summary refs log tree commit diff
path: root/changelog.d (follow)
Commit message (Collapse)AuthorAgeFilesLines
* Remove Postgres 9.4 support (#5448)Amber Brown2019-06-181-0/+1
|
* Merge pull request #5385 from matrix-org/erikj/reduce_http_exceptionsErik Johnston2019-06-171-0/+1
|\ | | | | Handle HttpResponseException when using federation client.
| * NewsfileErik Johnston2019-06-071-0/+1
| |
* | Merge pull request #5388 from matrix-org/erikj/fix_email_pushErik Johnston2019-06-171-0/+1
|\ \ | | | | | | Fix email notifications for unnamed rooms with multiple people
| * | NewsfileErik Johnston2019-06-071-0/+1
| |/
* | Merge pull request #5389 from matrix-org/erikj/renew_attestations_on_masterErik Johnston2019-06-171-0/+1
|\ \ | | | | | | Only start background group attestation renewals on master
| * | NewsfileErik Johnston2019-06-071-0/+1
| | |
* | | Move SyTest to Buildkite (#5459)Amber Brown2019-06-171-0/+1
| | | | | | | | | Including workers!
* | | Merge pull request #5464 from matrix-org/erikj/3pid_remote_invite_stateErik Johnston2019-06-171-0/+1
|\ \ \ | | | | | | | | Fix 3PID invite room state over federation.
| * | | NewsfileErik Johnston2019-06-141-0/+1
| | | |
* | | | Merge pull request #5440 from matrix-org/babolivier/third_party_event_rulesBrendan Abolivier2019-06-141-0/+1
|\ \ \ \ | | | | | | | | | | Allow server admins to define implementations of extra rules for allowing or denying incoming events
| * | | | Add plugin APIs for implementations of custom event rules.Brendan Abolivier2019-06-141-0/+1
| | | | |
* | | | | Merge pull request #5461 from matrix-org/erikj/histograms_are_cumalitiveErik Johnston2019-06-141-0/+1
|\ \ \ \ \ | | | | | | | | | | | | Prometheus histograms are cumalative
| * | | | | NewsfileErik Johnston2019-06-141-0/+1
| | | | | |
* | | | | | Merge pull request #5465 from matrix-org/babolivier/fix_deactivation_bg_jobBrendan Abolivier2019-06-141-0/+2
|\ \ \ \ \ \ | | | | | | | | | | | | | | Fix background job for deactivated flag
| * | | | | | Fix changelogBrendan Abolivier2019-06-142-1/+2
| | | | | | |
| * | | | | | ChangelogBrendan Abolivier2019-06-141-0/+1
| | | | | | |
* | | | | | | Merge pull request #5462 from ↵Brendan Abolivier2019-06-141-0/+1
|\| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | matrix-org/babolivier/account_validity_deactivated_accounts_2 Don't send renewal emails to deactivated users (second attempt)
| * | | | | | Don't send renewal emails to deactivated usersBrendan Abolivier2019-06-141-0/+1
| |/ / / / /
* | | | | | Merge pull request #5460 from matrix-org/joriks/demo_python3Jorik Schellekens2019-06-141-0/+1
|\ \ \ \ \ \ | | | | | | | | | | | | | | Use python3 in the demo
| * | | | | | ChangelogJorik Schellekens2019-06-141-0/+1
| | | | | | |
* | | | | | | Merge pull request #5390 from matrix-org/erikj/dont_log_on_fail_to_get_fileErik Johnston2019-06-141-0/+1
|\ \ \ \ \ \ \ | |_|/ / / / / |/| | | | | | Don't log exception when failing to fetch remote content.
| * | | | | | NewsfileErik Johnston2019-06-071-0/+1
| | |_|_|/ / | |/| | | |
* | | | | | Track deactivated accounts in the database (#5378)Brendan Abolivier2019-06-141-0/+1
| | | | | |
* | | | | | changelogAmber H. Brown2019-06-141-0/+1
| |/ / / / |/| | | |
* | | | | Updates to the federation_client script (#5447)Richard van der Hoff2019-06-131-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | * py3 fixes for federation_client * .well-known support for federation_client
* | | | | Clean up code for sending federation EDUs. (#5381)Richard van der Hoff2019-06-131-0/+1
| | | | | | | | | | | | | | | | | | | | This code confused the hell out of me today. Split _get_new_device_messages into its two (unrelated) parts.
* | | | | Expose statistics on extrems to prometheus (#5384)Amber Brown2019-06-131-0/+1
| | | | |
* | | | | Remove Python 2.7 support. (#5425)Amber Brown2019-06-121-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * remove 2.7 from CI and publishing * fill out classifiers and also make it not be installed on 3.5 * some minor bumps so that the old deps work on python 3.5
* | | | | Merge branch 'master' of github.com:matrix-org/synapse into developErik Johnston2019-06-111-1/+0
|\ \ \ \ \ | | |_|/ / | |/| | |
| * | | | 1.0.0 v1.0.0Erik Johnston2019-06-113-3/+0
| | | | |
| * | | | Merge pull request #5424 from matrix-org/erikj/change_password_reset_linksErik Johnston2019-06-111-0/+1
| |\ \ \ \ | | | | | | | | | | | | Change password reset links to /_matrix.
| | * | | | NewsfileErik Johnston2019-06-111-0/+1
| | | |/ / | | |/| |
| * / | | Neilj/improve federation docs (#5419)Neil Johnson2019-06-111-0/+1
| |/ / / | | | | | | | | | | | | Add FAQ questions to federate.md. Add a health warning making it clear that the 1711 upgrade FAQ is now out of date.
* | | | Merge branch 'release-v1.0.0' of github.com:matrix-org/synapse into developErik Johnston2019-06-111-0/+1
|\| | |
| * | | Merge pull request #5418 from matrix-org/erikj/fix_send_fed_with_limit_zeroErik Johnston2019-06-101-0/+1
| |\ \ \ | | | | | | | | | | Fix bug sending federation transactions with lots of EDUs
| | * | | Update changelog.d/5418.bugfixErik Johnston2019-06-101-1/+1
| | | | | | | | | | | | | | | Co-Authored-By: Richard van der Hoff <1389908+richvdh@users.noreply.github.com>
| | * | | NewsfileErik Johnston2019-06-101-0/+1
| | | | |
* | | | | Don't warn user about password reset disabling through config code (#5387)Andrew Morgan2019-06-111-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Moves the warning about password resets being disabled to the point where a user actually tries to reset their password. Is this an appropriate place for it to happen? Also removed the disabling of msisdn password resets when you don't have an email config, as that just doesn't make sense. Also change the error a user receives upon disabled passwords to specify that only email-based password reset is disabled.
