Chris Palmer and GitHub
bdfaef4879
safeweb: allow object-src: self in CSP ( #11782 )
...
This change is safe (self is still safe, by
definition), and makes the code match the comment.
Updates #cleanup
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2024-04-18 10:39:11 -07:00
Chris Palmer and GitHub
88a7767492
safeweb: set SameSite=Strict, with an option for Lax ( #11781 )
...
Fixes #11780
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2024-04-17 16:20:14 -07:00
Chris Palmer and GitHub
13853e7f29
tsweb: add more test cases for TestCleanRedirectURL ( #11331 )
...
Updates #cleanup
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2024-03-04 17:13:36 -08:00
Chris Palmer and GitHub
a633a30711
cmd/hello: link to the Hello KB article ( #11022 )
...
Fixes https://github.com/tailscale/corp/issues/17104
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2024-02-02 15:48:31 -08:00
Chris Palmer and GitHub
9744ad47e3
cmd/hello: avoid deprecated apis ( #10957 )
...
Updates #cleanup
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2024-01-29 14:18:49 -08:00
Chris Palmer and GitHub
1f1ab74250
tsweb: use object-src instead of plugin-types ( #10719 )
...
plugin-types is deprecated, and setting object-src: 'none' is best
practice. This should result in no functional change.
Fixes #10718
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2024-01-03 09:00:57 -08:00
Chris Palmer and GitHub
5deeb56b95
cmd/tailscale/cli: document usage more clearly ( #10681 )
...
The IP argument is required; only the port is optional.
Updates #10605
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2024-01-02 17:43:08 -08:00
Chris Palmer and GitHub
b62a3fc895
client/web: keep redirects on-site ( #10525 )
...
Ensure we don't create Location: header URLs that have leading //, which is a
schema-less reference to arbitrary 3rd-party sites. That is, //example.com/foo
redirects off-site, while /example.com/foo is an on-site path URL.
Fixes tailscale/corp#16268
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-12-13 14:28:50 -08:00
Chris Palmer and GitHub
3a9f5c02bf
util/set: make Clone a method ( #10044 )
...
Updates #cleanup
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-11-01 10:20:38 -07:00
Chris Palmer and GitHub
00375f56ea
util/set: add some more Set operations ( #10022 )
...
Updates #cleanup
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-10-31 17:15:40 -07:00
Chris Palmer and GitHub
f66dc8dc0a
clientupdate: check for privileges earlier ( #9964 )
...
Fixes #9963
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-10-27 10:43:50 -07:00
Chris Palmer and GitHub
8833dc51f1
util/set: add some useful utility functions for Set ( #9535 )
...
Also give each type of set its own file.
Updates #cleanup
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-09-29 14:31:02 -07:00
Chris Palmer and GitHub
ac7b4d62fd
cmd/tailscale/cli: make update visible in list ( #8662 )
...
This also makes "HIDDEN: " work (requires the custom UsageFunc).
Updates #6995
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-09-06 10:28:04 -07:00
Chris Palmer and GitHub
ce1e02096a
ipn/ipnlocal: support most Linuxes in handleC2NUpdate ( #9114 )
...
* ipn/ipnlocal: support most Linuxes in handleC2NUpdate
Updates #6995
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-08-30 14:50:03 -07:00
Chris Palmer and GitHub
346dc5f37e
ipn/ipnlocal: move C2NUpdateResponse to c2ntypes.go ( #9112 )
...
Updates #cleanup
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-08-28 11:30:55 -07:00
Chris Palmer and GitHub
37c0b9be63
clientupdate: return NOTREACHED for macsys ( #8898 )
...
* clientupdate: return NOTREACHED for macsys
The work is done in Swift; this is now a documentation placeholder.
Updates #6995
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-08-16 14:01:10 -07:00
Chris Palmer and GitHub
32d486e2bf
cmd/tailscale/cli: ensure custom UsageFunc is always set ( #8665 )
...
Updates #6995
Signed-off-by: Chris Palmer <cpalmer@tailscale.com >
2023-07-20 17:43:39 -07:00
Chris Palmer and GitHub
3c53bedbbf
cmd/tailscale/cli: limit Darwin-only option to Darwin ( #8657 )
2023-07-20 11:19:09 -07:00
Chris Palmer and GitHub
3f6b0d8c84
cmd/tailscale/cli: make tailscale update query softwareupdate ( #8641 )
...
* cmd/tailscale/cli: make `tailscale update` query `softwareupdate`
Even on macOS when Tailscale was installed via the App Store, we can check for
and even install new versions if people ask explicitly. Also, warn if App Store
AutoUpdate is not turned on.
Updates #6995
2023-07-19 17:06:16 -07:00