1
1
mirror of https://github.com/go-gitea/gitea synced 2024-11-10 20:24:24 +00:00
gitea/routers/web
Shivaram Lingamneni e1cf760d2f
OIDC: case-insensitive comparison for auth scheme Basic (#31706)
@kylef pointed out on https://github.com/go-gitea/gitea/pull/31632 that
[RFC7617](https://www.rfc-editor.org/rfc/rfc7617.html#section-2)
mandates case-insensitive comparison of the scheme field `Basic`. #31632
copied a case-sensitive comparison from
https://github.com/go-gitea/gitea/pull/6293. This PR fixes both
comparisons.

The issue only affects OIDC, since the implementation for normal Gitea
endpoints is already correct:


930ca92d7c/services/auth/basic.go (L55-L58)
2024-07-26 19:51:45 +00:00
..
admin Support delete user email in admin panel (#31690) 2024-07-25 18:11:04 +08:00
auth OIDC: case-insensitive comparison for auth scheme Basic (#31706) 2024-07-26 19:51:45 +00:00
devtest Refactor names (#31405) 2024-06-19 06:32:45 +08:00
events Move context from modules to services (#29440) 2024-02-27 08:12:22 +01:00
explore Refactor names (#31405) 2024-06-19 06:32:45 +08:00
feed Use GetDisplayName() instead of DisplayName() to generate rss feeds (#31687) 2024-07-25 17:33:02 +08:00
healthcheck Always enable caches (#28527) 2023-12-19 09:29:05 +00:00
misc Make sure git version&feature are always prepared (#30877) 2024-05-06 18:34:16 +02:00
org Refactor names (#31405) 2024-06-19 06:32:45 +08:00
repo Refactor webhook (#31587) 2024-07-10 11:37:16 +00:00
shared Refactor names (#31405) 2024-06-19 06:32:45 +08:00
user add skip secondary authorization option for public oauth2 clients (#31454) 2024-07-19 14:28:30 -04:00
base.go Azure blob storage support (#30995) 2024-05-30 07:33:50 +00:00
githttp.go Refactor names (#31405) 2024-06-19 06:32:45 +08:00
goget.go Move context from modules to services (#29440) 2024-02-27 08:12:22 +01:00
home.go migrate some more "OptionalBool" to "Option[bool]" (#29479) 2024-02-29 18:52:49 +00:00
metrics.go Implement FSFE REUSE for golang files (#21840) 2022-11-27 18:20:29 +00:00
nodeinfo.go Move context from modules to services (#29440) 2024-02-27 08:12:22 +01:00
passkey.go Move context from modules to services (#29440) 2024-02-27 08:12:22 +01:00
swagger_json.go Move context from modules to services (#29440) 2024-02-27 08:12:22 +01:00
web.go Support delete user email in admin panel (#31690) 2024-07-25 18:11:04 +08:00
webfinger.go Move context from modules to services (#29440) 2024-02-27 08:12:22 +01:00