* | | | | add monthly active users to phonehome stats (#5252)Neil Johnson2019-06-101-0/+1
| | | | | | | | | | | | | | | | | | | | * add monthly active users to phonehome stats
* | | | | Merge branch 'release-v1.0.0' of github.com:matrix-org/synapse into developErik Johnston2019-06-101-1/+0
|\| | | |
| * | | | 1.0.0rc2 v1.0.0rc2Erik Johnston2019-06-103-3/+0
| | | | |
| * | | | Merge pull request #5417 from matrix-org/rav/shared_ssl_contextErik Johnston2019-06-101-0/+1
| |\ \ \ \ | | |/ / / | |/| | | Share an SSL context object between SSL connections
| | * | | fix build failsRichard van der Hoff2019-06-101-0/+1
| | | | |
| * | | | Merge branch 'erikj/fix_null_valid_until_ms' of ↵Erik Johnston2019-06-101-0/+1
| |\ \ \ \ | | | | | | | | | | | | | | | | | | github.com:matrix-org/synapse into release-v1.0.0
| * | | | | Improve startup checks for insecure notary configs (#5392)Richard van der Hoff2019-06-101-0/+1
| | |/ / / | |/| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | It's not really a problem to trust notary responses signed by the old key so long as we are also doing TLS validation. This commit adds a check to the config parsing code at startup to check that we do not have the insecure matrix.org key without tls validation, and refuses to start without it. This allows us to remove the rather alarming-looking warning which happens at runtime.
* | | | | Merge pull request #5415 from matrix-org/erikj/fix_null_valid_until_msErik Johnston2019-06-101-0/+1
|\ \ \ \ \ | | |/ / / | |/| | | Fix key verification when key stored with null valid_until_ms
| * | | | NewsfileErik Johnston2019-06-101-0/+1
| |/ / /
* | | | Merge pull request #5412 from SohamG/fix-4130Erik Johnston2019-06-101-0/+1
|\ \ \ \ | | | | | | | | | | Add --no-daemonize option to synctl
| * | | | Added changelog file.sohamg2019-06-101-0/+1
| | | | |
| * | | | 0.99.5.2 v0.99.5.2 github/release-v0.99.5 release-v0.99.5Erik Johnston2019-05-303-3/+0
| | | | |
| * | | | NewsfileErik Johnston2019-05-301-0/+1
| | | | |
| * | | | NewsfileErik Johnston2019-05-301-0/+1
| | | | |
| * | | | Correctly filter out extremities with soft failed prevs (#5274)Erik Johnston2019-05-301-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | When we receive a soft failed event we, correctly, *do not* update the forward extremity table with the event. However, if we later receive an event that references the soft failed event we then need to remove the soft failed events prev events from the forward extremities table, otherwise we just build up forward extremities. Fixes #5269
* | | | | Merge pull request #5325 from matrix-org/babolivier/port_db_account_validityBrendan Abolivier2019-06-101-0/+1
|\ \ \ \ \ | | | | | | | | | | | | Add account_validity's email_sent column to the list of boolean columns in synapse_port_db
| * | | | | Rewrite changelogBrendan Abolivier2019-06-051-1/+1
| | | | | |
| * | | | | Merge branch 'develop' into babolivier/port_db_account_validityBrendan Abolivier2019-06-044-0/+4
| |\ \ \ \ \
| * | | | | | ChangelogBrendan Abolivier2019-06-031-0/+1
| | | | | | |
* | | | | | | Merge pull request #5363 from ↵Brendan Abolivier2019-06-101-0/+1
|\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | matrix-org/babolivier/account_validity_send_mail_auth Don't check whether the user's account is expired on /send_mail requests
| * | | | | | | Gah towncrierBrendan Abolivier2019-06-051-1/+1
| | | | | | | |
| * | | | | | | ChangelogBrendan Abolivier2019-06-051-0/+1
| | | | | | | |
* | | | | | | | Liberapay is now officially recognised, update FUNDING.yml (#5386)Andrew Morgan2019-06-091-0/+1
| |_|_|_|_|/ / |/| | | | | |
* | | | | | | Merge tag 'v1.0.0rc1' into developNeil Johnson2019-06-0779-82/+0
|\ \ \ \ \ \ \ | | |_|_|_|/ / | |/| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Synapse 1.0.0rc1 (2019-06-07) ============================= Features -------- - Synapse now more efficiently collates room statistics. ([\#4338](https://github.com/matrix-org/synapse/issues/4338), [\#5260](https://github.com/matrix-org/synapse/issues/5260), [\#5324](https://github.com/matrix-org/synapse/issues/5324)) - Add experimental support for relations (aka reactions and edits). ([\#5220](https://github.com/matrix-org/synapse/issues/5220)) - Ability to configure default room version. ([\#5223](https://github.com/matrix-org/synapse/issues/5223), [\#5249](https://github.com/matrix-org/synapse/issues/5249)) - Allow configuring a range for the account validity startup job. ([\#5276](https://github.com/matrix-org/synapse/issues/5276)) - CAS login will now hit the r0 API, not the deprecated v1 one. ([\#5286](https://github.com/matrix-org/synapse/issues/5286)) - Validate federation server TLS certificates by default (implements [MSC1711](https://github.com/matrix-org/matrix-doc/blob/master/proposals/1711-x509-for-federation.md)). ([\#5359](https://github.com/matrix-org/synapse/issues/5359)) - Update /_matrix/client/versions to reference support for r0.5.0. ([\#5360](https://github.com/matrix-org/synapse/issues/5360)) - Add a script to generate new signing-key files. ([\#5361](https://github.com/matrix-org/synapse/issues/5361)) - Update upgrade and installation guides ahead of 1.0. ([\#5371](https://github.com/matrix-org/synapse/issues/5371)) - Replace the `perspectives` configuration section with `trusted_key_servers`, and make validating the signatures on responses optional (since TLS will do this job for us). ([\#5374](https://github.com/matrix-org/synapse/issues/5374)) - Add ability to perform password reset via email without trusting the identity server. ([\#5377](https://github.com/matrix-org/synapse/issues/5377)) - Set default room version to v4. ([\#5379](https://github.com/matrix-org/synapse/issues/5379)) Bugfixes -------- - Fixes client-server API not sending "m.heroes" to lazy-load /sync requests when a rooms name or its canonical alias are empty. Thanks to @dnaf for this work! ([\#5089](https://github.com/matrix-org/synapse/issues/5089)) - Prevent federation device list updates breaking when processing multiple updates at once. ([\#5156](https://github.com/matrix-org/synapse/issues/5156)) - Fix worker registration bug caused by ClientReaderSlavedStore being unable to see get_profileinfo. ([\#5200](https://github.com/matrix-org/synapse/issues/5200)) - Fix race when backfilling in rooms with worker mode. ([\#5221](https://github.com/matrix-org/synapse/issues/5221)) - Fix appservice timestamp massaging. ([\#5233](https://github.com/matrix-org/synapse/issues/5233)) - Ensure that server_keys fetched via a notary server are correctly signed. ([\#5251](https://github.com/matrix-org/synapse/issues/5251)) - Show the correct error when logging out and access token is missing. ([\#5256](https://github.com/matrix-org/synapse/issues/5256)) - Fix error code when there is an invalid parameter on /_matrix/client/r0/publicRooms ([\#5257](https://github.com/matrix-org/synapse/issues/5257)) - Fix error when downloading thumbnail with missing width/height parameter. ([\#5258](https://github.com/matrix-org/synapse/issues/5258)) - Fix schema update for account validity. ([\#5268](https://github.com/matrix-org/synapse/issues/5268)) - Fix