anonymousland-synapse/synapse
Richard van der Hoff 88d7182ada
Improve startup checks for insecure notary configs (#5392)
It's not really a problem to trust notary responses signed by the old key so
long as we are also doing TLS validation.

This commit adds a check to the config parsing code at startup to check that
we do not have the insecure matrix.org key without tls validation, and refuses
to start without it.

This allows us to remove the rather alarming-looking warning which happens at
runtime.
2019-06-10 10:33:00 +01:00
..
_scripts
api Add ability to perform password reset via email without trusting the identity server (#5377) 2019-06-06 17:34:07 +01:00
app Add ability to perform password reset via email without trusting the identity server (#5377) 2019-06-06 17:34:07 +01:00
appservice
config Improve startup checks for insecure notary configs (#5392) 2019-06-10 10:33:00 +01:00
crypto Improve startup checks for insecure notary configs (#5392) 2019-06-10 10:33:00 +01:00
events
federation Prevent multiple device list updates from breaking a batch send (#5156) 2019-06-06 23:54:00 +01:00
groups Associate a request_name with each verify request, for logging 2019-06-05 10:46:26 +01:00
handlers Add ability to perform password reset via email without trusting the identity server (#5377) 2019-06-06 17:34:07 +01:00
http
metrics
module_api
push Add ability to perform password reset via email without trusting the identity server (#5377) 2019-06-06 17:34:07 +01:00
replication
res/templates Add ability to perform password reset via email without trusting the identity server (#5377) 2019-06-06 17:34:07 +01:00
rest Add ability to perform password reset via email without trusting the identity server (#5377) 2019-06-06 17:34:07 +01:00
server_notices
state
static
storage Prevent multiple device list updates from breaking a batch send (#5156) 2019-06-06 23:54:00 +01:00
streams
util Call RetryLimiter correctly (#5340) 2019-06-04 22:02:53 +01:00
__init__.py 1.0.0rc1 2019-06-07 10:29:32 +01:00
event_auth.py
notifier.py
python_dependencies.py Add ability to perform password reset via email without trusting the identity server (#5377) 2019-06-06 17:34:07 +01:00
secrets.py
server.py
server.pyi
types.py
visibility.py