Lighthouse has a new layout. Prefer the old one? Return to the old layout, and switch back any time from the link at the top of each page.

Gregg Kellogg's latest activity

Thursday, February 19 2009
2000 Patch for HTTP Digest Authentication URI comparison was updated in Ruby on Rails
  • Gregg Kellogg
    Gregg Kellogg commented at 8:56 PM

    Without a session_id, something else must be used on which to base the creation of the nonce. The OAuth plugin creates a DB table to track nonces, which is too ...

Wednesday, February 18 2009
2000 Patch for HTTP Digest Authentication URI comparison was updated in Ruby on Rails
  • Gregg Kellogg
    Gregg Kellogg commented at 3:48 PM

    Definitely like the ability to use ha1 for verification vs. a clear-text password. However, I think we need to make a variant of the ha1 method public, so that ...

Thursday, January 29 2009
1230 Implement HTTP Digest authentication was updated in Ruby on Rails
  • Gregg Kellogg
    Gregg Kellogg commented at 2:16 AM

    Yes, this is a vestage from the basic use case. authenticate_or_request_with_http_digest and authenticate_with_http_digest only pass the username parameter. You...

Tuesday, January 27 2009
1230 Implement HTTP Digest authentication was updated in Ruby on Rails
  • Gregg Kellogg
    Gregg Kellogg commented at 2:44 AM

    Here’s an updated patch. I ended up making some slight modifications to the digest code. Tests are now pretty much along the lines of Basic authentication.

Thursday, January 15 2009
1230 Implement HTTP Digest authentication was updated in Ruby on Rails
  • Gregg Kellogg
    Gregg Kellogg commented at 8:17 PM

    Fixed bug in http_digest_authentication_response_detail.

Wednesday, January 14 2009
1230 Implement HTTP Digest authentication was updated in Ruby on Rails
  • Gregg Kellogg
    Gregg Kellogg commented at 5:44 AM

    This patch refactors HTTP Digest to remove exception usage. It adds http_digest_authentication_response_detail to be able to determine the cause of an authentic...

Tuesday, January 13 2009
1230 Implement HTTP Digest authentication was updated in Ruby on Rails
  • Gregg Kellogg
    Gregg Kellogg commented at 7:37 PM

    Exceptions are used within the body of Digest Authentication, and presented to the application level, as the nature of the encoded digest is dense, and it's use...

  • Gregg Kellogg
    Gregg Kellogg commented at 7:09 PM

    Here is a new patch that addresses the issues raised:

    • Replace controller.send! with controller.send, mirroring the same case in Basic authentication
    • Refactor e...
Saturday, December 20 2008
1230 Implement HTTP Digest authentication was updated in Ruby on Rails
  • Gregg Kellogg
    Gregg Kellogg commented at 11:32 PM

    New patch uploaded.

  • Gregg Kellogg
    Gregg Kellogg commented at 9:14 PM

    I'll work on an update to the patch now. I have a couple of other fixes I wanted to get in anyway.