lams_central

Clone Tools
  • last updated a few seconds ago
Constraints
Constraints: committers
 
Constraints: files
Constraints: dates
LDEV-4932 Add CSRF to QB bank calls

    • -0
    • +18
    ./conf/security/Owasp.CsrfGuard.properties
    • -12
    • +9
    ./web/authoring/template/tbl/tbl.jsp
    • -0
    • +1
    ./web/qb/authoring/addmatchingpairs.jsp
    • -0
    • +1
    ./web/qb/authoring/addmultiplechoice.jsp
  1. … 18 more files in changeset.
SP-4 Staff gets only monitor and author roles, not learner

Merge branch 'master' into v4.0

# Conflicts:

# lams_admin/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_build/build.xml

# lams_build/liblist.txt

# lams_central/src/java/org/lamsfoundation/lams/web/outcome/OutcomeController.java

# lams_central/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_central/web/authoringConfirm.jsp

# lams_central/web/common/taglibs.jsp

# lams_central/web/includes/javascript/authoring/authoringGeneral.js

# lams_central/web/includes/javascript/outcome.js

# lams_central/web/outcome/outcomeEdit.jsp

# lams_central/web/outcome/outcomeManage.jsp

# lams_common/src/java/org/lamsfoundation/lams/util/WebUtil.java

# lams_gradebook/src/java/org/lamsfoundation/lams/gradebook/web/controller/GradebookController.java

# lams_gradebook/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_learning/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_monitoring/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_assessment/src/java/org/lamsfoundation/lams/tool/assessment/web/controller/AuthoringController.java

# lams_tool_assessment/src/java/org/lamsfoundation/lams/tool/assessment/web/controller/MonitoringController.java

# lams_tool_assessment/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_chat/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_daco/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_doku/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_forum/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_gmap/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_images/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_imscc/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_lamc/src/java/org/lamsfoundation/lams/tool/mc/web/controller/McController.java

# lams_tool_lamc/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_laqa/src/java/org/lamsfoundation/lams/tool/qa/web/controller/QaAuthoringController.java

# lams_tool_laqa/src/java/org/lamsfoundation/lams/tool/qa/web/controller/QaMonitoringController.java

# lams_tool_laqa/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_laqa/web/authoring/AuthoringTabsHolder.jsp

# lams_tool_laqa/web/authoring/newQuestionBox.jsp

# lams_tool_laqa/web/monitoring/MonitoringMaincontent.jsp

# lams_tool_larsrc/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_leader/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_mindmap/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_nb/src/java/org/lamsfoundation/lams/tool/noticeboard/web/controller/NbMonitoringController.java

# lams_tool_nb/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_notebook/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_pixlr/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_preview/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_sbmt/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_scratchie/src/java/org/lamsfoundation/lams/tool/scratchie/web/controller/AuthoringController.java

# lams_tool_scratchie/src/java/org/lamsfoundation/lams/tool/scratchie/web/controller/MonitoringController.java

# lams_tool_scratchie/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_scratchie/web/pages/authoring/basic.jsp

# lams_tool_scribe/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_spreadsheet/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_survey/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_task/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_vote/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_wiki/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_tool_zoom/web/WEB-INF/tags/OutcomeAuthor.tag

# lams_www/web/WEB-INF/tags/OutcomeAuthor.tag

    • -0
    • +237
    ./conf/security/Owasp.CsrfGuard.properties
    • -20
    • +31
    ./web/includes/javascript/orgGroup.js
  1. … 80 more files in changeset.
LDEV-4932 Adjust CSRF Guard logging

Logger uses LAMS format and logs only warnings (attacks) rather than all

its checks.

    • -1
    • +2
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 3 more files in changeset.
SP-4 Add teacher to subcourses

LDEV-4932 Add CSRF Excel export in tools

    • -1
    • +4
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 8 more files in changeset.
LDEV-4932 Add CSRF to LD export and Excel export

    • -0
    • +4
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 7 more files in changeset.
LDEV-4644 Reintroduce an incorrectly deleted CSS file

    • -0
    • +45
    ./web/css/outcome.scss
LDEV-4932 Start using /common/taglibs.jsp in lams_central

    • -10
    • +4
    ./web/authoring/template/createresult.jsp
    • -4
    • +1
    ./web/authoring/template/genericintro.jsp
    • -3
    • +1
    ./web/authoring/template/tbl/appex.jsp
    • -3
    • +1
    ./web/authoring/template/tool/mcoption.jsp
  1. … 54 more files in changeset.
SP-4 Provision staff members

