Age | Commit message (Collapse) | Author | |
---|---|---|---|
2010-01-30 | Lock down web access to var/uploads, var/tmp and var/logs using .htaccess | Bharat Mediratta | |
Fixes ticket #587. | |||
2010-01-30 | Prevent brute force login attacks by reducing login attempts to 1 per | Bharat Mediratta | |
minute after there have been 5 consecutive failed login attempts. Fix for ticket #589. | |||
2010-01-30 | Make url::merge() function use the same exact definition as url_Core::merge() | Bharat Mediratta | |
2010-01-30 | Remap parent_id and album_cover_item_id to and from RESTful urls. | Bharat Mediratta | |
2010-01-29 | Don't forget to flush the relative_url_cache when updating the slug. | Bharat Mediratta | |
2010-01-29 | Go through all slugs and make them legal values. | Bharat Mediratta | |
Upgrade gallery3 module to version 23 | |||
2010-01-29 | Oops, somebody (me?) forgot to update the gallery module version | Bharat Mediratta | |
number in gallery_installer::install() so the install.sql was out of sync. | |||
2010-01-28 | Add page_type to the rotate and delete context menu items so that the | Bharat Mediratta | |
quick menu knows where to send you after the action is done. | |||
2010-01-28 | In auth::login() make the user active before trying to save it, else | Bharat Mediratta | |
the validation code fails because it expects there to be an active user. | |||
2010-01-28 | Use auth::login() when we initially log in the admin user. | Bharat Mediratta | |
2010-01-28 | Fix language preference block / language cookie reading. | Andy Staudacher | |
The preference block must have been broken by a jquery update, and the cookie reading by a Kohana update. | |||
2010-01-28 | Found another broken link for what should have been the user profile | Tim Almdal | |
2010-01-28 | Make the varible for the profile name more descriptive and clean the label | Tim Almdal | |
2010-01-28 | Do all the html::clean|purify calls in the views and not the controller. ↵ | Tim Almdal | |
Also clean the subject line and email message body of the contact user email. | |||
2010-01-27 | Localize validation messages. | Bharat Mediratta | |
2010-01-27 | Fix capitalization of "internet address". | Bharat Mediratta | |
2010-01-27 | Localize all error messages. | Bharat Mediratta | |
2010-01-27 | Localize error messages for the built-in rules. | Bharat Mediratta | |
2010-01-27 | Remove unnecessary rules() in the form. | Bharat Mediratta | |
2010-01-27 | Convert back to using ORM::factory(..., $id) instead of calling where(). | Bharat Mediratta | |
2010-01-27 | Convert __toString() to use (string) cast instead. | Bharat Mediratta | |
2010-01-27 | Change "resource" to "entity" in REST responses. They're all | Bharat Mediratta | |
resources, but we differentiate resources as collections and entities. | |||
2010-01-27 | Merge branch 'master' of git@github.com:gallery/gallery3 into bharat_dev | Bharat Mediratta | |
Conflicts: modules/gallery/tests/Access_Helper_Test.php | |||
2010-01-26 | Add a maintenance task that will clear the expired files (older than 2 ↵ | Tim Almdal | |
weeks) from var/logs and var/tmp. Fixes ticket #982 | |||
2010-01-25 | Apply html::clean() to UI visible strings, and show language names instead ↵ | Andy Staudacher | |
of locale tags to be consistent with the user edit form. | |||
2010-01-25 | Merge branch 'master' of git@github.com:gallery/gallery3 into bharat_dev | Bharat Mediratta | |
Conflicts: modules/gallery/libraries/MY_ORM.php | |||
2010-01-25 | Remove the return url and change the return button on the user profile page ↵ | Tim Almdal | |
to use javascript to return to the previous page. | |||
2010-01-24 | Remove the one last remaining reference to "no_module_admin". | Tim Almdal | |
2010-01-24 | Refactor creating the user profile page content into the the event module. ↵ | Tim Almdal | |
The show_user_profile is used to provide content to the user profile page. Add the list of the users comments to the profile page. | |||
2010-01-23 | Merge branch 'master' of git@github.com:gallery/gallery3 | Tim Almdal | |
2010-01-23 | Create a user profile page that is used as a landing page when referencing a ↵ | Tim Almdal | |
user in messages or pages. Partial fix for ticket #889 and a fix for #931. | |||
2010-01-23 | Merge branch 'master' of git@github.com:gallery/gallery3 into bharat_dev | Bharat Mediratta | |
Conflicts: modules/gallery/tests/xss_data.txt | |||
2010-01-24 | Log validation errors. | Bharat Mediratta | |
