summaryrefslogtreecommitdiff
path: root/doc/security.mdwn
AgeCommit message (Collapse)Author
2006-08-27* Patch from James Westby to add a --sslcookie switch, which forcesjoey
cookies to only be sent over ssl connections to avoid interception. * Factor out the cgi header printing code into a new function. * Fix preferences page on anonok wikis; still need to sign in to get to the preferences page.
2006-08-23* Allow preprocessor directives to contain python-like triple-quotedjoey
text blocks, for easy nesting of quotes inside. * Add a template plugin. * Use the template plugin to add infoboxes to each plugin page listing basic info about the plugin.
2006-08-18updatejoey
2006-08-05misc changesjoey
2006-08-02releasing version 1.13joey
2006-07-30security notejoey
2006-07-02web commit by ThomasSchwinge: Typo fixes.www-data
2006-07-02web commit by joeywww-data
2006-07-02* Parse svn log as xml for improved utf8 and security. Note that this makesjoey
ikiwiki depend on XML::Simple. Patch by Faidon Liambotis.
2006-06-01* More security review.joey
2006-05-26typojoey
2006-05-05* Removed --sanitize and --no-sanitize, replaced with --plugin htmlscrubberjoey
and --disable-plugin htmlscrubber.
2006-05-02* Added plugin system, currently only supporting for PreProcessorDirectives.joey
* Added a pagecount plugin, enabled by default. * Support PreProcessorDirectives with no parameters, ie "[[pagecount ]]". * Fixed/optimised backlinks code, to avoid rebuilding pages to update backlinks when the backlinks hadn't really changed. * Moved inline page support, rss generation etc into the inline plugin, enabled by default. * Added brokenlinks plugin, not enabled by default, but rather handy. * Fix several broken links in the doc wiki.
2006-04-25web commit by joeywww-data
2006-04-25web commit by joeywww-data
2006-04-25security updatejoey
2006-04-25web commit by joeywww-data
2006-04-25web commit by joeywww-data
2006-04-25web commit by joeywww-data
2006-04-25implemented html sanitisationjoey
2006-04-25web commit by joeywww-data
2006-04-24updatejoey
2006-04-24updatejoey
2006-03-29improve fix for symlink attacks to check subdirectories for symlinks toojoey
before writing
2006-03-29Implemented --underlaydir, and moved files provided by underlay out of docjoey
so I don't need to maintain two copies anymore. You might also want to remove the files provided in the basewiki underlay from your wiki, if you have not created custom local versions of them, so that these pages will be automatically updated in future ikiwiki upgrades.
2006-03-26added --getctimejoey
2006-03-23found & fixed another symlink attackjoey
2006-03-23added adminuser settings, globlist support, and used this to implement pagejoey
locking
2006-03-19web commit by joeywww-data
2006-03-19web commit by joeywww-data
2006-03-19web commit by joeywww-data
2006-03-19web commit by joeywww-data
2006-03-16web commit by joeywww-data
2006-03-16web commit by joeywww-data
2006-03-16web commit by joeywww-data
2006-03-15web commit by joeywww-data
2006-03-15web commit by joeywww-data
2006-03-15web commit by joeywww-data
2006-03-13foojoey
2006-03-12security improvements, switched to single session db filejoey
2006-03-12added signin form, although it needs to be hooked up to a user storejoey
2006-03-11web commit from 66.118.98.137: www-data
2006-03-11web commit from 66.118.98.137: www-data
2006-03-11web commit from 66.118.98.137: www-data
2006-03-11web commit from 66.118.98.137: www-data
2006-03-11upjoey
2006-03-11foojoey
2006-03-10updatejoey
2006-03-10added cgi supportjoey
2006-03-10foojoey