annotate website/issues/html/query.item.html @ 7809:be6cb2e0d471

feat: add support for rotating jwt keys This allows jwt_secret to have multiple ',' separated secrets. The first/leftmost should be used to sign new JWTs. All of them are used (starting from left/newest) to try to verify a JWT. If the first secret is < 32 chars in length JWTs are disabled. If any of the other secrets are < 32 chars, the configuration code causes the software to exit. This prevents insecure (too short) secrets from being used. Updated doc examples and tests.
author John Rouillard <rouilj@ieee.org>
date Thu, 14 Mar 2024 19:04:19 -0400
parents 578b5294e888
children
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
rev   line source
4024
c2d0d3e9099d svn repository setup
Stefan Seefeld <stefan@users.sourceforge.net>
parents:
diff changeset
1 <!-- query.item -->
5286
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
2 <span tal:condition="context/is_view_ok" tal:replace="structure
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
3 context/renderQueryForm" />
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
4 <tal:block tal:condition="not:context/is_view_ok">
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
5 <tal:block metal:use-macro="templates/page/macros/icing">
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
6 <title metal:fill-slot="head_title">You can not view query</title>
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
7 <tal:block metal:fill-slot="body_title">
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
8 You can not view query.
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
9 </tal:block>
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
10 <td class="content" metal:fill-slot="content">
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
11 You are not allowed to view <span tal:content="context/_classname"/>
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
12 with id <span tal:content="context/id"/>
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
13 </td>
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
14 </tal:block>
578b5294e888 Update to current classic config. Fixes issue with users being able to
John Rouillard <rouilj@ieee.org>
parents: 4024
diff changeset
15 </tal:block>

Roundup Issue Tracker: http://roundup-tracker.org/