bug where we leaked extremities when we soft failed events, leading to performance degradation. ([\#5274](https://github.com/matrix-org/synapse/issues/5274), [\#5278](https://github.com/matrix-org/synapse/issues/5278), [\#5291](https://github.com/matrix-org/synapse/issues/5291)) - Fix "db txn 'update_presence' from sentinel context" log messages. ([\#5275](https://github.com/matrix-org/synapse/issues/5275)) - Fix dropped logcontexts during high outbound traffic. ([\#5277](https://github.com/matrix-org/synapse/issues/5277)) - Fix a bug where it is not possible to get events in the federation format with the request `GET /_matrix/client/r0/rooms/{roomId}/messages`. ([\#5293](https://github.com/matrix-org/synapse/issues/5293)) - Fix performance problems with the rooms stats background update. ([\#5294](https://github.com/matrix-org/synapse/issues/5294)) - Fix noisy 'no key for server' logs. ([\#5300](https://github.com/matrix-org/synapse/issues/5300)) - Fix bug where a notary server would sometimes forget old keys. ([\#5307](https://github.com/matrix-org/synapse/issues/5307)) - Prevent users from setting huge displaynames and avatar URLs. ([\#5309](https://github.com/matrix-org/synapse/issues/5309)) - Fix handling of failures when processing incoming events where calling `/event_auth` on remote server fails. ([\#5317](https://github.com/matrix-org/synapse/issues/5317)) - Ensure that we have an up-to-date copy of the signing key when validating incoming federation requests. ([\#5321](https://github.com/matrix-org/synapse/issues/5321)) - Fix various problems which made the signing-key notary server time out for some requests. ([\#5333](https://github.com/matrix-org/synapse/issues/5333)) - Fix bug which would make certain operations (such as room joins) block for 20 minutes while attemoting to fetch verification keys. ([\#5334](https://github.com/matrix-org/synapse/issues/5334)) - Fix a bug where we could rapidly mark a server as unreachable even though it was only down for a few minutes. ([\#5335](https://github.com/matrix-org/synapse/issues/5335), [\#5340](https://github.com/matrix-org/synapse/issues/5340)) - Fix a bug where account validity renewal emails could only be sent when email notifs were enabled. ([\#5341](https://github.com/matrix-org/synapse/issues/5341)) - Fix failure when fetching batches of events during backfill, etc. ([\#5342](https://github.com/matrix-org/synapse/issues/5342)) - Add a new room version where the timestamps on events are checked against the validity periods on signing keys. ([\#5348](https://github.com/matrix-org/synapse/issues/5348), [\#5354](https://github.com/matrix-org/synapse/issues/5354)) - Fix room stats and presence background updates to correctly handle missing events. ([\#5352](https://github.com/matrix-org/synapse/issues/5352)) - Include left members in room summaries' heroes. ([\#5355](https://github.com/matrix-org/synapse/issues/5355)) - Fix `federation_custom_ca_list` configuration option. ([\#5362](https://github.com/matrix-org/synapse/issues/5362)) - Fix missing logcontext warnings on shutdown. ([\#5369](https://github.com/matrix-org/synapse/issues/5369)) Improved Documentation ---------------------- - Fix docs on resetting the user directory. ([\#5282](https://github.com/matrix-org/synapse/issues/5282)) - Fix notes about ACME in the MSC1711 faq. ([\#5357](https://github.com/matrix-org/synapse/issues/5357)) Internal Changes ---------------- - Synapse will now serve the experimental "room complexity" API endpoint. ([\#5216](https://github.com/matrix-org/synapse/issues/5216)) - The base classes for the v1 and v2_alpha REST APIs have been unified. ([\#5226](https://github.com/matrix-org/synapse/issues/5226), [\#5328](https://github.com/matrix-org/synapse/issues/5328)) - Simplifications and comments in do_auth. ([\#5227](https://github.com/matrix-org/synapse/issues/5227)) - Remove urllib3 pin as requests 2.22.0 has been released supporting urllib3 1.25.2. ([\#5230](https://github.com/matrix-org/synapse/issues/5230)) - Preparatory work for key-validity features. ([\#5232](https://github.com/matrix-org/synapse/issues/5232), [\#5234](https://github.com/matrix-org/synapse/issues/5234), [\#5235](https://github.com/matrix-org/synapse/issues/5235), [\#5236](https://github.com/matrix-org/synapse/issues/5236), [\#5237](https://github.com/matrix-org/synapse/issues/5237), [\#5244](https://github.com/matrix-org/synapse/issues/5244), [\#5250](https://github.com/matrix-org/synapse/issues/5250), [\#5296](https://github.com/matrix-org/synapse/issues/5296), [\#5299](https://github.com/matrix-org/synapse/issues/5299), [\#5343](https://github.com/matrix-org/synapse/issues/5343), [\#5347](https://github.com/matrix-org/synapse/issues/5347), [\#5356](https://github.com/matrix-org/synapse/issues/5356)) - Specify the type of reCAPTCHA key to use. ([\#5283](https://github.com/matrix-org/synapse/issues/5283)) - Improve sample config for monthly active user blocking. ([\#5284](https://github.com/matrix-org/synapse/issues/5284)) - Remove spurious debug from MatrixFederationHttpClient.get_json. ([\#5287](https://github.com/matrix-org/synapse/issues/5287)) - Improve logging for logcontext leaks. ([\#5288](https://github.com/matrix-org/synapse/issues/5288)) - Clarify that the admin change password API logs the user out. ([\#5303](https://github.com/matrix-org/synapse/issues/5303)) - New installs will now use the v54 full schema, rather than the full schema v14 and applying incremental updates to v54. ([\#5320](https://github.com/matrix-org/synapse/issues/5320)) - Improve docstrings on MatrixFederationClient. ([\#5332](https://github.com/matrix-org/synapse/issues/5332)) - Clean up FederationClient.get_events for clarity. ([\#5344](https://github.com/matrix-org/synapse/issues/5344)) - Various improvements to debug logging. ([\#5353](https://github.com/matrix-org/synapse/issues/5353)) - Don't run CI build checks until sample config check has passed. ([\#5370](https://github.com/matrix-org/synapse/issues/5370)) - Automatically retry buildkite builds (max twice) when an agent is lost. ([\#5380](https://github.com/matrix-org/synapse/issues/5380))
| * | | | | | 1.0.0rc1 v1.0.0rc1Neil Johnson2019-06-0779-82/+0
| | |_|_|_|/ | |/| | | |
* / | | | | Add a sponsor button (#5382)Andrew Morgan2019-06-071-0/+1
|/ / / / / | | | | | | | | | | Add a sponsor button with links to matrixdotorg's patreon and liberapay accounts.
* | | | | Automatically retry builds when a buildkite agent is lost (#5380)Andrew Morgan2019-06-071-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Sometimes the build agents get lost or die (error codes -1 and 2). Retry automatically a maximum of 2 times if this happens. Error code reference: * -1: Agent was lost * 0: Build successful * 1: There was an error in your code * 2: The build stopped abruptly * 255: The build was cancelled
* | | | | Prevent multiple device list updates from breaking a batch send (#5156)Andrew Morgan2019-06-061-0/+1
| | | | | | | | | | | | | | | fixes #5153
* | | | | Set default room version to v4. (#5379)Neil Johnson2019-06-061-0/+1
| | | | | | | | | | | | | | | | | | | | Set default room version to v4.
