Commit Graph

922 Commits

Author SHA1 Message Date
steinm
01e7a17d35 - check if password expiration is set 2012-09-11 13:16:47 +00:00
steinm
4a67f259bf - added form key 2012-09-11 13:15:59 +00:00
steinm
f6df8ea9eb - fixed sending of mails when notifier is changed 2012-09-11 12:52:42 +00:00
steinm
52fbc5bc29 - fixed more xss security holes 2012-09-11 12:51:46 +00:00
steinm
71d0efd1f1 - fixed possible xss security holes 2012-09-05 20:59:12 +00:00
steinm
3a9d93afc5 - set default encoding of lucene to utf8 2012-09-05 20:58:27 +00:00
steinm
f14c15ee50 - fixed security hole 2012-08-31 07:44:25 +00:00
steinm
452221fe2b - lots of fixes to prevent CSRF attacks 2012-08-29 20:37:22 +00:00
steinm
decd9f8e14 - simple webservice 2012-08-28 08:48:56 +00:00
steinm
36dc571aa5 - added more configuration settings for password handling, stopwords file
and user listing
2012-08-28 06:34:21 +00:00
steinm
d80c68ad51 - count login failures and disable account if a certain number is exceeded
(can be configured in the settings)
2012-08-28 06:31:26 +00:00
steinm
282938c93c - check for password strength and if it was previously used before setting
a new one (can be turned of in th settings)
2012-08-28 06:30:20 +00:00
steinm
134b9becb5 - calculate password strength
- take into account new settings for disabling a user
2012-08-28 06:27:22 +00:00
steinm
6e75d18ac7 - documents that cannot be seen by the user are no longer taken into account 2012-08-28 06:24:05 +00:00
steinm
312f43e12c - translated german comment 2012-07-18 12:07:56 +00:00
steinm
acaaac7b69 - check if expiritation is set before doing any action 2012-07-06 10:57:22 +00:00
steinm
d9f83a155d - fixed creation of dump file 2012-07-06 10:03:25 +00:00
steinm
1538f7e2e1 - fixed output of found documents 2012-04-26 20:27:57 +00:00
steinm
dfbc974ee9 - check for empty category name 2012-02-27 19:32:34 +00:00
steinm
bbcfb77f5b - fixed to login page 2012-02-27 19:30:55 +00:00
steinm
4f2946a3bd - changed line endings from dos to unix
- saved converters for index in configuration
2012-02-14 12:53:02 +00:00
steinm
229b79edad - changed line endings from dos to unix 2012-02-13 08:28:34 +00:00
steinm
a80a8a3a9b - extra phrase to report result of fulltext search 2012-01-30 21:15:10 +00:00
steinm
66c9846ced - do not use sanitizeString() anymore 2012-01-12 16:58:34 +00:00
steinm
89a29fcd29 - change line endings 2012-01-12 16:58:02 +00:00
steinm
77d05a607e - do not use sanitizeString() anymore 2012-01-12 16:57:23 +00:00
steinm
3722b92fcf - allow to reset categories 2011-12-06 12:23:57 +00:00
steinm
1f0a504919 - fixed syntax error 2011-12-06 12:23:29 +00:00
steinm
ce315cdf4d - behave propperly if 'all categories' has been selected 2011-12-06 12:23:06 +00:00
steinm
d44f2911fe - do not use mydmsDecodeString() anymore 2011-12-05 14:32:26 +00:00
steinm
2414c6599d - changed into unix line endings 2011-12-05 13:31:16 +00:00
steinm
ac434cd171 - do not pass true to $content->getApprovalStatus() 2011-12-05 13:20:31 +00:00
steinm
3e1926d4c8 - do not pass 'true' to $content->getReviewStatus() 2011-12-05 08:14:25 +00:00
steinm
a027d7c962 - remove sanitizeString() where possible 2011-12-02 18:44:42 +00:00
steinm
a802ad604e - use preg_replace() instead of sanitizeString() 2011-12-01 21:36:18 +00:00
steinm
599995edbc - use preg_replace() instead of sanitizeString() 2011-12-01 21:36:00 +00:00
steinm
8250b79ebc - use _REQUEST instead of _POST and _GET 2011-12-01 21:35:42 +00:00
steinm
57777f2498 - do not use sanitizeString() if not needed 2011-12-01 21:35:00 +00:00
steinm
112d2b4f0d - cast categoryid to int instead of sanitizeString() 2011-12-01 21:34:25 +00:00
steinm
bbb8e4cd04 - use preg_replace() instead of sanitizeString() 2011-12-01 21:32:37 +00:00
steinm
d444ff3488 - use preg_replace() instead of sanitize for category id list 2011-12-01 21:32:06 +00:00
steinm
02d81d4525 - no need to sanitize month, day, year because they are turned into an int 2011-12-01 21:31:17 +00:00
steinm
6945fcc0a8 - no need to sanitize login and email anymore 2011-12-01 21:30:11 +00:00
steinm
f85c5f9ebb - no need to sanitize password hash anymore 2011-12-01 21:29:34 +00:00
steinm
79a49fe87d - no need to sanitize session Cookie anymore 2011-12-01 21:28:59 +00:00
