Daniel García
ec8028aef2
Merge pull request #979 from jjlin/admin-redirect
...
Use absolute URIs for admin page redirects
5 years ago
Daniel García
63cbd9ef9c
Update lettre to latest master
5 years ago
Daniel García
9cca64003a
Remove unused dependency and simple feature, update dependencies and fix some clippy lints
5 years ago
Jeremy Lin
819d5e2dc8
Use absolute URIs for admin page redirects
...
This is technically required per RFC 2616 (HTTP/1.1); some proxies will
rewrite a plain `/admin` path to an unexpected URL otherwise.
5 years ago
Christophe Gherardi
3b06ab296b
Delete the call to the map file
...
The file bootstrap.css.map is missing, the reference can be deleted.
5 years ago
Daniel García
0de52c6c99
Merge pull request #957 from jjlin/domain-whitelist
...
Domain whitelist cleanup and fixes
5 years ago
Daniel García
e3b00b59a7
Initial support for soft deletes
5 years ago
Daniel García
5a390a973f
Merge pull request #966 from BlackDex/issue-965
...
Fixed issue #965
5 years ago
BlackDex
1ee8e44912
Fixed issue #965
...
PostgreSQL updates/inserts ignored None/null values.
This is nice for new entries, but not for updates.
Added derive option to allways add these none/null values for Option<>
variables.
This solves issue #965
5 years ago
Jeremy Lin
86685c1cd2
Ensure email domain comparison is case-insensitive
5 years ago
Daniel García
e3feba2a2c
Merge pull request #960 from jjlin/admin-token
...
Warn on empty `ADMIN_TOKEN` instead of bailing out
5 years ago
Jeremy Lin
0a68de6c24
Warn on empty `ADMIN_TOKEN` instead of bailing out
...
The admin page will still be disabled.
Fixes #849 .
5 years ago
Daniel García
4be8dae626
Make web vault show a more informative error when browsers block WebCrypto in insecure contexts and update dependencies
5 years ago
Jeremy Lin
e4d08836e2
Make org owner invitations respect the email domain whitelist
...
This closes a loophole where org owners can invite new users from any domain.
5 years ago
Jeremy Lin
c2a324e5da
Clean up domain whitelist logic
...
* Make `SIGNUPS_DOMAINS_WHITELIST` override the `SIGNUPS_ALLOWED` setting.
Otherwise, a common pitfall is to set `SIGNUPS_DOMAINS_WHITELIST` without
realizing that `SIGNUPS_ALLOWED=false` must also be set.
* Whitespace is now accepted in `SIGNUPS_DOMAINS_WHITELIST`. That is,
`foo.com, bar.com` is now equivalent to `foo.com,bar.com`.
* Add validation on `SIGNUPS_DOMAINS_WHITELIST`. For example, `foo.com,`
is rejected as containing an empty token.
5 years ago
Daniel García
77f95146d6
Merge pull request #956 from jjlin/duo
...
Fix Duo auth failure with non-lowercased email addresses
5 years ago
Jeremy Lin
6cd8512bbd
Fix Duo auth failure with non-lowercased email addresses
5 years ago
Daniel García
843604c9e7
Merge pull request #939 from jjlin/attachment-size
...
Fix attachment size limit calculation
5 years ago
Jeremy Lin
7407b8326a
Fix attachment size limit calculation
...
The config values (in KB) need to be converted to bytes when comparing
against total attachment sizes.
5 years ago
Daniel García
adf47827c9
Make sure the data field is always returned, otherwise the mobile apps seem to have issues
5 years ago
Daniel García
5471088e93
Merge pull request #933 from jjlin/dockerfiles
...
Rebuild Dockerfiles to match latest Dockerfile.j2 template
5 years ago
Daniel García
4e85a1dee1
Update web vault to 2.13.2
5 years ago
Daniel García
ec60839064
Merge pull request #932 from jjlin/ws-fix
...
Fix WebSocket notifications
5 years ago
Jeremy Lin
d4bfa1a189
Rebuild Dockerfiles to match latest Dockerfile.j2 template
...
Picks up a couple of missed changes from b837348b
and ccf6ee79
.
5 years ago
Jeremy Lin
862d401077
Fix WebSocket notifications
...
