summaryrefslogtreecommitdiff
path: root/include/sessions.php
AgeCommit message (Expand)Author
2019-12-18remove version.php and VERSION global constant, do version-related things in ...Andrew Dolgov
2019-04-11add hidden _SKIP_SESSION_UA_CHECKS tunableAndrew Dolgov
2018-10-16fix session write handler always assuming that database entry exists and fail...Andrew Dolgov
2018-10-16remove session REMOTE_ADDR checksAndrew Dolgov
2018-10-15do not use separate _ssl cookie for secure sessionsAndrew Dolgov
2018-10-15force regenerate session id on successful login, remove previous blank SID checkAndrew Dolgov
2018-10-15if empty session is autostarted because of a cookie, immediately destroy itAndrew Dolgov
2018-10-15validate_session: bring back IP session binding (enabled by default) and UA c...Andrew Dolgov
2017-12-01sessions: PDOAndrew Dolgov
2017-07-17sessions: use is_server_https() for secure cookie settingAndrew Dolgov
2017-07-17$_SERVER['HTTPS'] can be exists and 'off' for non-https connectiosNatan Frei
2017-07-13rework previous 32 bit session stuffAndrew Dolgov
2017-07-13sessions: clip max expiry value to a 32bit integerAndrew Dolgov
2017-04-26remove some redundant php closing tagsAndrew Dolgov
2017-04-26fix various issues reported by static analysisAndrew Dolgov
2015-12-07ttrss_gc: return trueAndrew Dolgov
2015-08-21remove SESSION_CHECK_ADDRESSAndrew Dolgov
2015-01-31session: don't try to validate session schema version on empty sessionsAndrew Dolgov
2015-01-30do not invalidate session when version_static and user agent changesAndrew Dolgov
2013-07-06better error reporting in session validationAndrew Dolgov
2013-04-24use static version for session checking, show latest changeset for git versio...Andrew Dolgov
2013-04-17remove $linkAndrew Dolgov
2013-04-17more work on singleton-based DBAndrew Dolgov
2013-04-16experimental SQL-based error loggerAndrew Dolgov
2013-04-04implement some tweaks to session handling; properly remove session cookie if ...Andrew Dolgov
2013-04-04session validation: check for tt-rss versionAndrew Dolgov
2013-04-03remove session check/destroy stuff, looks problematicAndrew Dolgov
2013-04-02initialize session connection in ttrss_open but define session_connection in ...Andrew Dolgov
2013-04-02sessions: initialize connection on include, not in ttrss_openAndrew Dolgov
2013-04-01Merge branch 'master' of https://github.com/stickystyle/Tiny-Tiny-RSSRyan Parrish
2013-04-01add missing gettext libsRyan Parrish
2013-04-01validate_session: check for user agentAndrew Dolgov
2013-03-31validate session on startupAndrew Dolgov
2013-03-29fix stuff broken by previous pullAndrew Dolgov
2013-03-29Check that $_SESSION["uid"] is defined before checking valueall
2013-03-28sessions: properly check for cookie being setAndrew Dolgov
2013-03-28remove SESSION_EXPIRE_TIMEAndrew Dolgov
2013-03-28reimplement remember_meAndrew Dolgov
2013-03-28add yet another workaround for stuck login due to session cookiesAndrew Dolgov
2013-03-28only autostart session if login cookie existsAndrew Dolgov
2013-03-22db_escape_string: specify link parameter for consistency; sessions: do not fo...Andrew Dolgov
2013-03-21enable mysql db session supportAndrew Dolgov
2013-03-21attempt fix db_escape_string() invocation in sessions.phpAndrew Dolgov
2013-02-19mute warnings caused by session_start() to deal with potential ps_files_clean...Andrew Dolgov
2013-01-22sessions: prevent HTTPS warningAndrew Dolgov
2012-09-19api: use tt-rss session storageAndrew Dolgov
2011-12-13simplify default global config, expand sanity_check messagesAndrew Dolgov
2011-12-11overall directory tree cleanupAndrew Dolgov