summaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2012-11-04Merge branch 'fix.695'Chris McDonough
2012-11-04reword docsChris McDonough
2012-11-04Merge branch 'master' of github.com:Pylons/pyramidChris McDonough
2012-11-04fix tests to use sha512 to avoid emitting warningsMichael Merickel
2012-11-04emit a warning if a user is using the default hashalg to AuthTktMichael Merickel
2012-11-04Merge branch 'master' into fix.695Michael Merickel
2012-11-04gardenMichael Merickel
2012-11-04merged SHA512AuthTktAuthenticationPolicy into AuthTktAuthenticationPolicyMichael Merickel
AuthTktAuthenticationPolicy now accepts a hashalg parameter and is no longer deprecated. Docs recommend overriding hashalg and using 'sha512'.
2012-11-04Merge branch 'iElectric-feature.sha512_auth'Chris McDonough
2012-11-04fix docs, upgrade tutorials, add change note, deprecate using ↵Chris McDonough
zope.deprecation instead of a warning, make hashalg arg a kwarg in certain cases in case someone (maybe me) is using nonapi function imports from authentication
2012-11-04Merge branch 'feature.sha512_auth' of git://github.com/iElectric/pyramid ↵Chris McDonough
into iElectric-feature.sha512_auth
2012-11-04- In uncommon cases, the ``pyramid_excview_tween_factory`` might haveChris McDonough
inadvertently raised a ``KeyError`` looking for ``request_iface`` as an attribute of the request. It no longer fails in this case. See https://github.com/Pylons/pyramid/issues/700 Fixes #700
2012-11-03- Move ``TopologicalSorter`` from ``pyramid.config.util`` to ``pyramid.util``,Chris McDonough
move ``CyclicDependencyError`` from ``pyramid.config.util`` to ``pyramid.exceptions``, rename ``Singleton`` to ``Sentinel`` and move from ``pyramid.config.util`` to ``pyramid.config.util``; this is in an effort to move that stuff that may be an API one day out of ``pyramid.config.util, because that package should never be imported from non-Pyramid code. TopologicalSorter is still not an API, but may become one.
2012-11-03why is this file hereChris McDonough
2012-11-02garden; fixes #702Chris McDonough
2012-11-02Merge branch 'wylee-master'Chris McDonough
2012-11-02dont use a separate request factory; instead just assign ResponseClass attr ↵Chris McDonough
of the Request class to pyramid.response.Response
2012-11-02Merge branch 'master' of git://github.com/wylee/pyramid into wylee-masterChris McDonough
2012-11-02gardenChris McDonough
2012-11-02- In the past if a renderer returned ``None``, the body of the resultingChris McDonough
response would be set explicitly to the empty string. Instead, now, the body is left unchanged, which allows the renderer to set a body itself by using e.g. ``request.response.body = b'foo'``. The body set by the renderer will be unmolested on the way out. See https://github.com/Pylons/pyramid/issues/709 Closes #709
2012-11-02Merge branch '1.4-branch'Chris McDonough
2012-11-02resolve merge conflictChris McDonough
2012-11-02gardenChris McDonough
2012-11-02gardenChris McDonough
2012-11-02- Do not allow the userid returned from the ``authenticated_userid`` or theChris McDonough
userid that is one of the list of principals returned by ``effective_principals`` to be either of the strings ``system.Everyone`` or ``system.Authenticated`` when any of the built-in authorization policies that live in ``pyramid.authentication`` are in use. These two strings are reserved for internal usage by Pyramid and they will not be accepted as valid userids.
2012-11-02explain csrf token stealing potentialityChris McDonough
2012-11-02Merge branch 'master' of github.com:Pylons/pyramidChris McDonough
2012-11-02typoCarlos de la Guardia
2012-10-30Merge branch '1.4-branch'Chris McDonough
2012-10-30Merge pull request #711 from Pylons/fix.auth-policy-noticeChris McDonough
updated authentication policy api documentation
2012-10-30updated authentication policy api documentationMichael Merickel
2012-10-30updated docsMichael Merickel
2012-10-30updated changesMichael Merickel
2012-10-30raise exc if view_execution_permitted invoked on non-existant viewMichael Merickel
fix #299
2012-10-29Merge branch 'master' of github.com:Pylons/pyramidChris McDonough
2012-10-29Merge branch 'master' into 1.4-branchChris McDonough
2012-10-28- Added an ``effective_principals`` route and view predicate.Chris McDonough
2012-10-27Merge branch 'master' into 1.4-branchChris McDonough
2012-10-26Merge branch 'master' of github.com:Pylons/pyramidChris McDonough
2012-10-26prep for 1.4a3Chris McDonough
2012-10-26- New ``physical_path`` view predicate. If specified, this value should be aChris McDonough
string or a tuple representing the physical traversal path of the context found via traversal for this predicate to match as true. For example: ``physical_path='/'`` or ``physical_path='/a/b/c'`` or ``physical_path=('', 'a', 'b', 'c')``. This is not a path prefix match or a regex, it's a whole-path match. It's useful when you want to always potentially show a view when some object is traversed to, but you can't be sure about what kind of object it will be, so you can't use the ``context`` predicate. The individual path elements inbetween slash characters or in tuple elements should be the Unicode representation of the name of the resource and should not be encoded in any way.
2012-10-18Merge branch 'master' of github.com:Pylons/pyramidChris McDonough
2012-10-14pypi support for python 3.3Michael Merickel
2012-10-14pypi support for python 3.3Michael Merickel
2012-10-14Merge branch 'feature-basic-auth'Chris McDonough
2012-10-14point at policyChris McDonough
2012-10-14Fixes for Python 3.Chris Rossi
2012-10-14Update change log.Chris Rossi
2012-10-14Merge branch 'master' into feature-basic-authChris Rossi
2012-10-14Include recipe for issuing challenge.Chris Rossi