X-Git-Url: https://ruin.nu/git/?a=blobdiff_plain;f=lib%2FNDWeb.pm;h=55ffdac60d6d986d856ac494a57b10f63dd071eb;hb=c7b78ab935a24b440a1f1465e667fc46183b3805;hp=81a78fd6ff4e466c841fadbc3c91c0ffcf84a234;hpb=0a35b86f2577bc9e2efcabe818a56a9ec46bb0bd;p=ndwebbie.git diff --git a/lib/NDWeb.pm b/lib/NDWeb.pm index 81a78fd..55ffdac 100644 --- a/lib/NDWeb.pm +++ b/lib/NDWeb.pm @@ -66,6 +66,7 @@ __PACKAGE__->config(session => { directory_umask => 077, expires => 300, verify_address => 1, + cookie_secure => 2, }); __PACKAGE__->config( "Plugin::Cache" => { backend => { @@ -88,12 +89,21 @@ __PACKAGE__->config( encoding => 'UTF-8'); __PACKAGE__->setup(); __PACKAGE__->deny_access_unless('/users',[qw/admin_users/]); -__PACKAGE__->deny_access_unless('/users/sms',[qw/users_sms/]); +__PACKAGE__->allow_access_if('/users/sms',[qw/users_sms/]); +__PACKAGE__->allow_access_if('/users/postsms',[qw/users_sms/]); __PACKAGE__->deny_access_unless('/alliances',[qw/alliances/]); __PACKAGE__->deny_access_unless('/alliances/resources',[qw/alliances_resources/]); __PACKAGE__->deny_access_unless('/graphs/alliancevsintel',[qw/graphs_intel/]); __PACKAGE__->deny_access_unless('/graphs/avgalliancevsintel',[qw/graphs_intel/]); __PACKAGE__->deny_access_unless('/members',[qw/members/]); +__PACKAGE__->allow_access_if('/members/postowncoords',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/launchConfirmation',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/postconfirmation',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/findDuplicateFleet',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/addAttackFleet',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/addDefendFleet',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/addReturnFleet',[qw/attack_menu/]); +__PACKAGE__->allow_access_if('/members/matchShips',[qw/attack_menu/]); __PACKAGE__->deny_access_unless('/members/defenders',[qw/members_defenders/]); __PACKAGE__->deny_access_unless('/covop',[qw/covop/]); __PACKAGE__->deny_access_unless('/calls',[qw/calls_edit/]);