* | | | | Merge pull request #5320 from matrix-org/hawkowl/full-schema-v1Erik Johnston2019-06-061-0/+1
|\ \ \ \ \ | | | | | | | | | | | | Make a full SQL schema
| * \ \ \ \ Merge remote-tracking branch 'origin/develop' into hawkowl/full-schema-v1Amber Brown2019-06-042-0/+2
| |\ \ \ \ \
| * | | | | | more fixAmber Brown2019-06-031-0/+1
| | |_|/ / / | |/| | | |
* | | | | | Add ability to perform password reset via email without trusting the ↵Andrew Morgan2019-06-061-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | identity server (#5377) Sends password reset emails from the homeserver instead of proxying to the identity server. This is now the default behaviour for security reasons. If you wish to continue proxying password reset requests to the identity server you must now enable the email.trust_identity_server_for_password_resets option. This PR is a culmination of 3 smaller PRs which have each been separately reviewed: * #5308 * #5345 * #5368
* | | | | | Stop hardcoding trust of old matrix.org key (#5374)Richard van der Hoff2019-06-061-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | There are a few changes going on here: * We make checking the signature on a key server response optional: if no verify_keys are specified, we trust to TLS to validate the connection. * We change the default config so that it does not require responses to be signed by the old key. * We replace the old 'perspectives' config with 'trusted_key_servers', which is also formatted slightly differently. * We emit a warning to the logs every time we trust a key server response signed by the old key.
* | | | | | Neilj/1.0 upgrade notes (#5371)Neil Johnson2019-06-061-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | 1.0 upgrade/install notes
* | | | | | Regen sample config before kicking off agents (#5370)Andrew Morgan2019-06-061-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Regen sample config before kicking off agents * Add changelog
* | | | | | Fix missing logcontext for PresenceHandler.on_shutdown. (#5369)Richard van der Hoff2019-06-061-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | Fixes some warnings, and a scary-looking stacktrace when sytest kills the process.
* | | | | | Merge pull request #5221 from matrix-org/erikj/fix_worker_sytestErik Johnston2019-06-061-0/+1
|\ \ \ \ \ \ | | | | | | | | | | | | | | Fix get_max_topological_token to never return None
| * | | | | | NewsfileErik Johnston2019-05-211-0/+1
| | | | | | |
* | | | | | | Merge pull request #5089 from dnaf/m-heroes-empty-room-nameBrendan Abolivier2019-06-061-0/+1
|\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | Make /sync return heroes if room name or canonical alias are empty
| * | | | | | | Add credit in the changelogBrendan Abolivier2019-06-062-1/+1
| | | | | | | |
| * | | | | | | Merge branch 'develop' into m-heroes-empty-room-nameBrendan Abolivier2019-06-05103-50/+57
| |\ \ \ \ \ \ \
| * | | | | | | | Add full stop to 5084.bugfixKatie Wolfe2019-04-241-1/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Signed-off-by: Katie Wolfe <katie@dnaf.moe>
| * | | | | | | | Add changelog.d/5084.bugfixKatie Wolfe2019-04-241-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Signed-off-by: Katie Wolfe <katie@dnaf.moe>
* | | | | | | | | Merge pull request #5359 from matrix-org/rav/enable_tls_verificationRichard van der Hoff2019-06-061-0/+1
|\ \ \ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | Validate federation server TLS certificates by default.
| * \ \ \ \ \ \ \ \ Merge branch 'rav/fix_custom_ca' into rav/enable_tls_verificationRichard van der Hoff2019-06-0518-12/+18
| |\ \ \ \ \ \ \ \ \
| * | | | | | | | | | Validate federation server TLS certificates by default.Richard van der Hoff2019-06-051-0/+1
| | | | | | | | | | |
* | | | | | | | | | | Merge pull request #5361 from matrix-org/rav/generate_signing_keyRichard van der Hoff2019-06-061-0/+1
|\ \ \ \ \ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | add a script to generate new signing_key files
| * | | | | | | | | | | add a script to generate new signing_key filesRichard van der Hoff2019-06-051-0/+1
| | | | | | | | | | | |
* | | | | | | | | | | | Merge pull request #5355 from matrix-org/babolivier/heroes_left_membersBrendan Abolivier2019-06-061-0/+1
|\ \ \ \ \ \ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | Include left members in room summaries' heroes
| * | | | | | | | | | | | Properly format the changelogBrendan Abolivier2019-06-051-1/+1
| | | | | | | | | | | | |
| * | | | | | | | | | | | ChangelogBrendan Abolivier2019-06-051-0/+1
| | |_|_|_|/ / / / / / / | |/| | | | | | | | | |
* | | | | | | | | | | | Merge pull request #5354 from matrix-org/rav/server_keys/99-room-v5Richard van der Hoff2019-06-061-0/+2
|\ \ \ \ \ \ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | Implement room v5 which enforces signing key validity
| * | | | | | | | | | | | Implement room v5 which enforces signing key validityRichard van der Hoff2019-06-051-0/+2
| | |_|/ / / / / / / / / | |/| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Implements [MSC2077](https://github.com/matrix-org/matrix-doc/pull/2077) and fixes #5247 and #4364.
* | | | | | | | | | | | Merge pull request #5353 from matrix-org/rav/verify_key_loggingRichard van der Hoff2019-06-061-0/+2
|\ \ \ \ \ \ \ \ \ \ \ \ | |_|_|_|/ / / / / / / / |/| | | | | | | | | | | Associate a request_name with each verify request, for logging
| * | | | | | | | | | | Associate a request_name with each verify request, for loggingRichard van der Hoff2019-06-051-0/+2
| |/ / / / / / / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Also: * rename VerifyKeyRequest->VerifyJsonRequest * calculate key_ids on VerifyJsonRequest construction * refactor things to pass around VerifyJsonRequests instead of 4-tuples
* | | | | | | | | | | Fix `federation_custom_ca_list` configuration option.Richard van der Hoff2019-06-051-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Previously, setting this option would cause an exception at startup.
* | | | | | | | | | | Neilj/add r0.5 to versions (#5360)Neil Johnson2019-06-051-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Update _matrix/client/versions to reference support for r0.5.0
* | | | | | | | | | | Fix background updates to handle redactions/rejections (#5352)Erik Johnston2019-06-061-0/+1
| |_|/ / / / / / / / |/| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Fix background updates to handle redactions/rejections In background updates based on current state delta stream we need to handle that we may not have all the events (or at least that `get_events` may raise an exception).
