Commit Graph

2943 Commits

Author SHA1 Message Date
Maria Odea B. Ching 99766182bf [MRM-1460] upgrade to redback 1.2.8
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1102167 13f79535-47bb-0310-9956-ffa450edef68
2011-05-12 04:43:46 +00:00
Brett Porter 3a253e5d2a revert the version
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1101765 13f79535-47bb-0310-9956-ffa450edef68
2011-05-11 07:11:21 +00:00
Maria Odea B. Ching 58fe8440e4 [MRM-1457] disable dependency tree by default in 1.3.x to prevent cpu usage problems
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1100112 13f79535-47bb-0310-9956-ffa450edef68
2011-05-06 07:28:34 +00:00
Maria Odea B. Ching 1d63d95e52 [MRM-1468] Fix XSS vulnerability in Archiva
submitted by Marc Jansen Tan Chua

o tightened up validation on input/edit forms + unit tests
o added selenium tests for XSS vunerabilities
o used c:out in some of the pages so output will be escaped if containing html characters


git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1098897 13f79535-47bb-0310-9956-ffa450edef68
2011-05-03 02:54:19 +00:00
Maria Odea B. Ching e54e7dccc3 reverted previous csrf fixes committed in -r1081111
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1091313 13f79535-47bb-0310-9956-ffa450edef68
2011-04-12 07:07:05 +00:00
Maria Odea B. Ching d680a4f05e revert xss fixes committed in -r1081116
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1091310 13f79535-47bb-0310-9956-ffa450edef68
2011-04-12 06:51:36 +00:00
Maria Odea B. Ching 47884e5079 cleanup unneeded tags and config for csrf check
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1091309 13f79535-47bb-0310-9956-ffa450edef68
2011-04-12 06:42:38 +00:00
Brett Porter 3a90b2c5d6 add missing license header
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1091283 13f79535-47bb-0310-9956-ffa450edef68
2011-04-12 04:07:05 +00:00
Maria Odea B. Ching 34b5a6b2bc [MRM-1460] added selenium tests for CSRF fixes in affected pages
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1090975 13f79535-47bb-0310-9956-ffa450edef68
2011-04-11 08:25:40 +00:00
Maria Odea B. Ching 5d860e727a temporarily added redback snapshots repo while not yet configured in vmbuild
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1090740 13f79535-47bb-0310-9956-ffa450edef68
2011-04-10 05:01:37 +00:00
Maria Odea B. Ching 622d4ecd46 [MRM-1480]/[REDBACK-274] (CVE-2011-1026)
o upgrade to redback 1.2.8-SNAPSHOT
o configured struts2's token interceptor + use of <s:token> in affected actions to prevent CSRF issue


git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1089839 13f79535-47bb-0310-9956-ffa450edef68
2011-04-07 12:01:59 +00:00
Maria Odea B. Ching 6066b387e1 [maven-release-plugin] prepare for next development iteration
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1081253 13f79535-47bb-0310-9956-ffa450edef68
2011-03-14 03:20:34 +00:00
Maria Odea B. Ching 9e4585ebbb [maven-release-plugin] prepare release archiva-1.3.5
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1081251 13f79535-47bb-0310-9956-ffa450edef68
2011-03-14 03:18:56 +00:00
Maria Odea B. Ching df08872de8 update release notes
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1081250 13f79535-47bb-0310-9956-ffa450edef68
2011-03-14 03:10:16 +00:00
Maria Odea B. Ching 95bfe1b40e [MRM-1460] configure XSS parameter check interceptor added in Redback 1.2.7
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1081116 13f79535-47bb-0310-9956-ffa450edef68
2011-03-13 13:56:55 +00:00
Maria Odea B. Ching 283092a7d1 [MRM-1460]
o upgraded redback to 1.2.7
o added configuration for redback csrf filter


git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1081111 13f79535-47bb-0310-9956-ffa450edef68
2011-03-13 13:35:02 +00:00
Brett Porter 5f8f277685 [MRM-1248] improve documentation about potential issues with the network proxy configuration
Merged from: r1073214


git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1073222 13f79535-47bb-0310-9956-ffa450edef68
2011-02-22 04:22:24 +00:00
Brett Porter 818133db67 update site descriptor version
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1068419 13f79535-47bb-0310-9956-ffa450edef68
2011-02-08 14:32:29 +00:00
Brett Porter c9203bdfc1 update release notes
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1068407 13f79535-47bb-0310-9956-ffa450edef68
2011-02-08 14:13:12 +00:00
Brett Porter 4f3b44221a [maven-release-plugin] prepare for next development iteration
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1068378 13f79535-47bb-0310-9956-ffa450edef68
2011-02-08 13:25:12 +00:00
Brett Porter ad9d6be3ee [maven-release-plugin] prepare release archiva-1.3.4
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1068376 13f79535-47bb-0310-9956-ffa450edef68
2011-02-08 13:23:57 +00:00
Brett Porter c45bcee96f [MRM-1455] Upgrade to Redback 1.2.6
Includes fix for [CVE-2011-0533]


