28 Commits (100b278a99f2417a31e1c06804821df921a1248e)

Author SHA1 Message Date
Claire 68dcbcb7bf
Add more specific error messages to HTTP signature verification (#21617) 1 year ago
David Vega 1b5d207131
Fix single name variables on controller folder (#20092) 1 year ago
Claire 8cf7006d4e
Refactor ActivityPub handling to prepare for non-Account actors (#19212) 2 years ago
Claire 84aff598ea
Fix typo in SignatureVerification (#19209) 2 years ago
Claire 1145dbd327
Improve error reporting and logging when processing remote accounts (#15605) 2 years ago
Claire 75189af528
Fix crash on receiving requests with missing Digest header (#15782) 3 years ago
ThibG fa929d8b81
Tweak signature verification (#15069) 4 years ago
dependabot[bot] 8972e5f7f6
Bump rubocop from 0.86.0 to 0.88.0 (#14412) 4 years ago
ThibG b241f20bd2
Add support for latest HTTP Signatures spec draft (#14556) 4 years ago
Eugen Rochko 5265df0a8a
Change signature verification to ignore signatures with invalid host (#13033) 4 years ago
Eugen Rochko 1bc077dc74
Add HTTP signature keyId to request log (#11591) 5 years ago
Eugen Rochko 5bf67ca913
Add ActivityPub secure mode (#11269) 5 years ago
Eugen Rochko 4e92183227
Refactor domain block checks (#11268) 5 years ago
ThibG 89d600bedb Move signature verification stoplight to the requests themselves (#10813) 5 years ago
ThibG 28b482874a Improvements to signature verification (#9667) 5 years ago
Eugen Rochko 17cd91c777
Fix signature verification stoplight triggering on non-timeout errors (#9617) 5 years ago
Eugen Rochko 4615512285
Reduce connect timeout limit and limit signature failures by source IP (#9236) 6 years ago
Eugen Rochko fac529975b Improve signature verification safeguards (#8959) 6 years ago
Eugen Rochko 21ad21cb50
Improve signature verification safeguards (#8959) 6 years ago
Eugen Rochko a00ce8c92c
Remove dead code (#8919) 6 years ago
Marty McGuire 8fea9cc311 Typo in signature verification failure logging (#7916) 6 years ago
Eugen Rochko dfb6907e08
HTTP signatures spec no longer requires algorithms field (#7525) 6 years ago
Akihiko Odaki 613e7c7521 Rename ResolveRemoteAccountService to ResolveAccountService (#6327) 6 years ago
Akihiko Odaki 63f0979799 Validate id of ActivityPub representations (#5114) 7 years ago
ThibG dfaa219f88 Fix HTTP responses for salmon and ActivityPub inbox processing (#5200) 7 years ago
Eugen Rochko 76f360c625 If HTTP signature is wrong and webfinger cache is stale, retry with resolve (#5129) 7 years ago
Eugen Rochko 72bb3e03fd Support more variations of ActivityPub keyId in signature (#4630) 7 years ago
Eugen Rochko fdea173237 Add Digest header to requests with body, handle acct and URI keyId (#4565) 7 years ago
Eugen Rochko 1618b68bfa HTTP signatures (#4146) 7 years ago