shortcutme
bf771eda5f
Restrict setting open_browser values in config file
2019-08-28 01:33:32 +02:00
shortcutme
a9b5561c49
Rev3870
2019-08-28 01:32:28 +02:00
shortcutme
a121c23973
Use re.sub to replace template variables
2019-08-28 01:32:16 +02:00
shortcutme
27a67d9753
Allow websocket connection originates from earlier accepted hostnames
2019-08-28 01:32:02 +02:00
shortcutme
67b78ca12d
Rev3868, Add origin validation to websocket connections
2019-08-18 03:20:44 +02:00
kusky
861e085597
Update it.json
2019-07-07 15:11:53 +02:00
ZeroNet
9e7ae55068
Merge pull request #1453 from anoadragon453/anoa/fix_filepaths
...
Only raise security error on ../
2019-06-30 16:46:55 +02:00
shortcutme
7418400b52
Rev3866, Fix and test serving files with null bytes
2019-06-06 02:31:08 +02:00
shortcutme
c165d21d95
Rev3865, Fix ZipStream seek support
2019-05-31 15:04:03 +02:00
shortcutme
9b274415e0
Rev3864, Fix newsfeed sql query with many parameters
2019-04-29 16:36:33 +02:00
shortcutme
3366edc244
Rev3863
2019-04-19 02:38:41 +02:00
shortcutme
129aff2c0c
Retry peers only once
2019-04-19 02:38:02 +02:00
shortcutme
719df4ac88
Rev3862
2019-04-11 02:28:38 +02:00
shortcutme
7a217a3741
Only display error details in debug mode
2019-04-11 02:28:26 +02:00
shortcutme
85fd08774f
Send noscript header for error message pages
2019-04-11 02:28:01 +02:00
shortcutme
c0d81021df
Rev3861, Escape error detail to avoid XSS (reported by krzotr)
2019-04-11 00:48:16 +02:00
ZeroNet
c51dfe728f
Merge pull request #1938 from tangdou1/patch-2
...
a bug?
2019-03-27 03:07:33 +01:00
shortcutme
eb88dbbec8
Rev3860
2019-03-27 03:01:56 +01:00
shortcutme
350adeb52d
Fix resource loading with origin only referer
2019-03-27 03:01:39 +01:00
shortcutme
5ab20317d0
Fix ssl compatibility with older clients, prefer chacha20-poly1305 if possible
2019-03-27 03:00:44 +01:00
shortcutme
cdd0f9cda3
Remove srl file
2019-03-27 02:59:57 +01:00
shortcutme
d504cdf501
Formatting CryptConnection.py
2019-03-27 02:59:41 +01:00
tangdou1
e333b47c27
maybe a bug
2019-03-27 09:44:36 +08:00
ZeroNet
91b2f6a8a7
Merge pull request #1928 from ValdikSS/crypt-obf
...
Less obvious fake TLS certificate generation
2019-03-27 02:43:23 +01:00
ValdikSS
f66cfc9a5e
Less obvious fake TLS certificate generation
...
This patch adds the following:
* Pre-defined CA certificate subjects
* Pre-defined popular website domain names
* Fake certificate generation for pre-defined popular website domain signed by fake CA with pre-defined subject
It should look less suspicious than "example.com" certificates
2019-03-27 00:29:01 +03:00
ZeroNet
911733955b
Merge pull request #1927 from ValdikSS/update-ciphers
...
Update ciphersuites
2019-03-25 17:15:43 +01:00
shortcutme
abb566e35f
Merge branch 'master' of https://github.com/HelloZeroNet/ZeroNet
2019-03-23 03:35:21 +01:00
shortcutme
06be430b74
Rev3857
2019-03-23 03:35:13 +01:00
shortcutme
ef892e91da
Add random padding to handshake
2019-03-23 03:34:27 +01:00
shortcutme
74ce0c50ff
Proper shutdown at sigterm
2019-03-23 03:33:27 +01:00
shortcutme
b8b8ce21fa
Pass kwargs to excepthook
2019-03-23 03:33:12 +01:00
shortcutme
5716b7505f
Add reason for shutdown
2019-03-23 03:32:09 +01:00
ValdikSS
d51e9c68f4
Update ciphersuites
2019-03-19 18:24:11 +03:00
ZeroNet
116347ef66
Merge pull request #1921 from rllola/tracker-announcer
...
If no port defined in tracker url assume it is port 80
2019-03-10 23:42:07 +01:00
rllola
58516913b4
if protocol https choose port 443
2019-03-10 22:19:37 +01:00
rllola
fb836fcf6f
If no port defined in tracker url assume it is port 80; fix #1917
2019-03-09 18:41:50 +01:00
ZeroNet
1ad44ace0a
Merge pull request #1916 from rllola/ld-library-path-openssl
...
Ld library path openssl
2019-03-06 16:05:54 +01:00
rllola
32ddaed376
Actually at ALL the path in the environnement variable and look for the openssl lib
2019-03-05 18:58:47 +01:00
rllola
4e388e5dc2
Find openssl lib in LD_LIBRARY_PATH
2019-03-05 18:33:29 +01:00
shortcutme
f90d0d2dae
Rev3853
2019-02-24 02:29:35 +01:00
shortcutme
b47920169f
Test unsupported pex peers removing
2019-02-24 02:29:27 +01:00
shortcutme
81bf349871
Remove ipv6 and onion from pex result if not supported
2019-02-24 02:29:08 +01:00
shortcutme
9d849a16ec
Use defaultdict to for findHashId result
2019-02-24 02:28:42 +01:00
shortcutme
174e8d3c19
Rev3852
2019-02-16 23:49:20 +01:00
shortcutme
511a5c0d1f
Nonce based CSP not supported in Safari yet
2019-02-16 23:49:10 +01:00
shortcutme
952a1a1da8
Rev3851, Fix typo with onion address detection
2019-02-16 20:50:49 +01:00
shortcutme
819c2b0bc3
Rev3850
2019-02-14 15:52:30 +01:00
shortcutme
30984c62fa
Change trackers to more reliable ones
2019-02-14 15:52:22 +01:00
shortcutme
bd649cfb33
Remove ui_server allowed http host learning
2019-02-14 15:49:10 +01:00
shortcutme
5c57cd6541
Support https trackers, add browser-like user agent for tracker http requests
2019-02-14 15:48:36 +01:00