTP views in single place - We will support also exposing tokens from url if special _auth_token will be used as url param - We'll no longer require double logic for extraction of URL/HEADER auth-tokens and have a single place to extract it.

File last commit:

r1637:c3a8855b stable
r4002:5f150e86 default
Show More
release-notes-4.7.1.rst
43 lines | 576 B | text/x-rst | RstLexer

|RCE| 4.7.1 |RNS|

Release Date

  • 2017-04-13

New Features

General

Security

  • Auth plugins: don't expose sensitive information inside DEBUG log for auth plugins (such as ldap access passwords). Each plugin now defines a black-list of arguments to hide from logging.

Performance

Fixes

  • Largefiles: fix errors on fetching largefiles from web interface when viewing from specific branch.
  • User Admin: fix problem with sorting for Mysql database.

Upgrade notes