authelia/test/features
Clement Michaud 6b78240d39 Fix endpoints redirection on errors
From this commit on, api endpoints reply with a 401 error code and non api
endpoints redirect to /error/40X.

This commit also fixes missing restrictions on /loggedin (the "already logged
in page). This was not a security issue, though.

The change also makes error pages automatically redirect the user after few
seconds based on the referrer or the default_redirection_url if provided in the
configuration.

Warning: The old /verify endpoint of the REST API has moved to /api/verify.
You will need to update your nginx configuration to take this change into
account.
2017-11-01 14:46:23 +01:00
..
step_definitions Use issuer and label when generating otpauthURL for TOTP 2017-10-31 21:36:47 +01:00
support Disable notifiers when server uses single factor method only 2017-10-31 07:37:15 +01:00
access-control.feature Disable notifiers when server uses single factor method only 2017-10-31 07:37:15 +01:00
auth-portal-redirection.feature Improve UX of the second factor page 2017-10-31 07:27:36 +01:00
authentication.feature Improve UX of the second factor page 2017-10-31 07:27:36 +01:00
forward-headers.feature Add tests on headers forwarded to backend 2017-10-14 22:11:56 +02:00
redirection.feature Fix endpoints redirection on errors 2017-11-01 14:46:23 +01:00
registration.feature Use issuer and label when generating otpauthURL for TOTP 2017-10-31 21:36:47 +01:00
regulation.feature Improve UX of the second factor page 2017-10-31 07:27:36 +01:00
reset-password.feature Every public endpoints return 200 with harmonized error messages or 401 2017-10-14 11:57:38 +02:00
resilience.feature Improve UX of the second factor page 2017-10-31 07:27:36 +01:00
restrictions.feature Fix endpoints redirection on errors 2017-11-01 14:46:23 +01:00
session-timeout.feature Implement session inactivity timeout 2017-10-31 07:27:23 +01:00
single-factor-domain.feature Disable notifiers when server uses single factor method only 2017-10-31 07:37:15 +01:00
single-factor-server.feature Disable notifiers when server uses single factor method only 2017-10-31 07:37:15 +01:00