Du kan inte välja fler än 25 ämnen Ämnen måste starta med en bokstav eller siffra, kan innehålla bindestreck ('-') och vara max 35 tecken långa.
 
 
 
 
 
 
Florian Eisenmenger 41ccc32b5d checkin 2 år sedan
..
Api/Data checkin 2 år sedan
Block checkin 2 år sedan
Controller/Adminhtml/Session checkin 2 år sedan
Model checkin 2 år sedan
Observer checkin 2 år sedan
Setup/Patch/Data checkin 2 år sedan
Test checkin 2 år sedan
etc checkin 2 år sedan
i18n checkin 2 år sedan
view checkin 2 år sedan
LICENSE.txt checkin 2 år sedan
LICENSE_AFL.txt checkin 2 år sedan
README.md checkin 2 år sedan
composer.json checkin 2 år sedan
registration.php checkin 2 år sedan

README.md

Security

Security management module Main features:

  1. Added support for simultaneous admin user logins with ability to enable/disable the feature, review and disconnect the list of current logged in sessions
  2. Added password complexity configuration
  3. Enhanced security to prevent account takeover for sessions opened on public computers and similar:
    • Password confirmation for all critical flows (like password, email change)
    • Lockout of the account after a configurable amount of incorrect login/password entries
    • Password Change functionality is enhanced by email and/or ip address by frequency, number and requests per hour limitation
    • Change password link becomes invalid after the first use or after a configurable amount of time
    • Password/email change notifications are sent to both old and new email addresses
  4. Fixed: the password is not being reset until the new password is submitted via the form available by a one time link sent to the email address