summaryrefslogtreecommitdiff
path: root/lib/omni_auth
Commit message (Collapse)AuthorAgeFilesLines
* Validate that SAML requests are originated from gitlabSebastian Arcila Valenzuela2019-09-301-0/+29
| | | | | | | | If the request wasn't initiated by gitlab we shouldn't add the new identity to the user, and instead show that we weren't able to link the identity to the user. This should fix: https://gitlab.com/gitlab-org/gitlab-ce/issues/56509
* Support RSA and ECDSA algorithms in Omniauth JWTMichael Tsyganov2018-12-051-2/+15
| | | | Signed-off-by: Rémy Coutable <remy@rymai.me>
* Enable even more frozen string in lib/**/*.rbgfyoung2018-10-082-0/+4
| | | | | | | | | | | | | | | | | | | | Enables frozen string for the following files: * lib/generators/**/*.rb * lib/gitaly/**/*.rb * lib/google_api/**/*.rb * lib/haml_lint/**/*.rb * lib/json_web_token/**/*.rb * lib/mattermost/**/*.rb * lib/microsoft_teams/**/*.rb * lib/object_storage/**/*.rb * lib/omni_auth/**/*.rb * lib/peek/**/*.rb * lib/rouge/**/*.rb * lib/rspec_flaky/**/*.rb * lib/system_check/**/*.rb Partially addresses #47424.
* Eliminate constants warnings by:Lin Jen-Shin2018-06-011-3/+1
| | | | | * Replace `require` or `require_relative` with `require_dependency` * Remove unneeded `autoload`
* Ports omniauth-jwt gem onto GitLab OmniAuth Strategies suiteTiago Botelho2018-04-261-0/+62
|
* Fix bitbucket login39495-fix-bitbucket-loginJarka Kadlecova2017-10-261-0/+4
|
* Refactor CSRF protectionblackst0ne2017-07-261-21/+0
|
* Remove explicit `require` calls, and use `require_dependency` when needed29389-fix-already-initialized-constantsRémy Coutable2017-03-131-0/+41
| | | | | | | | See http://guides.rubyonrails.org/autoloading_and_reloading_constants.html for more info. Signed-off-by: Rémy Coutable <remy@rymai.me>
* Fix signin with OmniAuth providersfix-omniauth-signinDouwe Maan2015-12-081-54/+9
|
* Add reset_session for the :reset_session strategy.Douwe Maan2015-04-241-1/+5
|
* Protect OmniAuth request phase against CSRF.Douwe Maan2015-04-241-0/+62