| Age | Commit message (Collapse) | Author | |
|---|---|---|---|
| 2013-12-12 | Merge pull request #1206 from MatthewWilkes/master | Chris McDonough | |
| Update pluralize docs now lingua1.7 is out | |||
| 2013-12-12 | Fix a typo. | Ira | |
| 2013-12-10 | Expand on docstring | Matthew Wilkes | |
| 2013-12-10 | add note about non-bw-compat between SignedCookieSessionFactory and ↵ | Chris McDonough | |
| UnencryptedCookieSessionFactory. Ref #1200. | |||
| 2013-12-10 | use CookieProfile from webob in authentication module, add support for new ↵ | Chris McDonough | |
| domain attribute on dummy request, depend on webob 1.3 or better | |||
| 2013-12-07 | use a single serializer instead of serialize/deserialize in session.py, use ↵ | Chris McDonough | |
| SignedSerializer from (yet to be released) webob 1.3 instead of local logic in session.py | |||
| 2013-11-27 | revert my reversion | Chris McDonough | |
| 2013-11-27 | Merge branch 'fix.pshell-ipython' | Chris McDonough | |
| 2013-11-27 | change the behavior of parse_url_overrides and resource_url to not quote a ↵ | Chris McDonough | |
| _query/query argument supplied as a string and document in changelog | |||
| 2013-11-27 | Merge branch 'feature.custom-query-strings' | Chris McDonough | |
| 2013-11-27 | coverage | Chris McDonough | |
| 2013-11-15 | Added a clarifying comment on i18n _LOCALE_ value | Antti Haapala | |
| 2013-11-15 | remove deprecation warning with new ipython 1.1 embedded terminal | Michael Merickel | |
| 2013-11-12 | update docs | Michael Merickel | |
| 2013-11-12 | modify quoting to be bare-bones | Michael Merickel | |
| 2013-11-12 | centralize and properly escape query string and anchor arguments | Michael Merickel | |
| 2013-11-12 | remove need for parsing static url twice to replace scheme | Michael Merickel | |
| 2013-11-09 | undeprecate remember/forget functions and remove ↵ | Chris McDonough | |
| remember_userid/forget_userid methods from request | |||
| 2013-11-07 | fix tests | Michael Merickel | |
| 2013-11-07 | handle static urls generated with a query string | Michael Merickel | |
| 2013-11-07 | fix mishandled anchors that need to be quoted | Michael Merickel | |
| 2013-11-07 | tests for custom query strings | Michael Merickel | |
| 2013-11-07 | support encoding arbitrary query strings | Michael Merickel | |
| 2013-11-07 | support query string and anchor on external static urls | Michael Merickel | |
| 2013-10-30 | indicate default | Chris McDonough | |
| 2013-10-30 | indicate default | Chris McDonough | |
| 2013-10-30 | rendering | Chris McDonough | |
| 2013-10-30 | not methods, attrs | Chris McDonough | |
| 2013-10-30 | wording | Chris McDonough | |
| 2013-10-30 | rendering | Chris McDonough | |
| 2013-10-28 | wording and specify return value | Chris McDonough | |
| 2013-10-28 | add NB notes about recursive add_response_callback policies, use req instead ↵ | Chris McDonough | |
| of self for normalization with exception getting | |||
| 2013-10-28 | avoid a deprecation warning during test runs | Chris McDonough | |
| 2013-10-28 | defer looking up headers until the response callback is called (FBO things ↵ | Chris McDonough | |
| like sessionauthenticationpolicy which does its own header-setting when its remember/forget methods are called) | |||
| 2013-10-28 | add on_exception flag to remember/forget, fix a bug in _remember_userid and ↵ | Chris McDonough | |
| _forget_userid (these should always return a sequence even if there is no authentication policy), defactorize tests | |||
| 2013-10-28 | Bring change log, API docs, and deprecations in line with normal ↵ | Chris McDonough | |
| policies/processes | |||
| 2013-10-28 | Merge branch 'security-apis-on-request' of github.com:mgrbyte/pyramid into ↵ | Chris McDonough | |
| mgrbyte-security-apis-on-request | |||
| 2013-10-27 | Security APIs on pyramid.request.Request | Matt Russell | |
| The pyramid.security Authorization API function has_permission is made available on the request. The pyramid.security Authentication API functions are now available as properties (unauthenticated_userid, authenticated_userid, effective_principals) and methods (remember_userid, forget_userid) on pyramid.request.Request. Backwards compatibility: For each of the APIs moved to request method or property, the original API in the pyramid.security module proxies to the request. Reworked tests to check module level b/c wrappers call through to mixins for each API. Tests that check no reg on request now do the right thing. Use a response callback to set the request headers for forget_userid and remember_userid. Update docs. Attempt to improve a documentation section referencing the pyramid.security.has_permission function in docs/narr/resources.rst Ensures backwards compatiblity for `pyramid.security.forget` and `pyramid.security.remember`. | |||
| 2013-10-26 | Bring coverage back to 100% | Bert JW Regeer | |
| 2013-10-26 | digestmod() has to accept a parameter in certain cases | Bert JW Regeer | |
| Due to line 69 in hmac.py in the Python standard library (2.7) it expects to be able to call the digestmod function with the current key if the key passed in exceeds the block size in length. This fixes the code so that digestmod can accept string as an extra parameter, which is passed through to hashlib.new() [1]: http://hg.python.org/cpython/file/2.7/Lib/hmac.py#l69 | |||
| 2013-10-20 | notfound and forbidden decorators were ignoring view_defaults | Michael Merickel | |
| This could be fixed in other ways but the basic problem is that because config.add_notfound_view and config.add_forbidden_view have actual signatures instead of *args, **kwargs, the arguments are squashing the view_defaults which are applied later on the call to config.add_view. Basically, by the time the args get to config.add_view, they look explicit when they are not. fix #1173 | |||
| 2013-10-20 | fix merge conflict and prevent warning from showing up during testing (dont ↵ | Chris McDonough | |
| import ITemplateRenderer) | |||
| 2013-10-20 | add a note so we can defend the choice later | Chris McDonough | |
| 2013-10-20 | Merge branch 'master' into fix.basic-authentication-encodings | Chris McDonough | |
| 2013-10-20 | fix merge conflict | Chris McDonough | |
| 2013-10-19 | remove unnecessary length check, slices are magic | Michael Merickel | |
| 2013-10-19 | moar typos | Michael Merickel | |
| 2013-10-19 | remove redundant "see" | Michael Merickel | |
| 2013-10-19 | add admonishment against secret sharing | Chris McDonough | |
| 2013-10-19 | use zope.deprecation for warning about the ↵ | Chris McDonough | |
| UnencryptedCookieSessionFactoryConfig deprecation (it will happen at import time, rather than usage time, which is good for tests); add a few sphinx directives for deprecated and versionadded | |||
