Benjamin Sonntag
7945034004
[fix] name of variable + fix of upgrade script
2018-06-24 19:05:59 +02:00
Benjamin Sonntag
5489387103
[fix] misc bugs in m_ssl (incorrect table and certificate name) + restart instead of reload if necessary in src/reload-certs
2018-06-24 19:02:11 +02:00
Benjamin Sonntag
649b2c55d6
[fix] removing the concept of shared cert in m_ssl
2018-06-24 18:38:47 +02:00
Benjamin Sonntag
9e4021141a
[fix] fixing apache conf to use new cert mode + fixing bug in ssl : number of bound variables does not match number of tokens
2018-06-24 18:34:42 +02:00
Benjamin Sonntag
d6c7d15028
[enh] simplify piwik class to do less things when unused
2018-06-24 17:24:36 +02:00
Benjamin Sonntag
bb3bd0b14c
[enh] ssl : reload-certs for sysadmin + misc ssl fixes (including set_variables)
2018-06-24 17:04:55 +02:00
Benjamin Sonntag
f1026cb26e
[enh] removing jquery ui (now a package) + fixing head.php, simpler unless you use bro_editor
2018-06-24 16:49:43 +02:00
Benjamin Sonntag
5a3b9c7a13
[fix] next ssl step: we start to use /etc/ssl/(certs|private)/alternc-<servicename>.(pem|key) as location for system service certificates, also, trying to use PdoException in case of PDO error (better for bug tracking)
2018-06-24 15:43:23 +02:00
Benjamin Sonntag
d13d093c09
[fix] misc ssl code issues
2018-06-23 17:13:36 +02:00
Benjamin Sonntag
f9d2c783e5
[fix] alternc-ssl + dom global missing
2018-06-23 17:11:57 +02:00
Benjamin Sonntag
719e1539b0
[fix] renaming update_certs, fixing deprecated usage of
2018-06-23 16:54:54 +02:00
Benjamin Sonntag
a2e22a8d1f
[fix] we check FIRST for certificate already existing in ssl->import_check()
2018-06-23 16:37:11 +02:00
Benjamin Sonntag
152551a8bb
[fix] removing unused deduplicate in ssl
2018-06-23 16:31:11 +02:00
Benjamin Sonntag
ac841451bc
[enh] ssl class should work now, including system certificates and auto renewal of vhosts etc.
2018-06-23 16:28:50 +02:00
Benjamin Sonntag
8232c1a318
[enh] moving hosting_vhost-ssl.sh to be launched systematically by update_domains.sh, and renamed to update_cert.sh
2018-06-23 14:59:38 +02:00
Benjamin Sonntag
9587ff1bfc
[enh] new generation of the m_ssl class: less code, no shared or ssl_action, simpler searchBestCert(), no duplicates in /var/lib/alternc/ssl/private/ etc. [NEED TESTS]
2018-06-23 13:05:10 +02:00
Benjamin Sonntag
8dc5c20fa5
[fix] remove now unused ico for menu icons (in css)
2018-06-23 11:49:49 +02:00
Benjamin Sonntag
2f00c01b48
[fix] Call to a member function rowCount() on boolean
2018-06-23 11:10:29 +02:00
Benjamin Sonntag
73376121e5
[enh] finishing the HTTPS preference code
2018-06-23 11:03:57 +02:00
Benjamin Sonntag
2ed4cbad21
[enh] finishing the HTTPS preference code
2018-06-23 10:35:08 +02:00
Benjamin Sonntag
6007a3dea2
adding provider to certificates + fixing cert search function
2018-06-22 22:49:43 +02:00
Benjamin Sonntag
3dbb4d68ac
function to get the list of valid certs for a fqdn
2018-06-22 19:38:05 +02:00
Benjamin Sonntag
997795b935
starting to implement ssl best cert finder
2018-06-22 19:04:03 +02:00
Benjamin Sonntag
ddbc6e2ff4
[fix] fixing variable issues
2018-06-22 19:03:48 +02:00
Benjamin Sonntag
46e21285d6
[fix] check that an imported ssl certificate doesn't already exist
2018-06-22 18:26:56 +02:00
Benjamin Sonntag
5079aa2e03
[enh] change the name of some variables
2018-06-22 17:37:04 +02:00
Benjamin Sonntag
09bb693480
[enh] adding HTTP/HTTPS/BOTH UI in the subdomain editor.
