Bharat Mediratta
583950616e
Improve the fix for #1176 to use request::is_ajax() instead of tacking
...
on a query param to urls that appear in dialogs. This keeps things simpler.
2010-07-16 11:58:13 -07:00
Tim Almdal
993e041274
Remove the code to call the controller directly and just use redirect. Now that all the form calls actually return the form as a json object, calling the form creation controller method i no longer required.
2010-07-15 14:57:43 -07:00
Bharat Mediratta
297f98fcee
Fix reauth authentication to use the identity helper instead of the
...
user helper directly. Else it doesn't work with LDAP and other
identity systems.
2010-07-13 12:52:59 -07:00
Tim Almdal
213807a807
remove debugging statement
2010-07-09 14:59:23 -07:00
Tim Almdal
72f801df7d
Only add the 'Successfully re-authenticated' message to the status if the admin page is not displayed in a dialog.
2010-07-08 08:23:08 -07:00
Tim Almdal
9538b3888d
Fix for ticket #1176 . Have the gallery.dialog code add a g-in-dialog parameter to the url to let the controller know its in a dialog. The reauthenticate controller will format the password prompt as a page or a form content. If authentication is successful, then the original controller is called instead of being redirected to.
2010-07-07 08:58:38 -07:00
Tim Almdal
226d1f7146
Revert "If the admin request originates as a dialog link, don't display the entire page when reauthenticating the administrator. Just put the form in the dialog."
...
This reverts commit 8493a3d36f .
2010-07-05 08:58:36 -07:00
Tim Almdal
8493a3d36f
If the admin request originates as a dialog link, don't display the entire page when reauthenticating the administrator. Just put the form in the dialog.
2010-07-05 08:23:17 -07:00
Bharat Mediratta
b61b50604b
Push the continue url into the form for consistency with other
...
login/continue code.
2010-06-12 15:09:16 -07:00
Bharat Mediratta
6d81feacae
Change the key for invalid passwords from "invalid" to
...
"invalid_password" to remove ambiguity.
2010-04-17 12:28:46 -07:00
Bharat Mediratta
c3c2b45280
Update the copyright to 2010. It's only 3 months into the year :-)
2010-03-03 10:15:34 -08:00
Andy Staudacher
f9d00aa742
Fix for ticket 1008: Redirect to destination after re-auth.
2010-02-08 00:30:36 -08:00
Andy Staudacher
f93528ffab
Last partial fix for ticket 585: Compartmentalize the admin area and require active authentication every 20 minutes to access the admin area.
...
Also renaming auth::validate_too_many_failed_password_changes to validate_too_many_failed_auth_attempts since it's used in this generalized way in 3 places now.
2010-02-07 15:37:32 -08:00