- session id is now generated from truly random value, previous used mysql UUID() had weak randomness

- added session id brute force prevention to old template engine (as used in new template engine)
- forced login->verify() in old template engine
- removed unused login/logout related codes from old template engine
- uuid of new database records is now generated in before insert trigger
This commit is contained in:
ocoliver
2012-11-17 18:04:35 +01:00
parent 797fa10e83
commit a4aee625a9
17 changed files with 4048 additions and 4146 deletions

File diff suppressed because it is too large Load Diff