2018-06-22 16:31:23 +02:00
Benjamin Sonntag
f7c05c5e23
adding HTTPS status in subdomain view
2018-06-22 15:06:08 +02:00
Benjamin Sonntag
6e9c3c3c63
Merge remote-tracking branch 'origin/pr-255'
...
Fix #254 : Creating default domains for new members fails #255
2018-06-22 08:32:48 +02:00
Benjamin Sonntag
f48618d0e5
Merge remote-tracking branch 'origin/pr-235'
...
Fix #227 : Use stronger password hashes #235
2018-06-21 17:44:53 +02:00
Benjamin Sonntag
8166ceb58f
Merge remote-tracking branch 'origin/pr-244'
...
Fix #245 : Files default to unwritable when permissions are changed in… #246
2018-06-21 17:44:17 +02:00
Benjamin Sonntag
0217985655
Merge remote-tracking branch 'origin/pr-246'
...
https://github.com/AlternC/AlternC/pull/246
Fix #245 : Files default to unwritable when permissions are changed in… #246
2018-06-21 17:43:31 +02:00
cam.lafit
c8d94d2a50
SSL massive backport
...
* Now we integrate all alternc-feature in native alternc
* Files are backported as waiting by alternc
* Some files was renammed or moved to follow alternc installation
process
2018-06-21 17:26:27 +02:00
Kienan Stewart
ce80e3cdad
Fix #254 : Creating default domains for new members fails
...
A typo caused the check to see if domain delegation was allowed to
always fail.
2018-06-14 10:50:28 -04:00
Kienan Stewart
83d03b8ee7
Fix #245 : Files default to unwritable when permissions are changed in the file browser
2018-06-08 15:10:26 -04:00
Kienan Stewart
f39e72d58a
Fixes #243 : Fix typo in domain_name variable
2018-06-08 14:32:01 -04:00
Benjamin Sonntag
71ed8bf5f4
[fix] wrong field name in account creation in MySQL
2018-06-05 08:41:59 +02:00
Kienan Stewart
88f3457191
Use sha512 crypt to store ftp password hashes
2018-04-16 22:46:05 -04:00
Kienan Stewart
56cbd2f8b4
Move the sha512 crypt hash into it's own function
2018-04-16 22:35:41 -04:00
Kienan Stewart
294397e10f
Merge branch 'issue-227-dovecot_password' into issue-227-password_hashes
2018-04-16 22:27:19 -04:00
Kienan Stewart
00c1d55406
Generate SHA512-CRYPT hashes for e-mail addresses
2018-04-16 21:02:45 -04:00
Kienan Stewart
a609984d39
Fix invocations of password_hash()
2018-04-15 22:00:16 -04:00
Kienan Stewart
971e38778f
Update stored password hash on user login.
...
If an md5 hash is stored, a new hash will be calculated and stored.
2018-04-15 19:03:57 -04:00
Kienan Stewart
b5382bb13b
Replace _password_verify with password_verify
...
PHP's password_verify function does know how to recognize md5 hashes: a custom
check is not necessary.
2018-04-15 19:02:32 -04:00
Kienan Stewart
6084650181
Use PHP's built-in password hashing and verification for user accounts
2018-04-15 18:26:41 -04:00
Benjamin Sonntag
f392ad11a0
[fix] cron rolling curl call INSIDE the loop :/
2018-02-28 10:39:55 +01:00
Benjamin Sonntag
7d35b9cb59
fixing db_del bug, thanks @Petit42
2018-02-12 14:57:11 +01:00
Gabriel Filion
32261e5871
Protected dir creation error messages are not helpful.
...
Current error messages that are shown and logged when a problem occurs
when creating htaccess and htpasswd files for a protected dir are really
not helpful.
The messages don't even mention which file caused the error.
Sometimes when the files can't be created, it's not because they're
already present, for example when there's a permission error.
Also we've already verified that they are absent with file_exists so
the current error message is not accurate at all!
To empower users, we need to give them more details about the error. For
that we want to show the error that the file creation logged itself.
Finally, we've already verified that the htacces file already exists, so
there's no point in using touch beforehand. We should just let fopen try
to create the file and report whatever went wrong if anything happens.
2017-12-29 11:56:03 -05:00
azerttyu
407d8b91da
Don't raise a blocking error
...
* With deprecate error class, it's only a warning, not a error.
Should solve #210
2017-11-19 15:09:04 +01:00
Benjamin Sonntag
5b7622ce90
[cosm] many cosmetic comment fixes, + ensure license and copyright everywhere
2017-10-08 19:31:34 +02:00