mirror of
https://gh.wpcy.net/https://github.com/discourse/discourse.git
synced 2026-06-19 01:44:11 +08:00
DiscourseConnect verified SSO payload signatures with whatever `discourse_connect_secret` was configured, including an empty string, so an instance with DiscourseConnect enabled but no secret set did not fail safely. `DiscourseConnectBase#parse` now fails when the effective secret is blank, and `EnableSsoValidator` refuses to enable DiscourseConnect unless a secret of at least 10 characters is set. |
||
|---|---|---|
| .. | ||
| schemas | ||
| shared | ||
| backups_spec.rb | ||
| badges_spec.rb | ||
| categories_spec.rb | ||
| groups_spec.rb | ||
| invites_spec.rb | ||
| multiple_invites_spec.rb | ||
| notifications_spec.rb | ||
| posts_spec.rb | ||
| private_messages_spec.rb | ||
| rate_limits_spec.rb | ||
| search_spec.rb | ||
| site_spec.rb | ||
| tags_spec.rb | ||
| topics_spec.rb | ||
| uploads_spec.rb | ||
| user_badges_spec.rb | ||
| users_spec.rb | ||