git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1066067 13f79535-47bb-0310-9956-ffa450edef68
2011-02-01 15:30:17 +00:00
Brett Porter c1fe5694a3 [maven-release-plugin] prepare for next development iteration
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049421 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 04:28:20 +00:00
Brett Porter 662266e262 [maven-release-plugin] prepare release archiva-1.3.3
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049419 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 04:27:28 +00:00
Brett Porter 85ca7341a8 update docs for 1.3.3
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049412 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 04:16:05 +00:00
Brett Porter c473fd718a [MRM-1445] disable referrer check by default
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049409 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 03:58:25 +00:00
Brett Porter cfe9a410d9 [MRM-1421] Archiva repository purge incorrectly purges based on file timestamps even when the snapshot timestamp is known
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049399 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 03:01:33 +00:00
Brett Porter 78d1f291f0 [MRM-1421] Archiva repository purge incorrectly purges based on file timestamps even when the snapshot timestamp is known
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049392 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 02:26:34 +00:00
Brett Porter 00c2fef39e clean up test case
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049390 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 02:22:07 +00:00
Brett Porter 6ea4afc49f test that files actually get deleted in repository purge
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049389 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 02:19:22 +00:00
Brett Porter 132134b0c0 improve test stability if there is no clean beforehand
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049384 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 01:59:33 +00:00
Brett Porter 9cae99ded3 [MRM-1396] Purge task problem : Not enough parts to the path
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1049375 13f79535-47bb-0310-9956-ffa450edef68
2010-12-15 01:21:23 +00:00
Brett Porter 90c092594b correctly acknowledge September 19
Image is derived from http://commons.wikimedia.org/wiki/File:Piratey,_vector_version.svg, which is in the public domain


git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1043948 13f79535-47bb-0310-9956-ffa450edef68
2010-12-09 12:51:06 +00:00
Brett Porter a927b05eee [MRM-1443] count the repository statistics directly
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1043850 13f79535-47bb-0310-9956-ffa450edef68
2010-12-09 07:58:00 +00:00
Brett Porter ad8b3ce072 fix title, as it is showing amount used, not free
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1042714 13f79535-47bb-0310-9956-ffa450edef68
2010-12-06 16:38:31 +00:00
Brett Porter 1ad96a97b7 [MRM-1440] add current time as well, for comparison when troubleshooting captured results
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1042711 13f79535-47bb-0310-9956-ffa450edef68
2010-12-06 16:34:00 +00:00
Brett Porter 68a60e2998 clarify title
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1042702 13f79535-47bb-0310-9956-ffa450edef68
2010-12-06 16:24:11 +00:00
Brett Porter ef2591b19c add missing closing tag
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1042700 13f79535-47bb-0310-9956-ffa450edef68
2010-12-06 16:21:04 +00:00
Brett Porter e654db6bfe [MRM-1442] track time spent in each consumer during a scan, to help diagnose poor scanning performance
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1042689 13f79535-47bb-0310-9956-ffa450edef68
2010-12-06 15:56:35 +00:00
Brett Porter 0825745b30 [MRM-1441] add repository scanning details to system status page
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1042633 13f79535-47bb-0310-9956-ffa450edef68
2010-12-06 13:27:53 +00:00
Brett Porter 85eb227ce6 [MRM-1440] fix typo
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1042631 13f79535-47bb-0310-9956-ffa450edef68
2010-12-06 13:25:01 +00:00
Brett Porter ee3a5009b3 [MRM-1440] add a system status page
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1042625 13f79535-47bb-0310-9956-ffa450edef68
2010-12-06 13:17:48 +00:00
Brett Porter f3b014c2b4 [MRM-1439] improve indexing performance
Avoid re-reading the entire index each time an artifact is added, and instead search to see if it should be added or updated

git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1041829 13f79535-47bb-0310-9956-ffa450edef68
2010-12-03 14:19:36 +00:00
Brett Porter fb65d5fc64 fix typo
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1041825 13f79535-47bb-0310-9956-ffa450edef68
2010-12-03 14:15:05 +00:00
Brett Porter cfd8ca2ffb [MRM-1097] for deployments/proxied artifacts, create and close indexing context when indexing task is executed as compared to the original behavior where the indexing context is created before it is queued (so as the indexing task queue builds up, more indexing contexts are being opened/created which might be causing the too many open files problem)
Updated unit tests with changes made
Did not update the indexer as it would impact the API more significantly
Merged from: r1039004


git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1041824 13f79535-47bb-0310-9956-ffa450edef68
2010-12-03 14:11:05 +00:00
Maria Odea B. Ching 77f294d87f merge -c 1040400 from 1.3.2 tag
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1040401 13f79535-47bb-0310-9956-ffa450edef68
2010-11-30 03:45:42 +00:00
Brett Porter 19dd230af9 upgrade GPG plugin and use agent
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1039236 13f79535-47bb-0310-9956-ffa450edef68
2010-11-26 01:29:11 +00:00
Brett Porter 68f668e161 [MRM-1416] upgrade to Redback 1.2.5
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1039200 13f79535-47bb-0310-9956-ffa450edef68
2010-11-25 22:21:05 +00:00
Maria Odea B. Ching 8e9c2e9910 [maven-release-plugin] prepare for next development iteration
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1038584 13f79535-47bb-0310-9956-ffa450edef68
2010-11-24 12:21:21 +00:00
Maria Odea B. Ching 1725da3350 [maven-release-plugin] prepare release archiva-1.3.2
git-svn-id: https://svn.apache.org/repos/asf/archiva/branches/archiva-1.3.x@1038582 13f79535-47bb-0310-9956-ffa450edef68
2010-11-24 12:20:41 +00:00