steinm
db1c3b7c9d - added search for folders 2011-11-29 07:19:25 +00:00
steinm
a2b2df30c0 - replaced comments in german 2011-10-27 07:56:48 +00:00
steinm
7542814406 - added missing config variables _enablePasswordForgotten and _enableLargeFileUpload 2011-10-25 13:34:28 +00:00
steinm
e1e2a59baa - simplyfied code 2011-10-16 19:54:57 +00:00
steinm
a2b791e7a2 - get rid of INSERT statements 2011-10-16 19:53:57 +00:00
steinm
51b92c5c0a - added scripts for password change 2011-10-12 06:29:48 +00:00
steinm
2b022f0c9e - fixed typo, added myself to list of copyright holders 2011-10-12 06:14:42 +00:00
steinm
746d3925a6 - got rid of ^M 2011-10-11 06:50:50 +00:00
steinm
dc623a1340 - do not pass the last paramter of delGrpApprover(), addGrpApprover() and friends anymore, because it isn't used 2011-10-11 06:43:51 +00:00
steinm
7990a1caef - simplyfied code by using joinGroup() and leaveGroup() 2011-10-10 14:10:16 +00:00
steinm
f055bda7a3 - use new function to create password change request 2011-10-10 14:09:27 +00:00
steinm
e869ebe2ef - scripts for sending forgotten password 2011-10-07 16:22:05 +00:00
steinm
a590083015 - allow managers of a group to manage their group 2011-10-07 16:18:23 +00:00
steinm
4ce91b17cf eck if $settings->_ldapBaseDN is set in order to prevent php warnings 2011-09-12 07:25:56 +00:00
steinm
fe0c8c2381 - output correct path of old folder in notification mail 2011-08-16 08:49:13 +00:00
steinm
7053895c5b - update an document with a file larger than what can be handled by the browser 2011-07-21 13:30:47 +00:00
steinm
8f23ae4a9a - show status in mail properly 2011-07-21 10:21:21 +00:00
steinm
bc37e36c91 - path to lucene class is now in _luceneClassDir
- do not list documents which has been deleted
2011-07-21 06:52:46 +00:00
steinm
5c4352cb85 - added _luceneClassDir 2011-07-21 06:51:49 +00:00
steinm
b4674164d6 - fixed output of expiration 2011-07-20 16:41:48 +00:00
steinm
c7c5c1f431 - use intval() instead of sanitizeString() where an integer is expected anyway 2011-06-15 06:08:47 +00:00
steinm
a915dccadf - use global logger 2011-05-16 15:44:59 +00:00
steinm
7ac94283ba - call sanitizeString() on data from ldap server 2011-04-11 06:31:10 +00:00
steinm
5aa68fb85a - fixed creation of human readable archives 2011-04-11 06:29:47 +00:00
steinm
1dbf8bab6c - no more sql error if the whole result set is to be shown 2011-04-08 16:09:50 +00:00
steinm
be04f7ce97 - declare $dms global in add_folder_notify() 2011-03-23 13:25:22 +00:00
steinm
bdc087f4bf - getGroup() is now a class of LetoDMS_DMS 2011-03-23 13:23:27 +00:00
steinm
47dc2d7616 - remove new file after successful insertion 2011-03-15 14:20:54 +00:00
steinm
740c4954cb - added new configuration variables 2011-03-15 14:19:17 +00:00
steinm
9c0e2220af - missing files for new configuration tool 2011-03-14 16:38:40 +00:00
steinm
878b2a6175 - moѕtly line break changes 2011-03-10 14:42:56 +00:00
steinm
dd0deb7f34 - added handling of categories 2011-03-10 14:40:20 +00:00
steinm
d983759a0c - added gui for uploading files with jumploader 2011-03-10 14:32:22 +00:00
steinm
8f58f9909d - added gui to manage categories 2011-03-10 14:30:40 +00:00
steinm
dc37217fd5 - added support for fulltext index 2011-03-10 14:13:39 +00:00
steinm
765ba91165 - fixed download link for versioninfo file 2011-02-08 08:58:36 +00:00
steinm
82ec82741b - setting a comment does not cause an error anymore if the comment did change 2011-02-03 07:26:08 +00:00
steinm
28c09f0b97 - use $dms->contentDir instead of $setting->_contentDir where ever possible 2011-01-28 07:40:27 +00:00
steinm
663ffba1c9 - use $dms->contentDir instead of $settings->_contentDir where ever possible 2011-01-28 07:38:39 +00:00
steinm
e14323478d - check for errors when uploading the file 2011-01-28 07:37:53 +00:00
steinm
4481185dab - use $dms->contentDir instead of $settings->_contentDir where ever possible 2011-01-28 07:37:00 +00:00
steinm
cfb360e45d - check if folder id was passed 2011-01-28 07:35:26 +00:00
steinm
dca18b6620 - use $dms->contentDir instead of $settings->_contentDir where ever possible 2011-01-28 07:34:00 +00:00
steinm
d1b7971e3b - fixed php warnings 2011-01-20 12:46:06 +00:00
steinm
