##// END OF EJS Templates
auth: don't break hashing in case of user with empty password....
auth: don't break hashing in case of user with empty password. In some cases such as LDAP user created via external scripts users might set the passwords to empty. The hashing uses the md5(password_hash) to store reference to detect password changes and forbid using the same password. In case of pure LDAP users this is not valid, and we shouldn't raise Errors in such case. This change makes it work for empty passwords now.

File last commit:

r1:854a839a default
r2203:8a18c3c3 default
Show More
release-notes-2.2.6.rst
26 lines | 942 B | text/x-rst | RstLexer

|RCE| 2.2.6 |RNS|

General

  • 2014-12-03

News

  • Repository locking requires at least write permission to repository.
  • API: added add/remove methods for extra fields
  • New repositories/ repository groups should be created using 0755 mode not 0777
  • Added editable owner field for repository groups
  • Added editable owner field for user groups
  • API: Permission delegation on grant/revoke user permission functions
  • Auth plugin can create user creation state on first login
  • New license logic

Fixes

  • Fix issue with unicode email addresses in custom gravatar template
  • Protect against empty author string
  • Fixed issue with multiprocess setup and cached global settings
  • Fixed issues with IIS and proxied ports
  • Fixed issue with mysql column size on installing RhodeCode
  • Fixed issue with API call for update repo when a repo inside a group was badly renamed when doing those calls