Django-sso

Latest version: v3.0.2

Safety actively analyzes 623383 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

3.0.2

- Fixed issue with stripping slashes from `SSO[ROOT]` setting on the SSO client side.
- Updated behavior: After success authentication on the SSO gateway side redirect to LOGIN_REDIRECT_URL setting if not provided any other.

3.0.1

- Make more obvious error message about mistakes in client side settings

3.0.0

- Breaking change: Settings storing in the dict instead of separated vars with SSO_ prefix.
- Fixed: When the ADDITIONAL_FIELDS setting are not provided - user model changes wasn't sent to subordinated services, except cases, when user has been logged or has been unlogged from.
- Fixed kidy mistakes from previous release

2.0.0

- Added custom fields to synchronization between gateway and subordinated services.
- Reworked user deletion behavior: If user deleted on the gateway app, on subordinated service it will diabled.
- Fixed identy changing problem: If user email has changed - in old version system was create new user, but not renamed.
- Added `http://your.gateway/sso/debug/update_event/` page on gateway side for debugging additional fields event content.
- Updated README.md

1.1.4

- In gateway side in Admin panel in "Subordinated services" the token field mode changed to read-write. Reason: If in an service just need to change token and and keep requests stats on. Also this fixes bug, when new instance have different token before and after saving.
- Fixed critical bug: If an subordinated service is off-line - any login action in the SSO gateway takes exception. Now behavior changed to short timeout of waiting for alive and reply else will skip broadcasting events (Find `SSO_SUBORDINATE_COMMUNICATION_TIMEOUT` variable in [README.md](README.md))
- Documentation updated.
- For superusers allowed deletion in "Single Sign-On › Authentication requests". Reason: Need full control without any developer actions.
- Deauthentication event was not send in SSO mechanism. Now it's works. When user logging out in subordinated service or gateway - user logout everywhere.

Links

Releases

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.