LDEV-4932 Add CSRF to monitor and central

    • -0
    • +14
    ./conf/security/Owasp.CsrfGuard.properties
    • -20
    • +31
    ./web/includes/javascript/orgGroup.js
    • -5
    • +22
    ./web/includes/javascript/orgGrouping.js
  1. … 40 more files in changeset.
LDEV-4932 Adding CSRF to add lesson

    • -0
    • +1
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 1 more file in changeset.
LDEV-4932 Adding CSRF to Author

- Save, Delete, Copy, Move and rename LDs

- Create folder

    • -0
    • +8
    ./conf/security/Owasp.CsrfGuard.properties
LDEV Adding CSRF to Scratchie authoring

    • -0
    • +2
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 3 more files in changeset.
LDEV-4932 Adding CSRF Notebook conditions

- Add/remove conditions

    • -0
    • +2
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 3 more files in changeset.
LDEV-4932 Adding CSRF for QA authoring

- Add/edit questions

- remove questions

- Add and remove conditions

    • -0
    • +5
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 5 more files in changeset.
LDEV-4932 Adding CSRF to voting authoring

    • -0
    • +1
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 3 more files in changeset.
Merge branch 'LDEV-4745' into v4.0

# Conflicts:

# lams_admin/conf/language/lams/ApplicationResources.properties

# lams_central/conf/language/lams/ApplicationResources.properties

# lams_central/conf/language/lams/ApplicationResources_en_AU.properties

# lams_central/web/includes/javascript/authoring/authoringGeneral.js

# lams_common/src/java/org/lamsfoundation/lams/util/ConfigurationKeys.java

# lams_tool_assessment/src/java/org/lamsfoundation/lams/tool/assessment/assessmentApplicationContext.xml

# lams_tool_lamc/src/java/org/lamsfoundation/lams/tool/mc/mcApplicationContext.xml

# lams_tool_lamc/src/java/org/lamsfoundation/lams/tool/mc/service/McService.java

# lams_tool_scratchie/src/java/org/lamsfoundation/lams/tool/scratchie/scratchieApplicationContext.xml

    • -13
    • +28
    ./web/includes/javascript/addLesson.js
  1. … 9 more files in changeset.
LDEV-4932 Add CSRF to Vote and share resources authoring

    • -0
    • +5
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 7 more files in changeset.
LDEV-4745 Adding missing labels to QB

LDEV-4932 Add CSRF to OutcomeAuthor tag

  1. … 30 more files in changeset.
LDEV-4932: Adding CSRF to forum and central

CSRF additions to:

- Forum authoring methods

- Adding outcomes to activities in tools (changes to tag and central methods)

    • -0
    • +6
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 8 more files in changeset.
LDEV-4932 Adding CSRF to central

Adding CSRF to:

- Lesson dependencies (add/remove)

- Set dates to finish lesson

    • -0
    • +3
    ./conf/security/Owasp.CsrfGuard.properties
LDEV-4932 Adding CSRF to central and monitoring

Adding CSRF to:

- Grades on completion

- Enable/disable presence and IM

- Send emails

- Update users into lessons

- Send email notifications

- Delete email notifications

    • -0
    • +8
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 8 more files in changeset.
LDEV-4932 Passing CSRF token as a post rather than get

  1. … 40 more files in changeset.
LDEV-4932 Adding CSRF to Admin

Adding it to:

- User roles

- Create course

- Clone lessons

- assign roles in courses

- global roles

- change password for course

- change user pass

- delete all lessons

    • -0
    • +14
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 23 more files in changeset.
LDEV-4932 Add CSRF to monitor and central

* Add CSRF protection to:

- Change lesson status (incl. remove)

- Remove lesson using main.jsp button

- Rename lesson

* Start using /common/taglibs.jsp in lams_central

    • -0
    • +7
    ./conf/security/Owasp.CsrfGuard.properties
    • -0
    • +8
    ./web/common/taglibs.jsp
  1. … 9 more files in changeset.
LDEV-4932 Add CSRF to central (outcomes)

Adding CSRF protection to:

- Delete outcomes

    • -0
    • +1
    ./conf/security/Owasp.CsrfGuard.properties
LDEV-4932 Add CSRF for admin

- Adding CSRF to delete preview lessons

    • -0
    • +1
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 1 more file in changeset.
LDEV-4932 Adding CSRF protection to admin

- Adding user add/edit/remove/disable

    • -0
    • +5
    ./conf/security/Owasp.CsrfGuard.properties
  1. … 5 more files in changeset.