Commit Graph

31 Commits (7ac9cae7b6aa21eb7a8c4d492dc0e507ab4cb14a)

Author SHA1 Message Date
Jakub Onderka 7ac9cae7b6
Merge pull request #7539 from JakubOnderka/publishing-refactoring
Refactor publishing event
2021-07-27 20:52:17 +02:00
Jakub Onderka 9a5b40f240 fix: [test] Set expected config for security tests 2021-07-26 16:55:48 +02:00
Jakub Onderka 77f99f7c3e new: [test] Security test for publishing events 2021-07-07 19:41:49 +02:00
Jakub Onderka 017249451b new: [API] Read only authkeys 2021-06-28 12:41:10 +02:00
Jakub Onderka 577648c6c6 fix: [test] Allow access from IPv6 addresses 2021-04-20 18:19:57 +02:00
iglocska d4989dbd85
Merge branch '2.4' into develop 2021-03-03 21:31:07 +01:00
Jakub Onderka 0d69f84c39 new: [test] Password change 2021-03-03 19:19:25 +01:00
Jakub Onderka 599819f7f9 new: [authkeys] Allowed IPs 2021-03-03 09:23:07 +01:00
Jakub Onderka faa95b256a new: [sighting] New setting that will allow users to see host org sightings 2020-12-23 14:51:28 +01:00
Jakub Onderka 800da386ff new: [security] Test for hide_organisations_in_sharing_groups setting 2020-12-22 23:43:30 +01:00
Jakub Onderka 99f8e94ecb chg: [test] Update testlive_security.py to new version 2020-12-17 13:50:25 +01:00
Jakub Onderka 790087ca60 fix: [security] Do not return hashed authentication key after creation 2020-12-17 13:50:25 +01:00
Jakub Onderka 5bc7037c45 fix: [internal] Check if setting value is scalar 2020-12-17 13:50:25 +01:00
Jakub Onderka c0f6463d57 new: [security] Cancel API session right after auth key is deleted 2020-12-17 13:50:25 +01:00
Jakub Onderka c06782226a fix: [security] Auth key must be always random generated at server side 2020-12-17 13:50:25 +01:00
Jakub Onderka f27580f1e6 new: [security] Allow to set key validity 2020-12-17 13:50:25 +01:00
Jakub Onderka 9896f67358 new: [security] New setting Security.username_in_response_header 2020-12-17 13:50:25 +01:00
Jakub Onderka 4c6ffc6985 chg: [internal] Rename MISP.log_user_ips_auth -> MISP.log_user_ips_authkeys 2020-12-17 13:49:32 +01:00
Jakub Onderka 8662a7efaf chg: [internal] Move access monitoring to own method 2020-12-17 13:49:32 +01:00
Jakub Onderka 2ae6108b52 new: [test] Check when `MISP.authkey_keep_session` is true 2020-12-17 13:49:32 +01:00
Jakub Onderka 9315fa2296 fix: [internal] User should be able to see his org 2020-12-10 15:16:32 +01:00
Jakub Onderka 30488393c9 chg: [security] For `hide_organisation_index_from_users` hide orgs that make contribution that user cannot see 2020-12-09 20:54:39 +01:00
Jakub Onderka 0f1da20235 new: [test] View org page 2020-12-06 22:52:12 +01:00
Jakub Onderka 7092994258
Merge pull request #6701 from JakubOnderka/security-sg-view
new: [security] Test if user can see sharing groups
2020-12-06 15:24:24 +01:00
Jakub Onderka cb064dd9ce new: [security] Test if user can see sharing groups 2020-12-06 15:14:42 +01:00
Jakub Onderka 1381e6c0d4 chg: [shibb] Newly created org should be local 2020-12-04 20:40:26 +01:00
Jakub Onderka 2c7d6e4466 new: [auth] Allow to enforce auth plugin authentication 2020-11-30 14:46:36 +01:00
Jakub Onderka 03001303a6 fix: [security] Remove hashed advanced keys from response 2020-11-29 20:34:21 +01:00
Jakub Onderka e6c6301938 new: [shibb] Test for organisation UUID HTTP header 2020-11-25 21:21:14 +01:00
Jakub Onderka 9cfa20452f new: [test] Test for ApacheShibbAuth 2020-11-24 20:23:42 +01:00
Jakub Onderka 4b44db22a9 new: [test] Security test suite 2020-11-24 19:03:17 +01:00