293 Commits (e4a1ebf721b91526861d588542d15a921c4f8954)

Author SHA1 Message Date
Moritz Heiber ecf40d09ed Disable Same-Site cookie implementation to fix SSO issues on WebKit browsers (#9819) 6 years ago
Nolan Lawson f05eb67081 Enable immutable caching for S3 objects (#9722) 6 years ago
Eugen Rochko 5d2fc6de32
Add REST API for creating an account (#9572) 6 years ago
Eugen Rochko 240c122767
Skip mailer job retries when a record no longer exists (#9590) 6 years ago
ThibG 3f12c07ff5 Use same CORS policy for /@:username and /users/:username (#9485) 6 years ago
ThibG 84e5ed43e7 Preload common JSON-LD contexts (#9412) 6 years ago
Ben Lubar 13e049d772 Allow cross-origin requests to /.well-known/* URLs. (#9083) 6 years ago
Eugen Rochko a38a452481
Add unread indicator to conversations (#9009) 6 years ago
ThibG 8ab081ec32 Add manifest_src to CSP, add blob to connect_src (#8967) 6 years ago
Eugen Rochko edc7f895be
Fix CSP headers blocking media and development environment (#8962) 6 years ago
ThibG 2d27c11061 Set Content-Security-Policy rules through RoR's config (#8957) 6 years ago
Sascha b2a57a5d6f add ffmpeg initializer (#8855) 6 years ago
ashleyhull-versent f194857ac9 rubocop issues - Cleaning up (#8912) 6 years ago
aus-social 0a4739c732 lint pass 2 (#8878) 6 years ago
aus-social 1f98eae1cf Lint pass (#8876) 6 years ago
Yamagishi Kazutoshi 65f04e6046 Fix that Rails.cache information could not be sent via StatsD (#8831) 6 years ago
Eugen Rochko f4d549d300
Redesign forms, verify link ownership with rel="me" (#8703) 6 years ago
luzpaz 40dd19be37 Misc. typos (#8694) 6 years ago
Sorin Davidoi 6f3d934bc1 feat(cookies): Use the same-site attribute to lax (#8626) 6 years ago
M Somerville 2bba6e582d Rename S3_CLOUDFRONT_HOST to S3_ALIAS_HOST. (#8423) 6 years ago
ThibG f06fa09962 Revert to using Paperclip's filesystem storage, and fix dangling records in remove_remote (#8339) 6 years ago
Immae b0f4fe456b Add ldap search filter (#8151) 6 years ago
Eugen Rochko 018a9e4e7f
Add post-deployment migration system (#8182) 6 years ago
abcang 69bf116345 Add secure option to additional cookie (#8069) 6 years ago
Eugen Rochko 1f6ed4f86a
Add more granular OAuth scopes (#7929) 6 years ago
MIYAGI Hikaru ddd0bb69e1 Merge `HIDDEN_SERVICE_VIA_TRANSPARENT_PROXY` into `ALLOW_ACCESS_TO_HIDDEN_SERVICE` (#7901) 6 years ago
Eugen Rochko 0df91c7b1e
Add dat, dweb, ipfs, ipns, ssb, gopher protocols to URL extractor (#7810) 7 years ago
Eugen Rochko 53f0452b70
Remove rack-timeout (#7809) 7 years ago
Eugen Rochko d87649db07
Disable AMS logging (#7623) 7 years ago
MIYAGI Hikaru 919eef3098 User agent for WebFinger (#7531) 7 years ago
Eugen Rochko b4fb766b23
Add REST API for Web Push Notifications subscriptions (#7445) 7 years ago
Hugo Gameiro ea4e243303 Improve OpenStack v3 compatibility (#7392) 7 years ago
Akihiko Odaki a7e71bbd08 Add a missing question mark in rack_attack.rb (#7338) 7 years ago
Akihiko Odaki b1d4471e36 Throttle media post (#7337) 7 years ago
Eugen Rochko cb5b5cb5f7
Slightly reduce RAM usage (#7301) 7 years ago
MIYAGI Hikaru f58dcbc981 HTTP proxy support for outgoing request, manage access to hidden service (#7134) 7 years ago
Yamagishi Kazutoshi 50529cbceb Upgrade Rails to version 5.2.0 (#5898) 7 years ago
Eugen Rochko 49bbef1202
Use RAILS_LOG_LEVEL to set log level of Sidekiq, too (#7079) 7 years ago
Eugen Rochko 80a944c882
Log rate limit hits (#7096) 7 years ago
Eugen Rochko d4de2239b0
Add a circuit breaker for ActivityPub deliveries (#7053) 7 years ago
Yamagishi Kazutoshi 28384c1771 Revert "Revert "Upgrade Paperclip to version 6.0.0" (#6807)" (#6808) 7 years ago
Eugen Rochko ac49c7932d
Add LDAP_TLS_NO_VERIFY option, don't require LDAP_ENABLED outside .env (#6845) 7 years ago
Alexander 33ee347c99 rename pam email environment variable to something more understandable and default to LOCAL_DOMAIN (better fallback) (#6833) 7 years ago
Eugen Rochko 40871caa4b
Revert "Upgrade Paperclip to version 6.0.0" (#6807) 7 years ago
Yamagishi Kazutoshi b88fcd53f7 Upgrade Paperclip to version 6.0.0 (#6754) 7 years ago
Effy Elden dd9d00d293 Add additional first_name and last_name SAML attribute statement options, and modify Omniauthable concern to use full_name or first_name + last_name if not available (#6669) 7 years ago
Alexander 42fe05dea1 fix logic for pam_controlled_service (#6599) 7 years ago
Eugen Rochko 47bdb9b33b
Fix #942: Seamless LDAP login (#6556) 7 years ago
Akihiko Odaki 2e8a492e88 Raise Mastodon::HostValidationError when host for HTTP request is private (#6410) 7 years ago
Ghislain Loaec e668180044 New variable OAUTH_REDIRECT_AT_SIGN_IN + Ref #6538 (not only SAML strategies) (#6540) 7 years ago