##// END OF EJS Templates
security: limit the maximum password lenght to 72 characters to prevent possible...
security: limit the maximum password lenght to 72 characters to prevent possible server side resource consumption attack. - bcrypt heavy computation can lead to DOS using a very long password .eg 10**8 lenght. - we allowed this on registration or on password update

File last commit:

r1:854a839a default
r2192:a51e727d stable
Show More
release-notes-2.2.5.rst
19 lines | 535 B | text/x-rst | RstLexer

|RCE| 2.2.5 |RNS|

General

  • released 2014-02-13
  • Improvements for larger setups
  • Extended API calls

News

  • Better support for larger enterprise hierarchies with more repository group levels.
  • Added filters to permission boxes which makes managing of many thousand repo groups easier.
  • The My Account page requires the old password for a password change.
  • Removing of deprecated parts in .ini files.
  • Extended API: added permission delegation on user groups calls.

Fixes

  • No fixes