2010-01-23 | Fix for bug 984, consistently interpret installed / available locales as array. | Andy Staudacher | |
On the current hostgater setup (PHP 5.2.12), locales::available() was returning an array and isset($locales->$code) would always (silently) return false. Choosing array over stdClass since count($someStdClass) will always return 1, and not the number of object members. | |||
2010-01-23 | Add a user_menu method to the Admin_View and then use this method to get the | Tim Almdal | |
user menu. Since the information displayed is identical in both admin and theme views, it makes sense to combine the generation to it is done in a common location. | |||
2010-01-22 | Merge branch 'master' of git@github.com:gallery/gallery3 | Tim Almdal | |
2010-01-22 | Change the check_environment method in the module helper and the module ↵ | Tim Almdal | |
installers to can_activate to reflect that it is doing more than just checking the environment. | |||
2010-01-22 | Remove the identity manager screens and controller as alterntive identity ↵ | Tim Almdal | |
providers are installed in the admin module screen. | |||
2010-01-22 | Treat identity providers just like other modules and use the admin_module to | Tim Almdal | |
install and switch to a different identity provider. | |||
2010-01-22 | Merge branch 'master' of git@github.com:gallery/gallery3 into bharat_dev | Bharat Mediratta | |
2010-01-22 | Change "fetch translations" task to fetch them in batches. | Andy Staudacher | |
The request limit was in place already, but the client didn't respect it before, leading to unhappy users in case they had lots of 3rd party modules installed, or more than 2-3 locales enabled. This is all taken care of now. | |||
2010-01-22 | Return the url of the newly created item from post(). | Bharat Mediratta | |
Don't try to access ORM::$changed -- it's protected. | |||
2010-01-22 | Merge branch 'master' of git@github.com:gallery/gallery3 into bharat_dev | Bharat Mediratta | |
2010-01-22 | Reshape the rest code to be more consistent with regards to | Bharat Mediratta | |
relationships. Now when you view a resource, it has 4 top level elements: url: the url of this resource resource: array of key value pairs describing the resource members: array of urls to members of this collection relationships: array of array of members. Relationships are a special type of collection that links two different resources together. To remove a relationship, just DELETE its url. To create a relationship, POST to its collection. Individual modules can add their own relationships to any resource via a callback mechanism. Example: Array( [url] => http://g3.com/rest/item/1 [resource] => Array ( [id] => 1 [album_cover_item_id] => 4 [captured] => [created] => 1264056417 [description] => [height] => ... ) [members] => Array( [0] => http://g3.com/rest/item/2 [1] => http://g3.com/rest/item/3 [2] => http://g3.com/rest/item/4 [3] => http://g3.com/rest/item/5 ... ) [relationships] => Array( [tags] => Array ( [0] => http://g3.com/rest/tag_item/2,1 [1] => http://g3.com/rest/tag_item/23,1 ) ) ) | |||
2010-01-21 | Use Unicode instead of HTML entity (since the l10n server normalizes this ↵ | Andy Staudacher | |
way and rejects submissions that change under the normalization step) | |||
2010-01-21 | Merge branch 'master' of git@github.com:gallery/gallery3 into bharat_dev | Bharat Mediratta | |
2010-01-21 | Internationalize all strings in admin_modules.hmtl and corrected comments. | Tim Almdal | |
2010-01-21 | The admin module controller allows modules to provide a check_environment method | Tim Almdal | |
which is called prior to installation. The method allows the module to provide an error message or warnings if the module can not be installed or activated without issues. The admin module controller also will fire a pre_deactivate event, which allows modules to indicate issues that may arise be deactivating the specified module. These messages are displayed in a dialog box prior to installation in order to allow the gallery administrator to determine the appropriate action before proceeding. Lays the foundation for implementing a fix for ticket #937 | |||
2010-01-20 | Two fixes: | Bharat Mediratta | |
1) Don't call ORM_MPTT::move_to() directly. Use the new model-based-validation approach of changing the parent_id and saving. 2) Item_Model::parent() can return null; check for it. | |||
2010-01-20 | Throw Kohana_Exception instead of Exception on access denied, since that may ↵ | Bharat Mediratta | |
bubble all the way up |