X-Git-Url: https://ruin.nu/git/?a=blobdiff_plain;f=lib%2FNDWeb.pm;h=283b56ac25ac40cc6bce767c4404ba14dcdf6cb9;hb=816fe5105ca7111b535a2729094e65a2ad83718a;hp=a63eeaabf24d981f86f1b8d37dbc01cd14d35ccc;hpb=d13d06b986bc3ae067882f23b6ab8b35cf1a8262;p=ndwebbie.git diff --git a/lib/NDWeb.pm b/lib/NDWeb.pm index a63eeaa..283b56a 100644 --- a/lib/NDWeb.pm +++ b/lib/NDWeb.pm @@ -66,6 +66,7 @@ __PACKAGE__->config(session => { directory_umask => 077, expires => 300, verify_address => 1, + cookie_secure => 2, }); __PACKAGE__->config( "Plugin::Cache" => { backend => { @@ -96,6 +97,13 @@ __PACKAGE__->deny_access_unless('/graphs/alliancevsintel',[qw/graphs_intel/]); __PACKAGE__->deny_access_unless('/graphs/avgalliancevsintel',[qw/graphs_intel/]); __PACKAGE__->deny_access_unless('/members',[qw/members/]); __PACKAGE__->allow_access_if('/members/postowncoords',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/launchConfirmation',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/postconfirmation',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/findDuplicateFleet',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/addAttackFleet',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/addDefendFleet',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/addReturnFleet',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/matchShips',[qw/attack_menu/]); __PACKAGE__->deny_access_unless('/members/defenders',[qw/members_defenders/]); __PACKAGE__->deny_access_unless('/covop',[qw/covop/]); __PACKAGE__->deny_access_unless('/calls',[qw/calls_edit/]); @@ -116,6 +124,7 @@ __PACKAGE__->deny_access_unless('/intel/members',[qw/intel_members/]); __PACKAGE__->deny_access_unless('/intel/member',[qw/intel_member/]); __PACKAGE__->deny_access_unless('/intel/naps',[qw/intel_naps/]); __PACKAGE__->deny_access_unless('/jsrpc',[qw//]); +__PACKAGE__->allow_access_if('/jsrpc/addscans',1); __PACKAGE__->allow_access_if('/jsrpc/end',1); __PACKAGE__->deny_access_unless('/forum/allUnread',[qw//]); __PACKAGE__->deny_access_unless('/forum/privmsg',[qw//]);