49 Commits (9cd0a29f481454dd623b816c689005a4abb99997)

Author SHA1 Message Date
Chris Lu e446234e9c
remove spoof-able request header (#7103) 3 months ago
Chris Lu 0703308270
remote address parsing should handle special cases (#7101) 3 months ago
Konstantin Lebedev b65eb2ec45
[security] reload whiteList on http seerver (#6302) 11 months ago
zuzuviewer 5ee50d26d8
fix CVE-2016-2183 (#5844) 1 year ago
chrislu 622448b993 update advancedtls 1 year ago
jerebear12 d5d9fbb8aa Add a way to use a JWT in an HTTP only cookie 2 years ago
chrislu a1149f060b upgrade jwt 2 years ago
chrislu c49caff5a1 change from deprecated jwt.StandardClaims to new jwt.RegisteredClaims 2 years ago
Konstantin Lebedev a0931be0c0
S3 TLS credentials Refreshing (#4506) 2 years ago
Zachary Walters ef2f741823
Updated the deprecated ioutil dependency (#4239) 3 years ago
chrislu 21c0587900 go fmt 3 years ago
chrislu 13b9a52f80 fix deprecated functions 3 years ago
chrislu 26dbc6c905 move to https://github.com/seaweedfs/seaweedfs 3 years ago
Konstantin Lebedev 6c20a3b622 avoid set currentMaster k8s svc.local discoveruy service domains 3 years ago
Konstantin Lebedev 2e782dfdcb rm defer comments 3 years ago
Konstantin Lebedev 7efaafb0ee fix Authenticate 3 years ago
Konstantin Lebedev b0aa51d7ef enable require client cert 3 years ago
Konstantin Lebedev ea7cdb8b0e seperate option 3 years ago
Konstantin Lebedev 5b388ed6c1 initial advancedtls 3 years ago
Berck Nash 9b14f0c81a Add mTLS support for both master and volume http server. 4 years ago
Sebastian Kurfuerst 10404c4275 FEATURE: add JWT to HTTP endpoints of Filer and use them in S3 Client 4 years ago
Sebastian Kurfuerst fcc09cef6f Refactor: pass in claim type into security.DecodeJwt 4 years ago
Sebastian Kurfuerst d156d410ef rename security.GenJwt to security.GenJwtForVolumeServer 4 years ago
Sebastian Kurfuerst eda4c43a08 fix typo in error message 4 years ago
Eng Zer Jun a23bcbb7ec
refactor: move from io/ioutil to io and os package 4 years ago
Chris Lu 60f5c0a2f5 fix security alert on github.com/dgrijalva/jwt-go 4 years ago
Konstantin Lebedev 348e21a08c add comments 5 years ago
Konstantin Lebedev 831953c55c allowed wildcard domain 5 years ago
Konstantin Lebedev 0e02f7e258 comma-separated SSL certificate common names 5 years ago
Konstantin Lebedev 190fada1ef TLS allowed commonNames 5 years ago
Konstantin Lebedev c6d3735605 permitCommonNames 5 years ago
Chris Lu cfb9342a15 avoid concurrent map updates to viper 5 years ago
limd e8296104fc fix tls grpc ca path 5 years ago
Chris Lu c2faab23b6 refactor 5 years ago
Chris Lu d013d09a9b adjust logging 5 years ago
bingoohuang ecdeef8c66 simplify func(w http.ResponseWriter, r *http.Request) to http.HandlerFunc 5 years ago
Chris Lu e83bfd0a35 adjust log level 6 years ago
Chris Lu d335f04de6 support env variables to overwrite toml file 6 years ago
j.laycock 6fc6322c90 Change joeslay paths to chrislusf paths 6 years ago
j.laycock 595a1beff0 Swap imports to use joeslay 6 years ago
Chris Lu 50aa769554 jwt for read access control 6 years ago
Chris Lu 3f9ecee40f working with reading remote intervals 7 years ago
Chris Lu 25941e0500 master: add jwt expires_after_seconds 7 years ago
Chris Lu 77b9af531d adding grpc mutual tls 7 years ago
Chris Lu 74fb237727 benchmark can work in secure mode 7 years ago
Chris Lu 215cd27b37 add authorizing fileId write access 7 years ago
Chris Lu 4ff4a147b2 cleanup security.Secret 7 years ago
Sergey aa5ccff6d2
fixing of typos 7 years ago
Mike Tolman ce99bb927d Revert "Adding HTTP verb whitelisting options." 9 years ago
Mike Tolman 34837afc7a Adding HTTP verb whitelisting options. 9 years ago