3e1d956fba - do not include LetoDMS_Core.php anymore it is now include bei inc.DBInit.php 2011-01-20 12:39:25 +00:00
steinm
8a84bc3b51 - rename all classes belonging to the core of LetoDMS into LetoDMS_Core_xxx
- move them all into LetoDMS_Core
2011-01-20 08:18:37 +00:00
steinm
6d5724c2bc - do not include inc.DBAccess.php because it is included by inc.ClassDMS.php 2011-01-14 19:43:10 +00:00
steinm
c3030165ae - use new class LetoDMS_Session instead of accessing the database directly 2011-01-11 09:08:04 +00:00
steinm
985a1f3915 - pass the user how removes a group or user to remove() 2010-12-22 19:47:08 +00:00
steinm
955be450f3 - getFolderPathHTML() is now a function in inc/inc.Utils.php because
it uses links only known by the calling application
2010-12-22 08:50:57 +00:00
steinm
d4507695b0 - fixed error when sending notification 2010-12-16 09:29:11 +00:00
steinm
3ea6d218db - just put a new line into the code to separate lines 2010-12-16 07:15:05 +00:00
steinm
aaf2f1715d - fixed sending of notification mails 2010-12-14 14:14:29 +00:00
steinm
5650c23595 - more replacement of former global settings variable _adminID 2010-12-10 13:38:03 +00:00
steinm
4fc45c65ae - drop isAdmin and isGuest in user management and replaced it with
a 'role'
2010-12-05 20:29:33 +00:00
steinm
a32a2e7237 - do not use global variable settings->_guestID anymore. Use
LetoDMS_User::isGuest() instead
2010-12-03 07:22:56 +00:00
steinm
d3744c0264 - inc.ClassKeywords.php is now included by inc.ClassDMS.php
- moved all static functions to get and add keywords in LetoDMS_DMS
2010-11-27 20:52:03 +00:00
steinm
f81a7063df - getUser(), getFolder(), getDocument() are now methods of LetoDMS_DMS 2010-11-26 08:34:47 +00:00
steinm
f25b005b12 - no need to include inc.FileUtils.php anymore because it is included
by inc.ClassDMS.php
2010-11-25 21:06:59 +00:00
steinm
35b663eb74 - inc.ClassAccess is now included by inc.ClassDMS.php 2010-11-23 08:13:17 +00:00
steinm
a029cd22c2 - filterAccess() and filterUsersByAccess() are now static functions in
LetoDMS_DMS and inc.AccessUtils.php is included in inc.ClassDMS.php
2010-11-22 20:42:19 +00:00
steinm
10aadee937 - user current logged in user as sender of notify 2010-11-22 15:06:51 +00:00
steinm
d9f7bb09bc - do not instanciate class LetoDMS_Email, it is done globaly
- send notification only if name has changed
2010-11-18 14:37:55 +00:00
steinm
0d695f57d6 - get list of users/groups to notify before removing document 2010-11-18 14:36:45 +00:00
steinm
af5e6e7b79 - fixed sending of notification 2010-11-18 14:36:05 +00:00
steinm
8c4082cb8e - getFolderPathHTML() is now a method of LetoDMS_DMS 2010-11-18 14:34:51 +00:00
steinm
1f09dc0a34 - moved all notification code out of LetoDMS_Document into the 'layer'
above. This will allow to get rid of most of the global variables
	in LetoDMS_Document and make it reusable
2010-11-18 13:53:26 +00:00
steinm
31b1f00171 - added code to notify users which was previously in inc.ClassFolder.php 2010-11-17 07:34:12 +00:00
steinm
0a116adc88 - moved functions to create users and groups completely in LetoDMS_DMS 2010-11-15 21:08:07 +00:00
steinm
4678218f1a - moved function to admin users and groups in LetoDMS_DMS 2010-11-15 12:01:21 +00:00
steinm
cfd3eaae06 - first step to get rid of global variables from all files in inc/
- added new Class LetoDMS_DMS which represents the DMS, contains
  all settings for the DMS and the database connection. A document
	and a folder have a reference to the DMS
2010-11-12 22:47:41 +00:00
steinm
92a797f032 - replace $user->getID($user) by $user->getID() 2010-11-08 12:49:21 +00:00
steinm
73f4e23933 - took over changeѕ from stable release 2.0.2 2010-11-05 21:44:05 +00:00
steinm
d02848cce6 - moved code for searching into inc.ClassDocument.php 2010-11-05 21:41:37 +00:00
steinm
0e30ce6eb3 - renamed class Email to LetoDMS_Email 2010-11-03 12:33:46 +00:00
steinm
5af290a527 - renamed class Document to LetoDMS_Document
- add static function getDocument() to LetoDMS_Document but kept the
  old function getDocument() until all calls has been changed to
	LetoDMS_Document::getDocument()
2010-10-29 14:16:25 +00:00
steinm
b5bc621318 - move all sources into trunk 2010-10-29 13:19:51 +00:00