- Aug 29, 2017
-
-
Jehiah Czebotar authored
nginx auth_request: fix -skip-provider-button
-
Jehiah Czebotar authored
Updates README.md with svg badge
-
Jehiah Czebotar authored
strip all tokens
-
Jehiah Czebotar authored
gracefully report un-parsed upstream URL
-
Jehiah Czebotar authored
Remove check for >0 upstreams
-
Jehiah Czebotar authored
Update cookie generation to match base64 encoding
-
- Aug 06, 2017
-
-
Pierce Lopez authored
-
Pierce Lopez authored
upstreamURL is a nil pointer if there is an error parsing --upstream
-
- Jul 21, 2017
-
-
Christian Svensson authored
When used solely for auth_request there is no upstream. Instead of forcing users to set a dummy upstream, remove the check.
-
- Jul 20, 2017
-
-
Christian Svensson authored
Current code is using URLEncoding but example was using the standard RFC 4648 encoding. Switch to using the URL encoding in the example as well.
-
- Jul 14, 2017
-
-
Colin Arnott authored
-
- Jun 29, 2017
-
-
Nikita Sobolev authored
-
- Jun 22, 2017
-
-
Alan Braithwaite authored
-
- Jun 21, 2017
-
-
Jehiah Czebotar authored
Update Google Auth Provider instructions
-
Bart Spaans authored
-
- Jun 10, 2017
-
-
Jehiah Czebotar authored
Fix spelling mistake in docs
-
Shivansh Dhar authored
-
- May 26, 2017
-
-
Jehiah Czebotar authored
[github provider] use Authorization header, not access_token query parameter
-
- May 18, 2017
-
-
Colin Arnott authored
-
- May 16, 2017
-
-
Jehiah Czebotar authored
README: nginx auth_request example updates
-
- Apr 25, 2017
-
-
Pierce Lopez authored
how to pass back the refreshed oauth2_proxy cookie from an nginx auth_request
-
Pierce Lopez authored
/oauth2/auth is not more sensitive than other /oauth2/ paths, does not need "internal" protection "spdy" protocol is obsolete, http2 is the thing to enable now. But it's orthogonal anyway. No need for two separate content/upstream location blocks in this example, reduce to just one, with a comment that it could be serving files instead of proxying.
-
Jehiah Czebotar authored
dist.sh: use go build option to strip binaries
-
Pierce Lopez authored
30% release binary size reduction
-
Pierce Lopez authored
-
Jehiah Czebotar authored
Release v2.2
-
Jehiah Czebotar authored
-
Jehiah Czebotar authored
-
- Apr 21, 2017
-
-
Jehiah Czebotar authored
Fix url parse error
-
- Apr 07, 2017
-
-
Jehiah Czebotar authored
#369: Optionally allow skipping authentication for preflight requests
-
idntfy authored
-
- Apr 03, 2017
-
-
Travis Hunter authored
-
- Mar 30, 2017
-
-
Jehiah Czebotar authored
various fixes for getting Nginx auth_request mode working
-
- Mar 29, 2017
-
-
Ashish Kulkarni authored
-
Sjoerd Mulder authored
This is useful in Nginx auth_request mode, if a 401 handler is configured to redirect to the sign-in page. As the request URL does not reflect the actual URL, the value is taken from the header "X-Auth-Request-Redirect" instead. Based on #247
-
Lukasz Siudut authored
This is enhancement of #173 to use "Auth Request" consistently in the command-line option, configuration file and response headers. It always sets the X-Auth-Request-User response header and if the email is available, sets X-Auth-Request-Email as well.
-
Jehiah Czebotar authored
Option to skip SSL verification
-
Jehiah Czebotar authored
-
Jehiah Czebotar authored
travis: run gofmt and go vet
-
Jehiah Czebotar authored
-