summaryrefslogtreecommitdiff
path: root/index.php
AgeCommit message (Expand)Author
2011-02-08Add optional referer check to prevent CSRF in GET requeststhomascube
2011-02-03protect login form submission from CSRF using a request tokenthomascube
2011-01-28Improve session validity check with changing auth cookies; reduce writes to D...thomascube
2011-01-19Better fix for login redirect, don't force mail taskthomascube
2011-01-16- Move action files map from index.php to steps' func.inc filesalecpl
2011-01-14Fix login redirect issues (#1487686)thomascube
2011-01-12Bumbed version; Roundcube development is not Switzerland onlythomascube
2011-01-06Make sure an existing session is killed/replaced when submitting login formthomascube
2010-12-03- New Folder Manager UIalecpl
2010-11-29- Plugin API: Add 'pass' argument in 'authenticate' hook (#1487134)alecpl
2010-11-09- Handle situation when $IMAP object isn't initialized on log inalecpl
2010-10-14- Improved IMAP errors handlingalecpl
2010-10-01- Fix "Server Error! (Not Found)" when using utils/save-pref action (#1487023)alecpl
2010-09-25- s/RoundCube/Roundcube/alecpl
2010-09-17- Fix list_cols is not updated after column dragging (#1486999)alecpl
2010-08-07Fix unit tests + update versionthomascube
2010-06-23- removed PHP closing tagalecpl
2010-06-03Allow plugins to register their own tasksthomascube
2010-04-20- Add HTTP_X_REAL_IP and HTTP_X_FORWARDED_FOR to successful logins log (#1486...alecpl
2010-04-01Add server-side plugin hooks to address group functions + better action namesthomascube
2010-03-31Asynchronously expand contact groups + skip count queries in autocompletion m...thomascube
2010-03-31Implement group renaming/deleting + use more consistent names for commands an...thomascube
2010-03-26Added basic contact groups featurethomascube
2010-03-17Merged devel-threads branch (r3066:3364) back into trunkthomascube
2010-03-01- Improve performance by avoiding unnecessary updates to the session table (#...alecpl
2010-02-25- Password: Make passwords encoding consistent with core, add 'password_chars...alecpl
2010-02-24- don't set task for login_after hookalecpl
2010-02-13- Fix imap_init hook broken in r3258 (#1486493)alecpl
2010-02-06- Fix setting task name according to auth state. So, any action before useralecpl
2010-01-28- add file/line definitions to raise_error() callsalecpl
2010-01-17- Fix 'force_https' to specified port when URL contains a port number (#1486411)alecpl
2009-10-27- Fix $_SERVER['HTTPS'] check for SSL forcing on IIS (#1486243) + fix port checkalecpl
2009-10-21Revert r3038 and allow to specify the port as value of force_httpsthomascube
2009-10-14- fix last commitalecpl
2009-10-14- Fix login page loading into an iframe when session expires (#1485952)alecpl
2009-10-13- Option 'force_https' replaced by 'force_https' pluginalecpl
2009-09-05- Fix wrong headers for IE on servers without $_SERVER['HTTPS'] (#1485926)alecpl
2009-08-14Add some arguments to the logout_after hookthomascube
2009-08-14Implemented logout_after plugin hookthomascube
2009-08-07Fix spell check (#1486036)thomascube
2009-08-05Allow a plugin to disable the cookie checkthomascube
2009-07-24Don't check request token on loginthomascube
2009-07-22- Help pluginalecpl
2009-07-21Use global request tokens and automatically protect all POST requeststhomascube
2009-07-02Add option to enforce https connectionsthomascube
2009-06-15- always call logout action as task (#1485919)alecpl
2009-06-01- use preg functions instead of ereg functionsalecpl
2009-06-01- get rid of some hardcoded action names and move decission about output comp...alecpl
2009-05-12Really, really logout (fixes r2467).svncommit
2009-04-19Merged branch devel-api (from r2208 to r2387) back into trunk (omitting some ...thomascube