1. 02 May, 2012 1 commit
  2. 26 Apr, 2012 4 commits
    • Łukasz Nowak's avatar
    • Łukasz Nowak's avatar
      Improve "interface". · 0f4b26a3
      Łukasz Nowak authored
      Return token on addition.
      Use proxied scripts to access whole system in order to allow unprivileged user
      to manage own tokens.
      Update roles immediately in order to give unprivileged user access to
      validated token.
      0f4b26a3
    • Łukasz Nowak's avatar
      Delegate token validation. · d2279cd9
      Łukasz Nowak authored
      By requiring token_validation_method extraction plugin is only responsible
      for low level implementation.
      d2279cd9
    • Łukasz Nowak's avatar
      Improve token management. · fad3d37b
      Łukasz Nowak authored
      BearerTokenModule_addNewToken allows to add token for Person passed as
      destination_reference. In case if Person has no key assigned new one is
      generated.
      
      BearerToken_isValid allows to validate token against (possibly) related person
      object.
      
      Base_getHMAC is low level interface to hmac module.
      
      In order to made tokens unique use User-Agent and REMOTE_ADDR in token
      generation body. Thanks to this token will be narrowed to one broswer. In order
      to avoid reuse token on different servers add Host.
      
      Key to generate HMAC are stored on Person object using bearer_token_key property.
      fad3d37b
  3. 25 Apr, 2012 5 commits
  4. 19 Apr, 2012 3 commits
  5. 18 Apr, 2012 2 commits
  6. 17 Apr, 2012 1 commit
  7. 12 Apr, 2012 3 commits
  8. 10 Apr, 2012 1 commit
  9. 06 Apr, 2012 4 commits
  10. 05 Apr, 2012 4 commits
  11. 04 Apr, 2012 2 commits
  12. 03 Apr, 2012 1 commit
  13. 02 Apr, 2012 2 commits
  14. 30 Mar, 2012 1 commit
  15. 29 Mar, 2012 6 commits