* | | | | | | | | | Fix notes about well-known and acme (#5357)Richard van der Hoff2019-06-051-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | fixes #4951
* | | | | | | | | | Merge pull request #5317 from matrix-org/erikj/make_do_auth_non_essentialErik Johnston2019-06-051-0/+1
|\ \ \ \ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | Fix handling of failures when calling /event_auth.
| * | | | | | | | | | NewsfileErik Johnston2019-06-031-0/+1
| | |_|_|_|/ / / / / | |/| | | | | | | |
* | | | | | | | | | Neilj/changelog clean up (#5356)Neil Johnson2019-06-0512-12/+12
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * group together key validity refactors
* | | | | | | | | | Neilj/mau tracking config explainer (#5284)Neil Johnson2019-06-051-0/+1
| |/ / / / / / / / |/| | | | | | | | | | | | | | | | | | | | | | | | | | Improve documentation of monthly active user blocking and mau_trial_days
* | | | | | | | | Add a test room version where we enforce key validity (#5348)Richard van der Hoff2019-06-051-0/+1
| |/ / / / / / / |/| | | | | | |
* | | | | | | | Clean up debug logging (#5347)Richard van der Hoff2019-06-051-0/+2
| | | | | | | | | | | | | | | | | | | | | | | | Remove some spurious stuff, clarify some other stuff
* | | | | | | | Rename VerifyKeyRequest.deferred field (#5343)Richard van der Hoff2019-06-051-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | it's a bit confusing
* | | | | | | | Call RetryLimiter correctly (#5340)Richard van der Hoff2019-06-041-0/+2
| | | | | | | | | | | | | | | | | | | | | | | | Fixes a regression introduced in #5335.
* | | | | | | | Fix failure to fetch batches of PDUs (#5342)Richard van der Hoff2019-06-041-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | FederationClient.get_pdu is called in a loop to fetch a batch of PDUs. A failure to fetch one should not result in a failure of the whole batch. Add the missing `continue`.
* | | | | | | | Rename get_events->get_events_from_store_or_dest (#5344)Richard van der Hoff2019-06-041-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | We have too many things called get_event, and it's hard to figure out what we mean. Also remove some unused params from the signature, and add some logging.
* | | | | | | | Merge pull request #5341 from matrix-org/babolivier/email_configBrendan Abolivier2019-06-041-0/+1
|\ \ \ \ \ \ \ \ | | |_|_|_|/ / / | |/| | | | | | Make account validity renewal emails work when email notifs are disabled
| * | | | | | | Make account validity renewal emails work when email notifs are disabledBrendan Abolivier2019-06-041-0/+1
| | | | | | | |
* | | | | | | | Merge pull request #5324 from matrix-org/erikj/ignore_nullErik Johnston2019-06-041-0/+1
|\ \ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | Ignore room state with null bytes in for room stats
| * | | | | | | | NewsfileErik Johnston2019-06-031-0/+1
| | |_|_|_|/ / / | |/| | | | | |
* | | | | | | | Avoid rapidly backing-off a server if we ignore the retry interval (#5335)Richard van der Hoff2019-06-041-0/+1
|\ \ \ \ \ \ \ \
| * | | | | | | | Avoid rapidly backing-off a server if we ignore the retry intervalRichard van der Hoff2019-06-031-0/+1
| | | | | | | | |
* | | | | | | | | Don't do long retries when calling the key notary server. (#5334)Richard van der Hoff2019-06-041-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | It takes at least 20 minutes to work through the long_retries schedule (11 attempts, each with a 60 second timeout, and 60 seconds between each request), so if the notary server isn't returning within the timeout, we'll just end up blocking whatever request is happening for 20 minutes. Ain't nobody got time for that.
* | | | | | | | | Merge pull request #5333 from ↵Richard van der Hoff2019-06-041-0/+1
|\ \ \ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | matrix-org/rav/server_keys/09_improve_notary_server Fixes for the key-notary server
| * | | | | | | | | changelogRichard van der Hoff2019-06-041-0/+1
| |/ / / / / / / /
* | | | | | | / / Improve docstrings on MatrixFederationClient. (#5332)Richard van der Hoff2019-06-041-0/+1
| |_|_|_|_|_|/ / |/| | | | | | |
* | | | | | | | Hawkowl/fix missing auth (#5328)Amber Brown2019-06-041-0/+1
|/ / / / / / /
* | | | | | | Enforce validity period on server_keys for fed requests. (#5321)Richard van der Hoff2019-06-031-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | When handling incoming federation requests, make sure that we have an up-to-date copy of the signing key. We do not yet enforce the validity period for event signatures.
* | | | | | | Revert "Newsfile"Erik Johnston2019-06-031-1/+0
| | | | | | | | | | | | | | | | | | | | | | | | | | | | This reverts commit 4bd67db100efacc3d31a2f8187b7bdd4479d9bc3.
* | | | | | | NewsfileErik Johnston2019-06-031-0/+1
|/ / / / / /
* | | | | | Merge pull request #5307 from ↵Richard van der Hoff2019-06-031-0/+1
|\ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | matrix-org/rav/server_keys/07-fix-notary-cache-poison Stop overwriting server keys with other keys
| * | | | | | Stop overwriting server keys with other keysRichard van der Hoff2019-05-311-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Fix a bug where we would discard a key result which the origin server is no longer returning. Fixes #5305.
* | | | | | | Unify v1 and v2 REST client APIs (#5226)Amber Brown2019-06-031-0/+1
| |_|/ / / / |/| | | | |
* | | | | | Merge pull request #5309 from matrix-org/rav/limit_displayname_lengthRichard van der Hoff2019-06-011-0/+1
|\ \ \ \ \ \ | | | | | | | | | | | | | | Limit displaynames and avatar URLs
| * | | | | | Limit displaynames and avatar URLsRichard van der Hoff2019-06-011-0/+1
| | |_|_|_|/ | |/| | | | | | | | | | | | | | | | | | | | | | | | | | | | These end up in join events everywhere, so let's limit them. Fixes #5079
* | | | | | Merge pull request #5299 from matrix-org/rav/server_keys/05-rewrite-gsvk-againRichard van der Hoff2019-05-311-0/+1
|\ \ \ \ \ \ | | | | | | | | | | | | | | Rewrite get_server_verify_keys, again.
| * \ \ \ \ \ Merge remote-tracking branch 'origin/develop' into ↵Richard van der Hoff2019-05-315-0/+5
| |\ \ \ \ \ \ | | | |/ / / / | | |/| | | | | | | | | | | rav/server_keys/05-rewrite-gsvk-again
| * | | | | | Rewrite get_server_verify_keys, again.Richard van der Hoff2019-05-301-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Attempt to simplify the logic in get_server_verify_keys by splitting it into two methods.
* | | | | | | Merge pull request #5276 from matrix-org/babolivier/account_validity_job_deltaErik Johnston2019-05-311-0/+1
|\ \ \ \ \ \ \ | |_|/ / / / / |/| | | | | | Allow configuring a range for the account validity startup job
| * | | | | | Config and changelogBrendan Abolivier2019-05-281-0/+1
| | |_|/ / / | |/| | | |
* | | | | | Merge pull request #5300 from ↵Richard van der Hoff2019-05-311-0/+1
|\ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | matrix-org/rav/server_keys/06-fix-serverkeys-handling Remove some pointless exception handling
| * | | | | | Remove some pointless exception handlingRichard van der Hoff2019-05-301-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The verify_request deferred already returns a suitable SynapseError, so I don't really know what we expect to achieve by doing more wrapping, other than log spam. Fixes #4278.
