summaryrefslogtreecommitdiffstats
path: root/Http/Firewall
Commit message (Expand)AuthorAgeFilesLines
* Merge branch '2.7' into 2.8v2.8.10Nicolas Grekas2016-08-261-1/+1
|\
| * SecurityBundle:BasicAuthenticationListener: removed a default argument on get...Dawid Nowak2016-08-011-1/+1
* | [Security] Fix deprecated usage of DigestAuthenticationEntryPoint::getKey() i...Maxime STEINHAUSSER2016-07-081-1/+1
* | Merge branch '2.7' into 2.8Fabien Potencier2016-05-092-0/+10
|\ \ | |/
| * Merge branch '2.3' into 2.7v2.7.13Fabien Potencier2016-05-092-0/+10
| |\
| | * limited the maximum length of a submitted usernamev2.3.42v2.3.41origin/2.3Fabien Potencier2016-05-091-0/+5
* | | Merge branch '2.7' into 2.8Fabien Potencier2016-04-051-1/+2
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.7Fabien Potencier2016-04-051-1/+2
| |\ \ | | |/
| | * [Security] Fixed SwitchUserListener when exiting an impersonication with Anon...Grégoire Pineau2016-04-041-1/+2
* | | Merge branch '2.7' into 2.8Fabien Potencier2016-01-121-4/+2
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.7Fabien Potencier2016-01-121-4/+2
| |\ \ | | |/
| | * [2.3] Static Code Analysis for ComponentsVladimir Reznichenko2016-01-121-4/+2
* | | [Security][SecurityBundle] Use csrf_token_id instead of deprecated intentionJakub Zalas2015-11-283-6/+36
* | | removed usage of the deprecated StringUtils::equals() methodFabien Potencier2015-11-231-2/+1
* | | Merge branch '2.7' into 2.8Fabien Potencier2015-11-232-3/+5
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.7v2.7.7Fabien Potencier2015-11-232-3/+5
| |\ \ | | |/
| | * security #16631 n/a (xabbuh)v2.3.35Fabien Potencier2015-11-231-0/+8
| | |\
| | | * migrate session after remember me authenticationChristian Flothmann2015-11-231-0/+8
| | * | prevent timing attacks in digest auth listenerChristian Flothmann2015-11-231-1/+2
| | |/
* | | Renamed key to secretv2.8.0-BETA1WouterJ2015-11-071-4/+4
* | | Merge branch '2.7' into 2.8Fabien Potencier2015-10-171-7/+14
|\ \ \ | |/ /
| * | [Security] Use SessionAuthenticationStrategy on RememberMe loginSergey Novikov2015-10-161-7/+14
* | | deprecate finding deep items in request parametersChristian Flothmann2015-09-303-11/+14
|/ /
* | fixes CSFabien Potencier2015-08-241-1/+1
* | Merge branch '2.3' into 2.7v2.7.3Nicolas Grekas2015-07-281-2/+6
|\ \ | |/
| * [Security] Do not save the target path in the session for a stateless firewallGrégoire Pineau2015-07-261-2/+6
* | Merge branch '2.6' into 2.7Fabien Potencier2015-07-261-2/+2
|\ \
| * \ Merge branch '2.3' into 2.6v2.6.11Fabien Potencier2015-07-261-2/+2
| |\ \ | | |/
| | * [Security] removed useless else condition in SwitchUserListener class.Hugo Hamon2015-07-221-2/+2
* | | Merge branch '2.6' into 2.7Nicolas Grekas2015-07-011-1/+2
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.6Nicolas Grekas2015-06-301-1/+2
| |\ \ | | |/
| | * [Security] Initialize SwitchUserEvent::targetUser on attemptExitUserRichard van Laak2015-06-281-1/+2
| * | Merge branch '2.3' into 2.6Fabien Potencier2015-06-281-1/+1
| |\ \ | | |/
| | * Fix quoting style consistency.ogizanagi2015-06-281-1/+1
| * | Fix mergeNicolas Grekas2015-06-181-1/+1
* | | Fix mergeNicolas Grekas2015-06-181-1/+1
* | | Merge branch '2.6' into 2.7Nicolas Grekas2015-06-185-13/+13
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.6Nicolas Grekas2015-06-185-13/+13
| |\ \ | | |/
| | * Standardize the name of the exception variablesJavier Eguiluz2015-06-155-13/+13
* | | Added a small Upgrade note regarding security.contextIltar van der Berg2015-06-151-5/+1
* | | Change error message to reflect SecurityContext deprecation.Nicholas Byfleet2015-06-051-1/+1
* | | Merge branch '2.6' into 2.7v2.7.0Fabien Potencier2015-05-221-1/+1
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.6v2.6.9v2.6.8Fabien Potencier2015-05-221-1/+1
| |\ \ | | |/
| | * Avoid redirection to XHR URIsAlessandro Siragusa2015-05-201-1/+1
* | | Merge branch '2.6' into 2.7Nicolas Grekas2015-04-181-1/+1
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.6Nicolas Grekas2015-04-181-1/+1
| |\ \ | | |/
| | * CS fixesDariusz Ruminski2015-04-161-1/+1
| * | Merge branch '2.3' into 2.6Fabien Potencier2015-03-221-1/+1
| |\ \ | | |/
| | * CS: Convert double quotes to single quotesDariusz Ruminski2015-03-211-1/+1
* | | Merge branch '2.6' into 2.7Fabien Potencier2015-02-111-0/+3
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.6Fabien Potencier2015-02-111-0/+3
| |\ \ | | |/
