Merged
Conversation
Spring 4.2.4 added StrictHttpFirewall which throws RequestRejectedExceptions, this servlet filter catches the exception, logs rejections and returns 404.
media file editor is used in an iframe. To allow this we have to set the policy to 'sameorigin'.
… as upgrade path from legacy encodings. - the default codec for db storage is now bcrypt (the other option is pbkdf2) - simple hashing functions like SHA and MD5 (which don't salt) are no longer supported - lazy upgrade is possible via the passwds.encryption.lazyUpgradeFrom=[SHA|MD5] property - the property won't be needed for future upgrades since the encoding is stored as prefix of the pw TODO: only tested db setups, no LDAP
Member
Author
|
@snoopdave ready for review in case you missed this one. |
Contributor
|
LGTM |
Member
Author
|
@snoopdave thanks! |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the spring changes of the wip branch.
details in the commit messages.