for plugin dev only
This repository has been archived on 2023-03-18. You can view files and clone it, but cannot push or open issues or pull requests.
Go to file
Jeff Wong f4f8a293e7 FEATURE: Implement 2factor login TOTP
implemented review items.

Blocking previous codes - valid 2-factor auth tokens can only be authenticated once/30 seconds.
I played with updating the “last used” any time the token was attempted but that seemed to be overkill, and frustrating as to why a token would fail.
Translatable texts.
Move second factor logic to a helper class.
Move second factor specific controller endpoints to its own controller.
Move serialization logic for 2-factor details in admin user views.
Add a login ember component for de-duplication
Fix up code formatting
Change verbiage of google authenticator

add controller tests:
second factor controller tests
change email tests
change password tests
admin login tests

add qunit tests - password reset, preferences

fix: check for 2factor on change email controller
fix: email controller - only show second factor errors on attempt
fix: check against 'true' to enable second factor.

Add modal for explaining what 2fa with links to Google Authenticator/FreeOTP

add two factor to email signin link

rate limit if second factor token present

add rate limiter test for second factor attempts
2018-02-21 09:04:07 +08:00
.tx FIX: Update translations job was aborting at discourse-presence 2017-12-06 10:25:00 -05:00
app FEATURE: Implement 2factor login TOTP 2018-02-21 09:04:07 +08:00
bin avoid getting duplicates in docker dev paths 2017-12-15 10:11:40 +11:00
config FEATURE: Implement 2factor login TOTP 2018-02-21 09:04:07 +08:00
db FEATURE: Implement 2factor login TOTP 2018-02-21 09:04:07 +08:00
docs Update INSTALL-cloud.md 2018-02-16 16:25:37 -08:00
images fix image location 2014-09-11 17:56:29 +10:00
lib FEATURE: Implement 2factor login TOTP 2018-02-21 09:04:07 +08:00
log Initial release of Discourse 2013-02-05 14:16:51 -05:00
packaging/debian Fix .pkgr.yml so that discourse can be packaged with https://pkgr.io. 2014-03-26 15:08:53 +00:00
plugins Update translations 2018-02-15 16:36:03 -05:00
public Update translations 2018-02-15 16:36:03 -05:00
script minor changes to discourse bench 2018-02-20 14:41:21 +11:00
spec FEATURE: Implement 2factor login TOTP 2018-02-21 09:04:07 +08:00
test FEATURE: Implement 2factor login TOTP 2018-02-21 09:04:07 +08:00
vendor Set caret-clone position based on rtl class 2018-01-19 09:53:39 -08:00
.codeclimate.yml FEATURE: Replace composer editor with ember version 2015-11-06 09:49:16 -05:00
.editorconfig Set trim_trailing_whitespace false for markdown 2016-06-25 22:29:01 +04:30
.env.sample Basic Heroku integration 2013-03-13 19:07:49 +00:00
.eslintignore FEATURE: Allow plugins to register a new locale 2018-01-25 14:57:41 +01:00
.eslintrc select-kit refactoring 2017-12-22 13:08:12 +01:00
.gitattributes Revert "Upgrade mail gem to drop dependency on mime-types." 2018-02-16 07:04:22 +11:00
.gitignore PERF: run post timings in background 2018-01-19 08:27:29 +11:00
.overcommit.yml Add overcommit configuration file 2017-11-21 15:02:08 +01:00
.pkgr.yml Fix .pkgr.yml so that discourse can be packaged with https://pkgr.io. 2014-03-26 15:08:53 +00:00
.rspec Initial release of Discourse 2013-02-05 14:16:51 -05:00
.rubocop.yml exclude public directory from RuboCop 2017-11-02 20:31:04 +01:00
.ruby-gemset.sample rvm has offically depreicated .rvmrc and recommends using .ruby-version and .ruby-gemset instead. 2013-05-23 09:16:11 -07:00
.ruby-version.sample Bump ruby version 2017-05-16 15:02:24 +10:00
.travis.yml Support ruby 2.5.0 2018-01-09 16:03:17 +01:00
adminjs Initial release of Discourse 2013-02-05 14:16:51 -05:00
Brewfile Switch to chrome headless mode instead of phantomjs. 2017-12-19 16:00:43 +08:00
config.ru FEATURE: allow plugins to easily detect if running in Rack 2017-11-16 08:39:29 +11:00
CONTRIBUTING.md Proper long form for CLA 2015-09-10 20:49:03 +02:00
COPYRIGHT.txt fix trademark 2013-06-27 09:38:15 +10:00
d add wrappers for mailcatcher and sidekiq 2016-12-13 09:05:45 +11:00
discourse.sublime-project [DEV] fixes sublime text 2 project loading issue 2017-11-09 10:57:19 +01:00
Gemfile FEATURE: Implement 2factor login TOTP 2018-02-21 09:04:07 +08:00
Gemfile.lock FEATURE: Implement 2factor login TOTP 2018-02-21 09:04:07 +08:00
jsapp Initial release of Discourse 2013-02-05 14:16:51 -05:00
LICENSE.txt Initial release of Discourse 2013-02-05 14:16:51 -05:00
package.json Add eslint and babel-eslint to yarn dev dependencies. 2017-12-22 13:24:39 +08:00
Procfile Standardize on 'worker' for sidekiq Procfile entry (expected by buildpack). 2013-10-08 14:45:32 +01:00
Rakefile Add rubocop to our build. (#5004) 2017-07-28 10:20:09 +09:00
README.md Update screenshots on Readme 2017-04-25 14:19:43 -03:00
Vagrantfile fix link to result in instant download 2016-06-02 13:13:18 -04:00
yarn.lock Add eslint and babel-eslint to yarn dev dependencies. 2017-12-22 13:24:39 +08:00

