Aleksander Machniak
2016-05-09 bf19fe2d1aaa3ca390b9175d3e1d17070e166843
2016-05-09 Aleksander Machniak
Move commented mod_headers settings to the end of the file
blob@ bf19fe commitdiff | diff to current
2016-02-13 Rotzbua
add optional security header to .htaccess
blob@ 7b4f71 commitdiff | diff to current
2015-12-22 Aleksander Machniak
Fix .htaccess rewrite rules to not block .well-known URIs (#1490615)
blob@ 1c2aad commitdiff | diff to current
2015-09-08 Aleksander Machniak
Improve randomness of security tokens (#1490529)
blob@ 260869 commitdiff | diff to current
2015-09-01 Aleksander Machniak
Add example of setting CSP's no-referer policy
blob@ 348c53 commitdiff | diff to current
2015-07-18 Aleksander Machniak
Support more secure hashing algorithms for auth cookie - configurable by PH...
blob@ e2bcea commitdiff | diff to current
2015-02-06 Aleksander Machniak
Enable FollowSymLinks option in .htaccess file which is required by rewrite...
blob@ 0b9b9f commitdiff | diff to current
2014-12-30 Raoul Bhatia
Explicitly deny access to newly created "Dockerfile"
blob@ fd0583 commitdiff | diff to current
2014-12-16 Aleksander Machniak
Improve system security by using optional special URL with security token A...
blob@ 681ba6 commitdiff | diff to current
2014-10-13 Aleksander Machniak
Remove zend.ze1_compatibility_mode checks, it does not exist in PHP >= 5.3
blob@ 6b7e06 commitdiff | diff to current
2014-05-04 Aleksander Machniak
Support upload progress with session.upload_progress and PECL uploadprogres...
blob@ 93e12f commitdiff | diff to current
2014-04-23 Aleksander Machniak
Convert tabs to spaces
blob@ 4c7a98 commitdiff | diff to current
2014-04-23 Aleksander Machniak
Set register_globals=off in .htaccess file and add note to INSTALL
blob@ 0314bf commitdiff | diff to current
2013-12-13 Aleksander Machniak
Fix security rules in .htaccess preventing access to base URL without the e...
blob@ 2dade1 commitdiff | diff to current
2013-11-05 Aleksander Machniak
Keep all security rules in one place, support Apache 2.4 syntax
blob@ 88934b commitdiff | diff to current
2013-10-27 Raoul Bhatia
Deny access to all files not containing a . (dot) to block access to differ...
blob@ cb3ea1 commitdiff | diff to current
2013-07-28 Aleksander Machniak
- Fix rewrite rule in .htaccess (#1489240)
blob@ 1c51d1 commitdiff | diff to current
2013-07-19 Dennis1993
Update .htaccess
blob@ 0009bd commitdiff | diff to current
2013-02-10 Thomas Bruederli
Fix rewrite rule to actually prevent access to bin/ and SQL/ directories
blob@ 3568c7 commitdiff | diff to current
2013-01-23 Raoul Bhatia
prevent access to UPGRADING via .htaccess
blob@ 5422e6 commitdiff | diff to current
2012-08-09 Thomas Bruederli
Replace some forgotten references to skins/default (#1488591)
blob@ aff970 commitdiff | diff to current
2012-05-23 Raoul Bhatia
improve .htaccess security rules:
blob@ b332e7 commitdiff | diff to current
2012-05-09 Antoine Catton
Replace directory .svn/ by .git/ in security rules
blob@ a93f39 commitdiff | diff to current
2012-02-17 alecpl
- Escape dot in regexp (#1488357)
blob@ 57d15d commitdiff | diff to current
2011-12-25 alecpl
- Add ifModule statement for setting Options -Indexes in .htaccess file (#1...
blob@ 5e8c77 commitdiff | diff to current
2011-07-02 alecpl
Improve .htaccess rules to make it less easy to fingerprint roundcube versi...
blob@ 4b1d5d commitdiff | diff to current
2010-02-18 thomascube
Add (inactive) session.cookie_path line to .htaccess as suggested in #1486456
blob@ 29640b commitdiff | diff to current
2009-09-22 alecpl
- remove set_magic_quotes_runtime() call, use set_time_limit() with @ (#148...
blob@ 6d479a commitdiff | diff to current
2009-09-09 till
blob@ 832890 commitdiff | diff to current
2009-08-27 thomascube
Don't set php_value error_log in .htaccess by default
blob@ 4b20e2 commitdiff | diff to current
2009-07-01 thomascube
Remove access control from .htaccess
blob@ 49c71c commitdiff | diff to current
2009-06-19 thomascube
Use filemtime for cache busting + better etag for static files
blob@ 2f1429 commitdiff | diff to current
2009-06-02 alecpl
- disable zlib.output_compression in default config
blob@ 80a36b commitdiff | diff to current
2009-06-01 alecpl
- get rid of some hardcoded action names and move decission about output co...
blob@ d51c93 commitdiff | diff to current
2009-05-28 thomascube
Speedup UI by using CSS sprites and etags/expires/deflate for static files
blob@ d7f49d commitdiff | diff to current
2009-05-14 alecpl
- suhosin.session.encrypt breaks Session handling (#1485846)
blob@ 2d1a45 commitdiff | diff to current
2009-01-20 till
* removed, .sh scripts are fixed, not necessary for .inc
blob@ 429f74 commitdiff | diff to current
2009-01-09 thomascube
Deny access to .sh files
blob@ 64c52c commitdiff | diff to current
2008-11-21 alecpl
#1485571: mbstring.func_overload forbidden
blob@ e86ff9 commitdiff | diff to current
2008-10-11 alecpl
#1485375, #1485491
blob@ 34942e commitdiff | diff to current
2008-10-06 alecpl
#1485375: added favicon.ico redirect
blob@ e3f427 commitdiff | diff to current
2008-10-06 alecpl
#1485460: session.gc_* moved to main .htaccess file
blob@ aaa6ac commitdiff | diff to current
2008-08-08 alecpl
#1485155: added zend.ze1_compatibility_mode check in installer and option d...
blob@ d4f264 commitdiff | diff to current
2008-06-11 alecpl
-removed content for mod_php4
blob@ 36bee3 commitdiff | diff to current
2008-03-03 thomascube
Adapt changes to .htaccess and README
blob@ 04e87e commitdiff | diff to current
2008-02-16 svncommit
make magic_quotes_gpc = 0
blob@ 242675 commitdiff | diff to current
2008-02-16 till
* check.php: add another check for zlib.output_compression 0 * .htaccess: f...
blob@ 342db9 commitdiff | diff to current
2008-02-01 till
* corrected a mistake I made on my last commit when i forced auto_start to...
blob@ f094b0 commitdiff | diff to current
2008-02-01 till
* fixed #1484437 * also added it to check.php
blob@ 581213 commitdiff | diff to current
2007-12-10 thomascube
New class rcube_user + send message disposition notification
blob@ fba1f5 commitdiff | diff to current
first | « prev | next »