forked from fedi/mastodon
89d600bedb
* Move signature verification stoplight to the requests themselves This avoids blocking messages from known keys for 5 minutes when only one fails… * Put the stoplight on the actual client IP, not a potential reverse proxy |
||
---|---|---|
.. | ||
account_controller_concern.rb | ||
accountable_concern.rb | ||
authorization.rb | ||
export_controller_concern.rb | ||
localized.rb | ||
obfuscate_filename.rb | ||
rate_limit_headers.rb | ||
session_tracking_concern.rb | ||
signature_authentication.rb | ||
signature_verification.rb | ||
user_tracking_concern.rb |