Parcourir la source

Clear login token once apppassword is generated

Fixes #7697

When using the new login flow a token will be generated since we login.
However after that we generate yet another token to return (as we
should).

However we should kill the current session token as we are done with it.
And will never use it again.

Signed-off-by: Roeland Jago Douma <roeland@famdouma.nl>
tags/v13.0.0beta4
Roeland Jago Douma il y a 6 ans
Parent
révision
82f03e1314
Aucun compte lié à l'adresse e-mail de l'auteur
1 fichiers modifiés avec 3 ajouts et 0 suppressions
  1. 3
    0
      core/Controller/ClientFlowLoginController.php

+ 3
- 0
core/Controller/ClientFlowLoginController.php Voir le fichier

@@ -319,6 +319,9 @@ class ClientFlowLoginController extends Controller {
$redirectUri = 'nc://login/server:' . $serverPath . '&user:' . urlencode($loginName) . '&password:' . urlencode($token);
}

// Clear the token from the login here
$this->tokenProvider->invalidateToken($sessionId);

return new Http\RedirectResponse($redirectUri);
}
}

Chargement…
Annuler
Enregistrer