aboutsummaryrefslogtreecommitdiffstats
path: root/actionpack/lib/action_dispatch/middleware/cookies.rb
Commit message (Collapse)AuthorAgeFilesLines
* CookieJar should prefer composition over inheritanceAaron Patterson2011-04-061-6/+10
|
* raise if someone tries to modify the cookies when it was already streamed ↵Santiago Pastorino2011-04-061-0/+12
| | | | back to the client or converted to HTTP headers
* Add tld_length option when using domain :all in cookiesbrainopia2011-01-211-9/+9
| | | | Signed-off-by: José Valim <jose.valim@gmail.com>
* Support list of possible domains for cookiesbrainopia2011-01-211-0/+3
| | | | Signed-off-by: José Valim <jose.valim@gmail.com>
* Fix edge cases for domain :all option on cookie storebrainopia2010-12-161-2/+5
| | | | | | | | Dont set explicit domain for cookies if host is not a domain name [#6002 state:committed] Signed-off-by: Santiago Pastorino <santiago@wyeworks.com>
* Resolving LH #5986, cookies doc updatesAditya Sanghi2010-11-261-3/+10
|
* Ensure that Rails.env is defined firstAndrew White2010-10-271-1/+1
|
* Don't write out secure cookies unless the request is secureAndrew White2010-10-251-3/+11
|
* expand cookie examples with signed and permanent methodsJoost Baaij2010-08-271-2/+11
|
* Allow for any possible TLD when using the :all option with the cookie ↵Bryce Thornton2010-08-151-8/+18
| | | | | | session store. This works for subdomain.mysite.local, google.co.uk, google.com.au, etc. [#5147 state:resolved] Signed-off-by: José Valim <jose.valim@gmail.com>
* Small fix in cookie docs and trailing whitespacesCarlos Antonio da Silva2010-07-151-7/+7
|
* Refactored duplication into a separate method. Dropped class variable.Rizwan Reza2010-06-111-15/+17
|
* Adding missing docs to delete cookies with :all which were added that way.Rizwan Reza2010-06-111-1/+2
|
* Took out the domain option logic to cookies.rb.Rizwan Reza2010-06-111-2/+32
|
* Avoid creating a Rack::Response object in the cookie middleware since it may ↵José Valim2010-05-181-9/+13
| | | | stream the body.
* Simplify cookie_store by simply relying on cookies.signed.José Valim2010-05-181-1/+31
|
* Rename config.cookie_secret to config.secret_token and pass it as ↵José Valim2010-04-051-18/+18
| | | | configuration in request.env. This is another step forward removing global configuration.
* Fix signed cookies by explicitly passing config to the cookie jarJeremy Kemper2010-04-041-23/+19
|
* Deprecate cookie_verifier_secret in favor of config.cookie_secret allowing ↵José Valim2010-03-311-3/+3
| | | | signed cookies to work again.
* Deleting and setting a cookie in the same request was brokenMathias Biilmann Christensen2010-03-171-0/+1
| | | | | | | | Made sure to remove a cookie from @deleted_cookies when set [#4211 state:committed] Signed-off-by: Jeremy Kemper <jeremy@bitsweat.net>
* Accessing nonexistant cookies through the signed jar should not raise anJoshua Peek2010-01-171-1/+3
| | | | exception
* Cookies middlewareJoshua Peek2010-01-161-0/+214