* | | | | | | Merge pull request #5296 from ↵Richard van der Hoff2019-05-311-0/+1
|\| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | matrix-org/rav/server_keys/04-use-attrs-for_verify-request use attr.s for VerifyKeyRequest
| * | | | | | use attr.s for VerifyKeyRequestRichard van der Hoff2019-05-301-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | because namedtuple is awful
* | | | | | | Merge pull request #5293 from Kagamihime/messages-federation-formatErik Johnston2019-05-311-0/+1
|\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | Fix ignored filter field in `/messages` endpoint
| * | | | | | | Add changelogEisha Chen-yen-su2019-05-301-0/+1
| | |_|/ / / / | |/| | | | |
* | | | | | | Merge pull request #5294 from matrix-org/erikj/speed_up_room_statsErik Johnston2019-05-311-0/+1
|\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | Speed up room stats background update
| * | | | | | | NewsfileErik Johnston2019-05-311-0/+1
| | | | | | | |
* | | | | | | | Clarify that the admin change password endpoint logs them out (#5303)Travis Ralston2019-05-311-0/+1
| |/ / / / / / |/| | | | | |
* | | | | | | NewsfileErik Johnston2019-05-301-0/+1
|/ / / / / /
* | | | | | Merge pull request #5278 from matrix-org/erikj/cleanup_bad_extremitiesErik Johnston2019-05-301-0/+1
|\ \ \ \ \ \ | | | | | | | | | | | | | | Add DB bg update to cleanup extremities.
| * | | | | | NewsfileErik Johnston2019-05-291-0/+1
| | | | | | |
* | | | | | | Merge pull request #5256 from aaronraimist/logout-correct-errorErik Johnston2019-05-301-0/+1
|\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | Show correct error when logging out and access token is missing
| * | | | | | | Add changelogAaron Raimist2019-05-251-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Signed-off-by: Aaron Raimist <aaron@raim.ist>
* | | | | | | | Remove spurious debug from MatrixFederationHttpClient.get_json (#5287) v0.99.5.1.dev0Richard van der Hoff2019-05-291-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | This is just unhelpful spam
* | | | | | | | Improve logging for logcontext leaks. (#5288)Richard van der Hoff2019-05-291-0/+1
| | | | | | | |
* | | | | | | | Merge pull request #5283 from aaronraimist/captcha-docsErik Johnston2019-05-291-0/+1
|\ \ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | Specify the type of reCAPTCHA key to use (#5013)
| * | | | | | | | Add changelogAaron Raimist2019-05-281-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Signed-off-by: Aaron Raimist <aaron@raim.ist>
* | | | | | | | | Implement the SHHS complexity API (#5216)Amber Brown2019-05-301-0/+1
| | | | | | | | |
* | | | | | | | | Serve CAS login over r0 (#5286)Amber Brown2019-05-301-0/+1
| | | | | | | | |
* | | | | | | | | Fix error when downloading thumbnail with width/height param missing (#5258)Aaron Raimist2019-05-291-0/+1
| |_|/ / / / / / |/| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Fix error when downloading thumbnail with width/height param missing Fixes #2748 Signed-off-by: Aaron Raimist <aaron@raim.ist>
* | | | | | | | Correctly filter out extremities with soft failed prevs (#5274)Erik Johnston2019-05-291-0/+1
| |_|/ / / / / |/| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | When we receive a soft failed event we, correctly, *do not* update the forward extremity table with the event. However, if we later receive an event that references the soft failed event we then need to remove the soft failed events prev events from the forward extremities table, otherwise we just build up forward extremities. Fixes #5269
* | | | | | | Fix dropped logcontexts during high outbound traffic. (#5277)Richard van der Hoff2019-05-291-0/+1
| | | | | | | | | | | | | | | | | | | | | Fixes #5271.
* | | | | | | Rename 5282.misc to 5282.docAmber Brown2019-05-291-0/+0
| | | | | | |
* | | | | | | Add changelogAaron Raimist2019-05-281-0/+1
|/ / / / / / | | | | | | | | | | | | | | | | | | Signed-off-by: Aaron Raimist <aaron@raim.ist>
* | | | | | Merge pull request #5251 from matrix-org/rav/server_keys/01-check_sigRichard van der Hoff2019-05-281-0/+1
|\ \ \ \ \ \ | | | | | | | | | | | | | | Ensure that server_keys fetched via a notary server are correctly signed.
| * | | | | | changelogRichard van der Hoff2019-05-241-0/+1
| | | | | | |
* | | | | | | Fix "db txn 'update_presence' from sentinel context" log messages (#5275)Richard van der Hoff2019-05-281-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Fixes #4414.
* | | | | | | Merge pull request #5268 from matrix-org/babolivier/account_validity_fix_schemaBrendan Abolivier2019-05-281-0/+1
|\ \ \ \ \ \ \ | | |_|/ / / / | |/| | | | | Fix schema update for account validity
| * | | | | | ChangelogBrendan Abolivier2019-05-281-0/+1
| | | | | | |
* | | | | | | Merge pull request #5260 from matrix-org/travis/fix-room-bg-taskErik Johnston2019-05-251-0/+1
|\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | Fix logging for room stats background update
| * | | | | | | ChangelogTravis Ralston2019-05-251-0/+1
| | | | | | | |
* | | | | | | | Merge pull request #5257 from aaronraimist/fix-error-code-publicroomsErik Johnston2019-05-251-0/+1
|\ \ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | Fix error code for invalid parameter
| * | | | | | | | Add changelogAaron Raimist2019-05-241-0/+1
| | |_|_|/ / / / | |/| | | | | | | | | | | | | | | | | | | | | | Signed-off-by: Aaron Raimist <aaron@raim.ist>
* / | | | | | | Simplification to Keyring.wait_for_previous_lookups. (#5250)Richard van der Hoff2019-05-241-0/+1
|/ / / / / / / | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The list of server names was redundant, since it was equivalent to the keys on the server_to_deferred map. This reduces the number of large lists being passed around, and has the benefit of deduplicating the entries in `wait_on`.
* | | | | | | Fix appservice timestamp massaging (#5233)Tulir Asokan2019-05-241-0/+1
| | | | | | | | | | | | | | | | | | | | | Signed-off-by: Tulir Asokan <tulir@maunium.net>
* | | | | | | Add missing blank line in config (#5249)Richard van der Hoff2019-05-241-0/+1
| | | | | | |
* | | | | | | Merge pull request #5220 from matrix-org/erikj/dont_bundle_live_eventsErik Johnston2019-05-241-0/+1
|\ \ \ \ \ \ \ | |/ / / / / / |/| | | | | | Don't bundle aggregations with events in /sync or /events or state queries
| * | | | | | NewsfileErik Johnston2019-05-211-0/+1
| | |_|_|_|/ | |/| | | |
* | | | | | Merge pull request #5244 from matrix-org/rav/server_keys/00-factor-out-fetchersErik Johnston2019-05-231-0/+1
|\ \ \ \ \ \ | | |_|/ / / | |/| | | | Factor out KeyFetchers from KeyRing
| * | | | | Factor out KeyFetchers from KeyRingRichard van der Hoff2019-05-231-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Rather than have three methods which have to have the same interface, factor out a separate interface which is provided by three implementations. I find it easier to grok the code this way.
* | | | | | Add config option for setting homeserver's default room version (#5223)Andrew Morgan2019-05-231-0/+1
|/ / / / / | | | | | | | | | | | | | | | | | | | | Replaces DEFAULT_ROOM_VERSION constant with a method that first checks the config, then returns a hardcoded value if the option is not present. That hardcoded value is now located in the server.py config file.