Logo

Discourse is the 100% open source discussion platform built for the next decade of the Internet. Use it as a:

  • mailing list
  • discussion forum
  • long-form chat room

To learn more about the philosophy and goals of the project, visit discourse.org.

Screenshots

Boing Boing

Mobile

Browse lots more notable Discourse instances.

Development

  1. If you're brand new to Ruby and Rails, please see Discourse as Your First Rails App or our Discourse Vagrant Developer Guide, which includes a development environment in a virtual machine.

  2. If you're familiar with how Rails works and are comfortable setting up your own environment, use our Discourse Advanced Developer Guide.

Before you get started, ensure you have the following minimum versions: Ruby 2.3+, PostgreSQL 9.3+, Redis 2.6+. If you're having trouble, please see our TROUBLESHOOTING GUIDE first!

Setting up Discourse

If you want to set up a Discourse forum for production use, see our Discourse Install Guide.

If you're looking for business class hosting, see discourse.org/buy.

Requirements

Discourse is built for the next 10 years of the Internet, so our requirements are high:

Browsers Tablets Phones
Safari 6.1+ iPad 3+ iOS 8+
Google Chrome 32+ Android 4.3+ Android 4.3+
Internet Explorer 11+
Firefox 27+

Built With

  • Ruby on Rails — Our back end API is a Rails app. It responds to requests RESTfully in JSON.
  • Ember.js — Our front end is an Ember.js app that communicates with the Rails API.
  • PostgreSQL — Our main data store is in Postgres.
  • Redis — We use Redis as a cache and for transient data.

Plus lots of Ruby Gems, a complete list of which is at /master/Gemfile.

Contributing

Build Status Code Climate

Discourse is 100% free and open source. We encourage and support an active, healthy community that accepts contributions from the public including you!

Before contributing to Discourse:

  1. Please read the complete mission statements on discourse.org. Yes we actually believe this stuff; you should too.
  2. Read and sign the Electronic Discourse Forums Contribution License Agreement.
  3. Dig into CONTRIBUTING.MD, which covers submitting bugs, requesting new features, preparing your code for a pull request, etc.
  4. Always strive to collaborate with mutual respect.
  5. Not sure what to work on? We've got some ideas.

We look forward to seeing your pull requests!

Security

We take security very seriously at Discourse; all our code is 100% open source and peer reviewed. Please read our security guide for an overview of security measures in Discourse, or if you wish to report a security issue.

The Discourse Team

The original Discourse code contributors can be found in AUTHORS.MD. For a complete list of the many individuals that contributed to the design and implementation of Discourse, please refer to the official Discourse blog and GitHub's list of contributors.

Copyright 2014 - 2017 Civilized Discourse Construction Kit, Inc.

Licensed under the GNU General Public License Version 2.0 (or later); you may not use this work except in compliance with the License. You may obtain a copy of the License in the LICENSE file, or at:

http://www.gnu.org/licenses/old-licenses/gpl-2.0.txt

Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.

Discourse logo and “Discourse Forum” ®, Civilized Discourse Construction Kit, Inc.

Dedication

Discourse is built with love, Internet style.