Ignore a missing `id` query param; it's unclear what this ID represents,
but it wasn't being used in the existing bitwarden_rs code, and no longer
seems to be sent in the latest versions of the official clients.
5 years ago
Daniel García
255a06382d
Merge pull request #928 from jjlin/healthcheck
...
Healthcheck fixes/optimizations
5 years ago
Jeremy Lin
bbb0484d03
Healthcheck fixes/optimizations
...
* Switch healthcheck interval/timeout from 30s/3s to 60s/10s.
30s interval is arguably overkill, and 3s timeout is definitely too short
for lower end machines.
* Use HEALTHCHECK CMD exec form to avoid superfluous `sh` invocations.
* Add `--silent --show-error` flags to curl call to avoid progress meter being
shown in healthcheck logs.
5 years ago
Daniel García
93346bc05d
Merge pull request #927 from jjlin/healthcheck
...
Update healthcheck script to handle alternate base dir
5 years ago
Jeremy Lin
fdf50f0064
Update healthcheck script to handle alternate base dir
5 years ago
Daniel García
ccf6ee79d0
Update dependencies, mainly diesel and sqlite
5 years ago
Daniel García
91dd19473d
Merge pull request #922 from jjlin/device-push-token
...
Handle `devicePushToken`
5 years ago
Jeremy Lin
c06162b22f
Handle `devicePushToken`
...
Mobile push isn't currently supported, but this should get rid of spurious
`Detected unexpected parameter during login: devicepushtoken` warnings.
5 years ago
Daniel García
7a6a3e4160
Set the cargo version and allow changing it during build time with BWRS_VERSION.
...
Also renamed GIT_VERSION because that's not the only source anymore.
5 years ago
Daniel García
94341f9f3f
Fix token error while accepting invite
5 years ago
Daniel García
ff19fb3426
Merge pull request #919 from BlackDex/issue-908
...
Fixed issue #908
5 years ago
BlackDex
baac8d9627
Fixed issue #908
...
The organization uuid is most of the time within the uri path as a
parameter. But sometimes it only is there as a query value.
This fix checks both, and returns the uuid when possible.
5 years ago
BlackDex
669b101e6a
Fixing issue #908
...
Sometimes an org-uuid is not within the path but in a query value,
This fixes the check for that.
5 years ago
Daniel García
935f38692f
Merge pull request #918 from dani-garcia/revert-901-feature/opportunistic_tls
...
Revert "Use opportunistic TLS in SMTP connections"
5 years ago
Daniel García
d2d9fb08cc
Revert "Use opportunistic TLS in SMTP connections"
5 years ago
Daniel García
b85d548879
Merge pull request #916 from BlackDex/issue-759
...
Fixing issue #759 by disabling Foreign Key Checks.
5 years ago
BlackDex
35f30088b2
Fixing issue #759 by disabling Foreign Key Checks.
...
During migrations some queries are out of order regarding to foreign
keys.
Because of this the migrations fail when the sql database has this
enforced by default.
Turning of this check during the migrations will fix this and this is
only per session.
5 years ago
Daniel García
dce054e632
Merge pull request #912 from ymage/openssl_as_default
...
Fix alpine build with openssl crate as default
5 years ago
Ymage
ba725e1c25
Make openssl crate as default (non feature-flipped)
5 years ago
Ymage
b837348b25
Build as static
5 years ago
Daniel García
7d9c7017c9
Merge pull request #911 from BlackDex/upgrade-rocket
...
Upgrade rocket
5 years ago
Daniel García
d6b9b8bf0c
Merge pull request #876 from BlackDex/log-panics
...
Make panics logable (as warn)
5 years ago
BlackDex
bd09fe1a3d
Updated code so backtraces are logged also.
5 years ago
BlackDex
bcbe6177b8
Merge branch 'master' of https://github.com/dani-garcia/bitwarden_rs into log-panics
5 years ago
BlackDex
9b1d07365e
Updated ring
...
Some small changes to match the updated ring package.
5 years ago
BlackDex
37b212427c
Updated jsonwebtoken
...
Updated to the latest version of jsonwebtoken.
Some small code changes to match the new versions.
5 years ago