* | | | | Store key validity time in the storage layerRichard van der Hoff2019-05-231-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This is a first step to checking that the key is valid at the required moment. The idea here is that, rather than passing VerifyKey objects in and out of the storage layer, we instead pass FetchKeyResult objects, which simply wrap the VerifyKey and add a valid_until_ts field.
* | | | | Simplify process_v2_response (#5236)Richard van der Hoff2019-05-231-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Pass time_added_ms into process_v2_response * Simplify process_v2_response We can merge old_verify_keys into verify_keys, and reduce the number of dicts flying around.
* | | | | Remove unused VerifyKey.expired and .time_added fields (#5235)Richard van der Hoff2019-05-231-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | These were never used, and poking arbitary data into objects from other packages seems confusing at best.
* | | | | Rewrite store_server_verify_key to store several keys at once (#5234)Richard van der Hoff2019-05-231-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | Storing server keys hammered the database a bit. This replaces the implementation which stored a single key, with one which can do many updates at once.
* | | | | Simplifications and comments in do_auth (#5227)Richard van der Hoff2019-05-231-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | I was staring at this function trying to figure out wtf it was actually doing. This is (hopefully) a non-functional refactor which makes it a bit clearer.
* | | | | Run black on synapse.crypto.keyring (#5232)Richard van der Hoff2019-05-221-0/+1
| | | | |
* | | | | remove urllib3 pin (#5230)Marcus Hoffmann2019-05-221-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | requests 2.22.0 as been released supporting urllib3 1.25.2 Signed-off-by: Marcus Hoffmann <bubu@bubu1.eu>
* | | | | Neilj/ensure get profileinfo available in client reader slaved store (#5213)Neil Johnson2019-05-221-0/+1
| | | | | | | | | | | | | | | * expose SlavedProfileStore to ClientReaderSlavedStore
* | | | | Merge branch 'master' into developRichard van der Hoff2019-05-2226-26/+0
|\ \ \ \ \ | | |_|/ / | |/| | |
| * | | | update changelog v0.99.5rc1Richard van der Hoff2019-05-212-2/+0
| | | | |
| * | | | Merge commit 'f4c80d70f' into release-v0.99.5Richard van der Hoff2019-05-212-0/+2
| |\ \ \ \
| * | | | | 0.99.5rc1Richard van der Hoff2019-05-2124-24/+0
| | | | | |
* | | | | | Room Statistics (#4338)Amber Brown2019-05-211-0/+1
| |/ / / / |/| | | |
* | | | | Merge pull request #5203 from matrix-org/erikj/aggregate_by_senderErik Johnston2019-05-211-0/+1
|\ \ \ \ \ | | | | | | | | | | | | Only count aggregations from distinct senders
| * | | | | NewsfileErik Johnston2019-05-211-0/+1
| | | | | |
* | | | | | Merge pull request #5212 from matrix-org/erikj/deny_multiple_reactionsErik Johnston2019-05-211-0/+1
|\ \ \ \ \ \ | |_|/ / / / |/| | | | | Block attempts to annotate the same event twice
| * | | | | NewsfileErik Johnston2019-05-201-0/+1
| | | | | |
* | | | | | Introduce room v4 which updates event ID format. (#5217)Richard van der Hoff2019-05-212-1/+2
| | | | | | | | | | | | | | | | | | Implements https://github.com/matrix-org/matrix-doc/pull/2002.
* | | | | | Exclude soft-failed events from fwd-extremity candidates. (#5146)Richard van der Hoff2019-05-211-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | When considering the candidates to be forward-extremities, we must exclude soft failures. Hopefully fixes #5090.
* | | | | | Pin eliot to <1.8 on python 3.5.2 (#5218)Richard van der Hoff2019-05-211-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Pin eliot to <1.8 on python 3.5.2 Fixes https://github.com/matrix-org/synapse/issues/5199 * Add support for 'markers' to python_dependencies * tell xargs not to strip quotes
* | | | | | Merge pull request #5204 from ↵Brendan Abolivier2019-05-211-0/+1
|\ \ \ \ \ \ | |_|_|/ / / |/| | | / / | | |_|/ / | |/| | | matrix-org/babolivier/account_validity_expiration_date Add startup background job for account validity
| * | | | ChangelogBrendan Abolivier2019-05-171-0/+1
| | | | |
* | | | | Fix error handling for rooms whose versions are unknown. (#5219)Richard van der Hoff2019-05-211-0/+1
| |/ / / |/| | | | | | | | | | | | | | | | | | | | | | | If we remove support for a particular room version, we should behave more gracefully. This should make client requests fail with a 400 rather than a 500, and will ignore individiual PDUs in a federation transaction, rather than the whole transaction.
* | | | Revert "expose SlavedProfileStore to ClientReaderSlavedStore (#5200)"Richard van der Hoff2019-05-201-1/+0
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This reverts commit ce5bcefc609db40740c692bd53a1ef84ab675e8c. This caused: ``` Traceback (most recent call last): File "/usr/local/lib/python3.7/runpy.py", line 193, in _run_module_as_main "__main__", mod_spec) File "/usr/local/lib/python3.7/runpy.py", line 85, in _run_code exec(code, run_globals) File "/home/synapse/src/synapse/app/client_reader.py", line 32, in <module> from synapse.replication.slave.storage import SlavedProfileStore ImportError: cannot import name 'SlavedProfileStore' from 'synapse.replication.slave.storage' (/home/synapse/src/synapse/replication/slave/storage/__init__.py) error starting synapse.app.client_reader('/home/synapse/config/workers/client_reader.yaml') (exit code: 1); see above for logs ```
* | | | Add a test room version which updates event ID format (#5210)Richard van der Hoff2019-05-201-0/+1
| | | | | | | | | | | | Implements MSC1884
* | | | NewsfileErik Johnston2019-05-201-0/+1
| | | |
* | | | Merge pull request #5209 from matrix-org/erikj/reactions_baseErik Johnston2019-05-201-0/+1
|\ \ \ \ | | | | | | | | | | Land basic reaction and edit support.
| * | | | NewsfileErik Johnston2019-05-202-1/+1
| | |/ / | |/| |
| * | | NewsfileErik Johnston2019-05-151-0/+1
| | | |
* | | | Limit UserIds to a length that fits in a state key (#5198)ReidAnderson2019-05-201-0/+1
| | | |
* | | | fix mapping of return values for get_or_register_3pid_guest (#5177)bytepoets-blo2019-05-171-0/+1
| | | | | | | | | | | | * fix mapping of return values for get_or_register_3pid_guest
* | | | Merge pull request #5191 from matrix-org/erikj/refactor_pagination_boundsErik Johnston2019-05-171-0/+1
|\| | | | | | | | | | | Make generating SQL bounds for pagination generic
| * | | NewsfileErik Johnston2019-05-151-0/+1
| | | |
* | | | expose SlavedProfileStore to ClientReaderSlavedStore (#5200)Neil Johnson2019-05-171-0/+1
| | | | | | | | | | | | * expose SlavedProfileStore to ClientReaderSlavedStore
* | | | Merge remote-tracking branch 'origin/master' into developRichard van der Hoff2019-05-171-0/+1
|\ \ \ \
| * | | | Stop telling people to install the optional dependencies. (#5197)Richard van der Hoff2019-05-171-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Stop telling people to install the optional dependencies. They're optional. Also update the postgres docs a bit for clarity(?)
