##// END OF EJS Templates
auth: don't break hashing in case of user with empty password....
auth: don't break hashing in case of user with empty password. In some cases such as LDAP user created via external scripts users might set the passwords to empty. The hashing uses the md5(password_hash) to store reference to detect password changes and forbid using the same password. In case of pure LDAP users this is not valid, and we shouldn't raise Errors in such case. This change makes it work for empty passwords now.

File last commit:

r1:854a839a default
r2203:8a18c3c3 default
Show More
release-notes-2.2.2.rst
25 lines | 1.0 KiB | text/x-rst | RstLexer

|RCE| 2.2.2 |RNS|

General

  • released 2013-11-19
  • Push & pull up to 4x faster
  • Security fixes

News

  • Optimized the number of permission tree builds when doing push and pull operations which leads to a significant (up to 4x) performance increase.

Fixes

  • Fixed issue with pygrack using os.cwd for working dir, that caused issues in some operating systems.
  • Fixed dulwich parents function call used when building DAG graph.
  • Fixed issue with revoke permissions on repository group when apply to children was set to 'none'. This call could silently fail without proper notification to users.
  • Fixed issues with Mercurial hooks when creating remote repositories.
  • Strip passwords from clone urls for logging output.
  • Fixed LDAP issues with unicode. LDAP bind does not support unicode passwords.
  • Fixed admin UI which broke when using long names.
  • Fixed rendering of READMEs that contained different line endings.
  • Fixed issue with admin users of groups which could create repositories at top-level.