Evan Prodromou be3a44651c implement rememberme functionality
Added a checkbox on login or register to remember the current user. If
the login is successful, this sets a cookie with a random code (saved
in the DB). If they come back, and they aren't logged in "normally",
we check to see if they have a rememberme cookie. If so, we log them
in.

However, they can't change settings -- cookie theft is too prevalent.
So we mark a session as having a "real" (password or OpenID) login, or
not. In settings pages, we check to see if the login is "real", and if
not, we redirect to the login page.

darcs-hash:20080624025234-34904-ad20001bf35bf41fcb63a0c357fd929aacc55fdb.gz
2008-06-23 22:52:34 -04:00
..
2008-06-10 11:09:57 -04:00
2008-06-23 22:52:34 -04:00
2008-06-23 22:52:34 -04:00
2008-06-19 09:47:10 -04:00
2008-06-18 11:11:03 -04:00
2008-05-21 14:56:02 -04:00
2008-06-20 03:26:32 -04:00
2008-06-02 14:54:52 -04:00