* | | | | Merge pull request #5196 from matrix-org/babolivier/per_room_profilesBrendan Abolivier2019-05-171-0/+1
|\ \ \ \ \ | | |_|/ / | |/| | | Add an option to disable per-room profiles
| * | | | Changelog + sample configBrendan Abolivier2019-05-161-0/+1
| | | | |
* | | | | Fix image orientation when generating thumbnail (#5039)PauRE2019-05-161-0/+1
| | | | |
* | | | | Merge pull request #5174 from matrix-org/dbkr/add_dummy_flow_to_recaptcha_onlyDavid Baker2019-05-161-0/+1
|\ \ \ \ \ | |/ / / / |/| | | | Re-order registration stages to do msisdn & email auth last
| * | | | Merge remote-tracking branch 'origin/develop' into ↵David Baker2019-05-131-0/+1
| |\ \ \ \ | | | | | | | | | | | | | | | | | | dbkr/add_dummy_flow_to_recaptcha_only
| * \ \ \ \ Merge remote-tracking branch 'origin/develop' into ↵David Baker2019-05-131-0/+1
| |\ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | dbkr/add_dummy_flow_to_recaptcha_only
| * | | | | | Update changelogDavid Baker2019-05-101-1/+1
| | | | | | |
| * | | | | | Thanks, automated grammar pedantry.David Baker2019-05-101-1/+1
| | | | | | |
| * | | | | | Add changelog entryDavid Baker2019-05-101-0/+1
| | | | | | |
* | | | | | | Make /sync attempt to return device updates for both joined and invited ↵Matthew Hodgson2019-05-161-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | users (#3484)
* | | | | | | Merge pull request #5187 from ↵David Baker2019-05-161-0/+1
|\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | matrix-org/dbkr/only_check_threepid_not_in_use_if_actually_registering Only check 3pids not in use when registering
| * | | | | | | Make newsfile clearerDavid Baker2019-05-151-1/+1
| | | | | | | |
| * | | | | | | Have I got newsfile for youDavid Baker2019-05-141-0/+1
| | | | | | | |
* | | | | | | | Make all the rate limiting options more consistent (#5181)Amber Brown2019-05-151-0/+1
| | | | | | | |
* | | | | | | | Drop support for v2_alpha API prefix (#5190)Richard van der Hoff2019-05-151-0/+1
| |_|_|_|_|/ / |/| | | | | |
* | | | | | | Merge pull request #5183 from matrix-org/erikj/async_serialize_eventErik Johnston2019-05-151-0/+1
|\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | Allow client event serialization to be async
| * | | | | | | NewsfileErik Johnston2019-05-141-0/+1
| |/ / / / / /
* | | | | | | Merge pull request #5184 from matrix-org/erikj/expose_get_events_as_arrayErik Johnston2019-05-151-0/+1
|\ \ \ \ \ \ \ | | | | | | | | | | | | | | | | Expose DataStore._get_events as get_events_as_list
| * | | | | | | NewsfileErik Johnston2019-05-141-0/+1
| |/ / / / / /
* / / / / / / NewsfileErik Johnston2019-05-141-0/+1
|/ / / / / /
* | | | | | Migrate all tests to use the dict-based config format instead of hanging ↵Amber Brown2019-05-131-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | items off HomeserverConfig (#5171)
* | | | | | Add ability to blacklist ip ranges for federation traffic (#5043)Andrew Morgan2019-05-131-0/+1
| |_|_|/ / |/| | | |
* | | | | 0.99.4rc1 v0.99.4rc1Brendan Abolivier2019-05-1373-77/+0
| |_|/ / |/| | |
* | | | Fix changelogBrendan Abolivier2019-05-131-0/+0
| | | |
* | | | ChangelogBrendan Abolivier2019-05-131-0/+1
| |/ / |/| |
* | | URL preview blacklisting fixes (#5155)Andrew Morgan2019-05-101-0/+1
|/ / | | | | Prevents a SynapseError being raised inside of a IResolutionReceiver and instead opts to just return 0 results. This thus means that we have to lump a failed lookup and a blacklisted lookup together with the same error message, but the substitute should be generic enough to cover both cases.
* | Set syslog identifiers in systemd units (#5023)Christoph Müller2019-05-101-0/+3
| |
* | Run Black on the tests again (#5170)Amber Brown2019-05-101-0/+1
| |
* | Limit the number of EDUs in transactions to 100 as expected by receiver (#5138)Quentin Dufour2019-05-091-0/+1
| | | | | | Fixes #3951.
* | Fix bogus imports in tests (#5154)Brendan Abolivier2019-05-081-0/+1
| |
* | add options to require an access_token to GET /profile and /publicRooms on ↵Matthew Hodgson2019-05-081-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | CS API (#5083) This commit adds two config options: * `restrict_public_rooms_to_local_users` Requires auth to fetch the public rooms directory through the CS API and disables fetching it through the federation API. * `require_auth_for_profile_requests` When set to `true`, requires that requests to `/profile` over the CS API are authenticated, and only returns the user's profile if the requester shares a room with the profile's owner, as per MSC1301. MSC1301 also specifies a behaviour for federation (only returning the profile if the server asking for it shares a room with the profile's owner), but that's currently really non-trivial to do in a not too expensive way. Next step is writing down a MSC that allows a HS to specify which user sent the profile query. In this implementation, Synapse won't send a profile query over federation if it doesn't believe it already shares a room with the profile's owner, though. Groups have been intentionally omitted from this commit.
* | Merge pull request #5037 from matrix-org/erikj/limit_inflight_dnsErik Johnston2019-05-081-0/+1
|\ \ | | | | | | Limit in flight DNS requests
| * | NewsfileErik Johnston2019-04-091-0/+1
| | |
* | | Do checks on aliases for incoming m.room.aliases events (#5128)Brendan Abolivier2019-05-081-0/+1
| | | | | | | | | | | | | | | Follow-up to #5124 Also added a bunch of checks to make sure everything (both the stuff added on #5124 and this PR) works as intended.
* | | Merge pull request #5104 from matrix-org/erikj/ratelimit_3pid_inviteErik Johnston2019-05-071-0/+1
|\ \ \ | | | | | | | | Ratelimit 3pid invites
| * \ \ Merge branch 'develop' of github.com:matrix-org/synapse into ↵Erik Johnston2019-04-2625-0/+25
| |\ \ \ | | | | | | | | | | | | | | | erikj/ratelimit_3pid_invite
| * | | | NewsfileErik Johnston2019-04-261-0/+1
| | | | |
* | | | | Remove the requirement to authenticate for /admin/server_version. (#5122)Richard van der Hoff2019-05-071-0/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This endpoint isn't much use for its intended purpose if you first need to get yourself an admin's auth token. I've restricted it to the `/_synapse/admin` path to make it a bit easier to lock down for those concerned about exposing this information. I don't imagine anyone is using it in anger currently.
* | | | | Fix spelling in server notices admin API docs (#5142)Travis Ralston2019-05-061-0/+1
| | | | |