summaryrefslogtreecommitdiff
path: root/docs
AgeCommit message (Collapse)Author
2013-11-18update whatsnew in 1.5Chris McDonough
2013-11-17Should return the simple_tween here, not the handler.Antti Haapala
2013-11-17Fixed indentation issuesAntti Haapala
2013-11-17Removed extra indentation from some examples (:linenos: should be indented ↵Antti Haapala
with the same indentation as the rest of the code block)
2013-11-1680 charsChris McDonough
2013-11-16Enhanced the narrative documentation for tweens.Antti Haapala
2013-11-11easiest commit everMichael Merickel
2013-11-11Merge branch 'feature.security-apis-on-request'Chris McDonough
2013-11-09undeprecate remember/forget functions and remove ↵Chris McDonough
remember_userid/forget_userid methods from request
2013-11-07document add_adapterMichael Merickel
2013-10-30fix failing test (unrelated to security stuff)Chris McDonough
2013-10-30new apiChris McDonough
2013-10-30convert remember/forget to request-method-basedChris McDonough
2013-10-30note deprecationChris McDonough
2013-10-30not methods, attrsChris McDonough
2013-10-30fix wiki2 tutorial wrt request-method security APIsChris McDonough
2013-10-30copy forward views.py changes to tests stepChris McDonough
2013-10-30fix zodb tutorial wrt request-based authentication and authorization apisChris McDonough
2013-10-28Bring change log, API docs, and deprecations in line with normal ↵Chris McDonough
policies/processes
2013-10-27Security APIs on pyramid.request.RequestMatt Russell
The pyramid.security Authorization API function has_permission is made available on the request. The pyramid.security Authentication API functions are now available as properties (unauthenticated_userid, authenticated_userid, effective_principals) and methods (remember_userid, forget_userid) on pyramid.request.Request. Backwards compatibility: For each of the APIs moved to request method or property, the original API in the pyramid.security module proxies to the request. Reworked tests to check module level b/c wrappers call through to mixins for each API. Tests that check no reg on request now do the right thing. Use a response callback to set the request headers for forget_userid and remember_userid. Update docs. Attempt to improve a documentation section referencing the pyramid.security.has_permission function in docs/narr/resources.rst Ensures backwards compatiblity for `pyramid.security.forget` and `pyramid.security.remember`.
2013-10-20fix merge conflict and prevent warning from showing up during testing (dont ↵Chris McDonough
import ITemplateRenderer)
2013-10-20fix merge conflictChris McDonough
2013-10-19monChris McDonough
2013-10-19add admonishment against secret sharingChris McDonough
2013-10-19link to the public renderer interfacesMichael Merickel
2013-10-19modify the docs for the renderer interfacesMichael Merickel
2013-10-19Merge branch 'master' into feature.signed-cookie-sessionMichael Merickel
2013-10-19update doc referencesMichael Merickel
2013-10-19Merge branch 'check_csrf_token' of kpinc/pyramid into ↵Michael Merickel
feature.bad-csrf-token-exception
2013-10-19update the docsMichael Merickel
2013-10-17fix documentation for csrf checkingMichael Merickel
2013-10-14Address #866; don't run the tests when the docs build, this means that 'make ↵Chris McDonough
html' must be run using a SPHINXBUILD=/path/to/virtualenv/with/pyramid
2013-10-14temporarily dont run tests to see impact on readthedocsChris McDonough
2013-10-14make these tests pass on python 3.2+Chris McDonough
2013-10-14Revert "make these tests pass on python 3.2+"Chris McDonough
This reverts commit cd218d2934c87260bbb10620e3b419b275fe6244.
2013-10-14make these tests pass on python 3.2+Chris McDonough
2013-10-14add note about custom args to python when using command-line scriptsChris McDonough
2013-10-09Merge remote-tracking branch 'origin/master'Paul Everitt
2013-10-09Hedge a little while the compendium of session add-ons is written.Paul Everitt
2013-10-08fix stupid missing named arguments, whyyyMichael Merickel
2013-10-08Merge branch 'origin/master'Steve Piercy
2013-10-08grammar polishSteve Piercy
2013-10-08Merge pull request #1148 from kpinc/docs_nobeakerSteve Piercy
Docs: introduction.rst: Beaker -> Redis.
2013-10-08Small quick tutorial fixes post conference.Paul Everitt
2013-10-08print() not printf()Steve Piercy
2013-10-08Subclass HTTPBadCSRFToken from HTTPBadRequest and have ↵Karl O. Pinc
request.session.check_csrf_token use the new exception. This supports a more fine-grained exception trapping.
2013-10-08Docs: introduction.rst: Beaker -> Redis.Karl O. Pinc
2013-10-08Docs: project.rst: Oops, print(), not printf().Karl O. Pinc
2013-10-08Docs: project.rst: Printf()s can be used for debugging. Output goes to the ↵Karl O. Pinc
server console. The main point of the second sentence is to setup the reader with mental context for the 3rd sentence, so that the 3rd sentence sinks in. Likewise, the parenthetical in the second sentence about server startup messages gives the reader some clue as to what the rest of the sentence it talking about. I suspect that some readers won't know what a console is, and the rest will be confused by a server run on a console.
2013-10-08- remove . from end of URLSteve Piercy