| | * bug #13466 [Security] Remove ContextListener's onKernelResponse listener as i...Fabien Potencier2015-02-051-0/+3
| | |\
| | | * [Security] Remove ContextListener's onKernelResponse listener as it is usedDave Marshall2015-02-051-0/+3
* | | | Merge branch '2.6' into 2.7Fabien Potencier2015-01-252-3/+3
|\ \ \ \ | |/ / /
| * | | Merge branch '2.5' into 2.6v2.6.4Fabien Potencier2015-01-252-3/+3
| |\ \ \
| | * \ \ Merge branch '2.3' into 2.5v2.5.12v2.5.11v2.5.10origin/2.5Fabien Potencier2015-01-252-3/+3
| | |\ \ \ | | | |/ /
| | | * | Removed dead code and various cleaningv2.3.25sarah khalil2015-01-212-3/+3
| | | |/
* | | | [DX] Attempt to improve logging messages with parametersIltar van der Berg2015-01-1611-49/+51
* | | | added type-hintFabien Potencier2015-01-0816-138/+57
* | | | [Security] removed usage of the deprecated SecurityContextInterfaceFabien Potencier2015-01-0816-127/+203
* | | | Merge branch '2.6' into 2.7Fabien Potencier2014-12-227-7/+8
|\ \ \ \ | |/ / /
| * | | Merge branch '2.5' into 2.6Fabien Potencier2014-12-227-7/+8
| |\ \ \ | | |/ /
| | * | Merge branch '2.3' into 2.5Fabien Potencier2014-12-227-7/+8
| | |\ \ | | | |/
| | | * [2.3] CS And DocBlock FixesGraham Campbell2014-12-227-7/+8
* | | | [Security] Added the triggering of the security.interactive_login event after...sarah khalil2014-12-161-6/+17
|/ / /
* | | Merge branch '2.5' into 2.6Fabien Potencier2014-12-051-5/+5
|\ \ \ | |/ /
| * | CS fixesGraham Campbell2014-12-041-5/+5
* | | Merge branch '2.5' into 2.6v2.6.1Fabien Potencier2014-12-021-1/+1
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.5v2.5.8Fabien Potencier2014-12-021-1/+1
| |\ \ | | |/
| | * Docblock fixesGraham Campbell2014-11-301-1/+1
* | | Merge branch '2.5'v2.6.0-BETA1Fabien Potencier2014-11-031-3/+3
|\ \ \ | |/ /
| * | Remove aligned '=>' and '='Disquedur2014-10-301-3/+3
* | | Merge branch '2.5'Fabien Potencier2014-10-264-16/+16
|\ \ \ | |/ /
| * | Merge branch '2.3' into 2.5Fabien Potencier2014-10-264-15/+15
| |\ \ | | |/
| | * Remove aligned '=>' and '='Disquedur2014-10-264-15/+15
* | | [DX] Moved constants to a final classIltar van der Berg2014-09-294-5/+9
* | | [Security] fixed fatal errorFabien Potencier2014-09-271-1/+2
* | | [Security] Fix BC break introduces in #10694Romain Neutron2014-09-261-2/+5
* | | Merge branch '2.5'Bernhard Schussek2014-09-251-0/+6
|\ \ \ | |/ /
| * | Merge branch '2.4' into 2.5Bernhard Schussek2014-09-251-0/+6
| |\ \
| | * | fixed bugFabien Potencier2014-09-241-5/+6
| | * | added the possibility to return null from SimplePreAuthenticationListeneradenkejawen2014-09-231-2/+7
* | | | feature #10694 [Security] Call AuthenticationManager in AnonymousAuthenticati...Fabien Potencier2014-09-251-7/+18
|\ \ \ \
| * | | | Call AuthenticationManager in AnonymousAuthenticationListenerKacper Gunia2014-04-111-7/+18
* | | | | feature #10698 [Security] Added a REMOTE_USER based listener to security fire...Fabien Potencier2014-09-231-0/+49
|\ \ \ \ \
| * | | | | [Security] Added a REMOTE_USER based listener to security firewallsMaxime Douailin2014-09-231-0/+49
| |/ / / /
* | | | | feature #10793 [Security] Allow exception bubbling in RememberMeListener (lst...Fabien Potencier2014-07-251-1/+8
|\ \ \ \ \
| * | | | | Allow exception bubbling in RememberMeListenerLars Strojny2014-07-241-1/+8
* | | | | | feature #10792 [Security] Allow overloading ContextListener::refreshUser() (l...Fabien Potencier2014-06-031-1/+1
|\ \ \ \ \ \ | |_|_|/ / / |/| | | | |
| * | | | | Allow overloading ContextListener::refreshUser()Lars Strojny2014-04-271-1/+1
| |/ / / /
* | | | | [Security] removed an unused parameter in some private methodsv2.5.0-RC1v2.5.0Issei.M2014-05-171-4/+4
| |_|/ / |/| | |
* | | | [Security] removed $csrfTokenManager type hint from SimpleFormAuthenticationL...v2.4.4Choong Wei Tjeng2014-04-251-1/+1
|/ / /
* | | Merge branch '2.3' into 2.4Fabien Potencier2014-04-221-3/+10
|\ \ \ | | |/ | |/|
| * | Fixed incompatibility of x509 auth with nginxalcaeus2014-04-221-3/+10
* | | Fix doc-blocksRomain Neutron2014-04-181-2/+2
* | | minor #10738 [2.4] Fix doc blocks (romainneutron)Fabien Potencier2014-04-181-2/+5
|\ \ \
| * | | Fix doc blocksRomain Neutron2014-04-181-2/+5
* | | | Merge branch '2.3' into 2.4Fabien Potencier2014-04-181-1/+1
|\ \ \ \ | |/ / / |/| / / | |/ /
| * | minor #10717 unified return null usages (fabpot)Fabien Potencier2014-04-181-1/+1
| |\ \
| | * | unified return null usagesFabien Potencier2014-04-161-1/+1