| * Move signature verification stoplight to the requests themselves This avoids blocking messages from known keys for 5 minutes when only one fails… * Put the stoplight on the actual client IP, not a potential reverse proxy | ||
|---|---|---|
| .. | ||
| account_controller_concern.rb | ||
| accountable_concern.rb | ||
| authorization.rb | ||
| export_controller_concern.rb | ||
| localized.rb | ||
| obfuscate_filename.rb | ||
| rate_limit_headers.rb | ||
| session_tracking_concern.rb | ||
| signature_authentication.rb | ||
| signature_verification.rb | ||
| user_tracking_concern.rb | ||