4f555a5751 
								
							
								 
							
						 
						
							
							
								
								Fixed CSRF validation bug.  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								f9b957554f 
								
							
								 
							
						 
						
							
							
								
								Added Controller::enableCsrfValidation to support turning on/off CSRF validation for particular actions.  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								0fc423c74a 
								
							
								 
							
						 
						
							
							
								
								Added support for data-method and data-confirm.  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								1f8ab8106d 
								
							
								 
							
						 
						
							
							
								
								updated classmap  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								df6176edb6 
								
							
								 
							
						 
						
							
							
								
								added unit test for Model::load()  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								128ee07b78 
								
							
								 
							
						 
						
							
							
								
								100% test coverage for CacheSession  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								bd2404f1c6 
								
							
								 
							
						 
						
							
							
								
								added simple unit test for CacheSession  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								b8ffee6559 
								
							
								 
							
						 
						
							
							
								
								moved CacheSession::init() parent call after init of cache component  
							
							... 
							
							
 
							
							session autostart would fail otherwise.
fixes  #887  
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								c2a3aa3d99 
								
							
								 
							
						 
						
							
							
								
								Fixes   #885 : removed NULLs from filtering by models.  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								bb6d0f1b47 
								
							
								 
							
						 
						
							
							
								
								Merge pull request  #888  from sergon/patch-5  
							
							... 
							
							
 
							
							Update passwordResetToken.php 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								2426ae5f7d 
								
							
								 
							
						 
						
							
							
								
								Merge pull request  #889  from sergon/patch-6  
							
							... 
							
							
 
							
							Update SiteController.php 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								41e2c41002 
								
							
								 
							
						 
						
							
							
								
								Update SiteController.php  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								29394758ba 
								
							
								 
							
						 
						
							
							
								
								Update passwordResetToken.php  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								3a347c3587 
								
							
								 
							
						 
						
							
							
								
								added property docs to AR test classes  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								ef13a11f66 
								
							
								 
							
						 
						
							
							
								
								moved getPDOType() back to Command to avoid dependency on Schema  
							
							... 
							
							
 
							
							fixes  #854  
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								cc09ef56b9 
								
							
								 
							
						 
						
							
							
								
								updated  @property  annotations of web\Request  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								0e261fba5a 
								
							
								 
							
						 
						
							
							
								
								moved redis out of yii\db namespace  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								9c3a488d75 
								
							
								 
							
						 
						
							
							
								
								Merge pull request  #883  from pmoust/travis-yaml  
							
							... 
							
							
 
							
							Added Memcached for Travis 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								9836b28ed3 
								
							
								 
							
						 
						
							
							
								
								Fixes   #884 .  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								2deff126cf 
								
							
								 
							
						 
						
							
							
								
								Supports sending CSRF token via HTTP header.  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								2db91187db 
								
							
								 
							
						 
						
							
							
								
								Use .prop() instead .attr().  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								1aa836ffc7 
								
							
								 
							
						 
						
							
							
								
								use meta tags to pass CSRF token.  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								315af43e84 
								
							
								 
							
						 
						
							
							
								
								Merge branch 'hotfix/travis-memcached' into develop  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								f38c516ac5 
								
							
								 
							
						 
						
							
							
								
								Added memcached service in Travis YAML  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								240b42aa0c 
								
							
								 
							
						 
						
							
							
								
								fixed typo  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								43d15155c6 
								
							
								 
							
						 
						
							
							
								
								cleanup db `use` statements  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								dd59dd1db7 
								
							
								 
							
						 
						
							
							
								
								doc fix.  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								bc9a6f3e16 
								
							
								 
							
						 
						
							
							
								
								Better strtr arguments format  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								ad479dd7f6 
								
							
								 
							
						 
						
							
							
								
								Modified js registration position.  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								51c29e444d 
								
							
								 
							
						 
						
							
							
								
								renamed Request::csrfTokenName to csrfVar.  
							
							... 
							
							
 
							
							added version, csrfVar and csrfToken to yii js module. 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								f5778b6bf0 
								
							
								 
							
						 
						
							
							
								
								Advanced application enhancements.  
							
							... 
							
							
 
							
							- Turned on CSRF validation by default.
- Added access control for login, signup and logout for frontend application.
- Added access control for login, logout and index for backend application.
- YII_ENV is now defined for all applications.
- No trace is writted to logs if debug is turned off.
- Added default error view for frontend and backend.
- In frontend application captcha will always ask for "testme" if YII_ENV is defined as "test". 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								325f83f66b 
								
							
								 
							
						 
						
							
							
								
								Basic application enhancements.  
							
							... 
							
							
 
							
							- Turned on CSRF validation by default.
- Application params are now readed before config is defined to be able to use values from params when configuring.
- Added access control for login and logout. 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								f34d7064ea 
								
							
								 
							
						 
						
							
							
								
								Better phpdoc for AccessControl  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								a8d21805f5 
								
							
								 
							
						 
						
							
							
								
								Security::generateRandomKey enhancements:  
							
							... 
							
							
 
							
							- Equals sign is now replaced with dot.
- Slash is now replaced with dash.
- Better phpdoc. 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								0284bc4a45 
								
							
								 
							
						 
						
							
							
								
								Fixes   #875 : Security::generateRandomKey() can now be safely used in URLs  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								4a9efc9e75 
								
							
								 
							
						 
						
							
							
								
								Corrected schema used for MySQL  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								523a63f576 
								
							
								 
							
						 
						
							
							
								
								Added TYPE_BIGPK to Schema  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								a2b4ef0f82 
								
							
								 
							
						 
						
							
							
								
								Fixes   #876 .  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								0a5b1a935e 
								
							
								 
							
						 
						
							
							
								
								simplified memcache installation on travis  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								a1af321d38 
								
							
								 
							
						 
						
							
							
								
								fixed typo in apc install script  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								34ebe65cf5 
								
							
								 
							
						 
						
							
							
								
								added apc,redis and memcache(d) to travis  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								949dda5fdb 
								
							
								 
							
						 
						
							
							
								
								tagged tests with  @group  tags  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								41bd9ab7a8 
								
							
								 
							
						 
						
							
							
								
								added memcache and apc to travis  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								f6f2522ad6 
								
							
								 
							
						 
						
							
							
								
								added travis README from yii 1.1  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								69a38d1895 
								
							
								 
							
						 
						
							
							
								
								added cubrid_pdo to travis  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								281e602850 
								
							
								 
							
						 
						
							
							
								
								added pecl install pdo_cubrid to travis.yml  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								1179cb2a1c 
								
							
								 
							
						 
						
							
							
								
								made travis phpunit verbose to see why cubrid tests are skipped  
							
							
 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								eb5bf2dabe 
								
							
								 
							
						 
						
							
							
								
								added cubrid dbms to travis-ci  
							
							... 
							
							
 
							
							copied from
056e734ce3/.travis.yml 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								d3740932a4 
								
							
								 
							
						 
						
							
							
								
								fixed broken cubrid tests  
							
							... 
							
							
 
							
							fixed expected quoting 
							
						 
						
							12 years ago  
				
					
						
							
							
								 
						
							
							
								30907b6134 
								
							
								 
							
						 
						
							
							
								
								Fixes   #826 : cleaned up User::getReturnUrl().  
							
							
 
							
						 
						
							12 years ago