##// END OF EJS Templates
auth: don't break hashing in case of user with empty password....
auth: don't break hashing in case of user with empty password. In some cases such as LDAP user created via external scripts users might set the passwords to empty. The hashing uses the md5(password_hash) to store reference to detect password changes and forbid using the same password. In case of pure LDAP users this is not valid, and we shouldn't raise Errors in such case. This change makes it work for empty passwords now.

File last commit:

r1167:c0cc2e45 default
r2203:8a18c3c3 default
Show More
release-notes-4.4.2.rst
41 lines | 766 B | text/x-rst | RstLexer
/ docs / release-notes / release-notes-4.4.2.rst
docs: updated changelog for 4.4.2
r994 |RCE| 4.4.2 |RNS|
-----------------
Release Date
^^^^^^^^^^^^
- 2016-10-17
New Features
^^^^^^^^^^^^
changelog: reformat changelog to put new features as first item.
r1167 General
^^^^^^^
- Packaging: pinned against rhodecode-tools 0.10.1
docs: updated changelog for 4.4.2
r994 Security
^^^^^^^^
changelog: reformat changelog to put new features as first item.
r1167 - Integrations: fix 500 error on integrations page when delegated admin
docs: updated changelog for 4.4.2
r994 tried to access integration page after adding some integrations.
Permission checks were to strict for delegated admins.
Performance
^^^^^^^^^^^
Fixes
^^^^^
changelog: reformat changelog to put new features as first item.
r1167 - Vcsserver: make sure we correctly ping against bundled HG/GIT/SVN binaries.
docs: updated changelog for 4.4.2
r994 This should fix a problem where system binaries could be used accidentally
by the RhodeCode.
changelog: reformat changelog to put new features as first item.
r1167 - LDAP: fixed email extraction issues. Empty email addresses from LDAP server
docs: updated changelog for 4.4.2
r994 will no longer take precedence over those stored inside RhodeCode database.