David Taylor
6b6b31a97f
FEATURE: Allow admins to opt-in to seamless redirects on /auth/* ( #31235 )
...
By default, when multiple login providers are enabled, Discourse
requires user interaction before triggering an external auth flow. This
is defense-in-depth against "Login CSRF" attacks.
This commit introduces a setting to control this behavior, so that it
can be disabled when admins fully trust the downstream systems, and need
an interaction-free login flow on a site with multiple login providers.
Default behavior remains unchanged.
2025-02-07 11:43:39 +00:00
..
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-01-21 15:55:30 +01:00
2025-02-07 03:28:34 +03:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-01-31 10:48:44 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2025-02-04 15:18:03 +01:00
2024-07-11 07:54:45 -07:00
2024-07-29 15:44:52 +02:00
2025-02-04 15:18:03 +01:00
2025-01-31 10:48:44 +01:00
2025-01-03 14:01:32 +01:00
2025-01-03 14:01:32 +01:00
2025-01-31 10:48:44 +01:00
2025-02-03 16:37:54 +01:00
2025-01-31 10:48:44 +01:00
2025-02-03 16:37:54 +01:00
2025-01-31 10:48:44 +01:00
2024-12-18 15:19:37 +01:00
2025-02-07 11:43:39 +00:00
2025-02-04 15:18:03 +01:00
2025-01-03 14:01:32 +01:00
2025-01-03 14:01:32 +01:00
2025-01-31 10:48:44 +01:00
2025-02-04 15:18:03 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-01-03 14:01:32 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-01-03 14:01:32 +01:00
2025-01-31 10:48:44 +01:00
2025-02-03 16:37:54 +01:00
2025-01-31 10:48:44 +01:00
2025-02-04 15:18:03 +01:00
2025-01-03 14:01:32 +01:00
2025-01-31 10:48:44 +01:00
2025-02-04 15:18:03 +01:00
2025-02-03 16:37:54 +01:00
2025-01-03 14:01:32 +01:00
2025-02-03 16:37:54 +01:00
2025-01-03 14:01:32 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-01-03 14:01:32 +01:00
2025-02-04 15:18:03 +01:00
2025-01-31 10:48:44 +01:00
2025-02-03 16:37:54 +01:00
2025-01-31 10:48:44 +01:00
2025-01-31 10:48:44 +01:00
2025-02-03 16:37:54 +01:00
2025-01-31 10:48:44 +01:00
2018-07-31 14:41:49 +10:00
2018-05-29 21:07:17 +02:00
2015-02-27 23:53:58 +01:00
2019-04-25 22:49:21 +02:00
2015-02-27 23:53:58 +01:00
2015-02-27 23:53:58 +01:00
2024-05-27 09:58:18 +02:00
2017-02-24 11:35:33 +01:00