aboutsummaryrefslogtreecommitdiffstats
path: root/actionpack/lib/action_controller/session
Commit message (Expand)AuthorAgeFilesLines
* Session LazyHash#inspect triggers the hash to loadJoshua Peek2009-02-071-0/+5
* Update bundled Rack for Ruby 1.9 spec changesJoshua Peek2009-02-072-12/+6
* Temporarily bundle Rack 1.0 prerelease for testingJoshua Peek2009-02-071-1/+1
* Ensure session id is set in session options hash [#1880 state:resolved]Joshua Peek2009-02-062-17/+9
* Restore stale session check and move after dispatch development cleanups befo...Joshua Peek2009-02-051-3/+22
* Session cookie header should always be set if :expire_after option is specifiedPratik Naik2009-01-282-4/+8
* Restore cookie store httponly default to true. Remove extraneous dup of optio...Cody Fauser2009-01-201-3/+1
* Use :key instead of old :session_key in session_store.rb generator and docs [...Cody Fauser2009-01-131-3/+3
* Fix reset_session with lazy cookie stores [#1601 state:resolved]Matt Bauer2008-12-202-12/+18
* No need to dup immutable optionsJeremy Kemper2008-12-181-1/+1
* Be sure to call superJeremy Kemper2008-12-181-0/+1
* Conditionally inject session middleware instead of using session managementJoshua Peek2008-12-182-4/+30
* Persistent session identifier support for CookieSessionStore and API compat. ...Lourens Naude2008-12-182-13/+39
* Clear empty nil values in session hash before savingJoshua Peek2008-12-152-23/+6
* Switch to Rack based session stores.Joshua Peek2008-12-156-650/+371
* Merge with docrailsPratik Naik2008-12-071-0/+10
* Move the cookie store to use the MessageVerifier class.Michael Koziarski2008-11-231-18/+14
* Added support for http_only cookies in cookie_store Added unit tests for secu...Pelle Braendgaard2008-09-171-1/+2
* Strip newlines from cookie session dataJeremy Kemper2008-08-051-1/+1
* Use "/usr/bin/env ruby" instead of "/usr/local/bin/ruby"Tarmo Tänav2008-07-311-7/+7
* Fix file permissionsTarmo Tänav2008-07-311-0/+0
* Merge docrails.Pratik Naik2008-05-251-1/+1
* Don't double-escape cookie store data. Don't split cookie values with newline...Rich Cavanaugh2008-05-121-3/+6
* Merge docrails:Pratik Naik2008-05-091-8/+13
* Improve documentation coverage and markupXavier Noria2008-05-021-13/+13
* Ruby 1.9 compat: cookie store delete sets nil value instead of empty stringJeremy Kemper2008-01-071-1/+1
* Ruby 1.9 compat: move from the deprecated Base64 module to ActiveSupport::Bas...Jeremy Kemper2007-12-182-11/+9
* Fix doc (closes #10526)David Heinemeier Hansson2007-12-161-1/+1
* Introduce (in /Users/jeremy/rails/git/trunk) to output a crytographically sec...Jeremy Kemper2007-12-151-0/+3
* Improve error messages when providing a secret that is too short. Closes #10...Michael Koziarski2007-11-241-4/+5
* Make sure that cookie sessions use a secret that is at least 30 chars in leng...Michael Koziarski2007-11-211-3/+17
* Emphasize the importance of a dictionary attack-proof secret for the cookie s...David Heinemeier Hansson2007-11-211-1/+4
* Memcached sessions: add session data on initialization; don't silently discar...Jeremy Kemper2007-10-141-15/+8
* Use #require_library_or_gem to load the memcache library for the MemCache ses...Rick Olson2007-10-031-1/+1
* Random hits from the style naziDavid Heinemeier Hansson2007-09-091-1/+1
* Fix failing active record store testsMichael Koziarski2007-08-141-1/+2
* Cookie session store: ensure that new sessions doesn't reuse data from a dele...Jeremy Kemper2007-03-141-0/+6
* Cookie session store: raise ArgumentError when :session_key is blank.Jeremy Kemper2007-03-131-1/+6
* Add a #dbman attr_reader for CGI::Session and make CGI::Session::CookieStore#...Rick Olson2007-03-061-6/+6
* Cookie store: use OpenSSL::HMAC instead of basic hash. Introduce :secret bloc...Jeremy Kemper2007-03-031-13/+28
* Cookie store: test that >4K raises CookieOverflow and that unverifiable cooki...Jeremy Kemper2007-03-031-1/+4
* Cookie session store: empty and unchanged sessions don't write a cookie.Jeremy Kemper2007-02-251-1/+2
* CGI escape the session cookie.Jeremy Kemper2007-02-221-2/+2
* Introduce a cookie-based session store as the Rails default. Sessions typical...Jeremy Kemper2007-02-211-0/+113
* ARStore needs a data reader method. Closes #4795.Jeremy Kemper2006-11-151-0/+2
* Always clear model associations from session. Closes #4795.Jeremy Kemper2006-11-132-0/+8
* Fix problem with unloaded ARStore sessions being loaded when they are garbage...Jamis Buck2006-03-081-9/+14
* Major components cleanup and speedup. Closes #3527.Jeremy Kemper2006-02-091-1/+3
* Further improvements to reloading codeNicholas Seckar2006-02-021-5/+0
* If included_modules doesnt take a parameter, we shouldnt eitherDavid Heinemeier Hansson2006-02-011-1/+1