summaryrefslogtreecommitdiffstats
path: root/lib
diff options
context:
space:
mode:
authorRoeland Jago Douma <roeland@famdouma.nl>2018-09-07 10:01:31 +0200
committerRoeland Jago Douma <roeland@famdouma.nl>2018-09-07 10:02:56 +0200
commitc83ac2472da15d85ad32c8ca72cb3e65b86a4bdb (patch)
tree88ce6cbc76b09b54a338fbf80faf52fdfa0436e8 /lib
parent1b35dc1cbafe318933ba0c11212a9c3c6b787700 (diff)
downloadnextcloud-server-c83ac2472da15d85ad32c8ca72cb3e65b86a4bdb.tar.gz
nextcloud-server-c83ac2472da15d85ad32c8ca72cb3e65b86a4bdb.zip
Expire tokens hardening
Just to be sure that the field is also not 0 Signed-off-by: Roeland Jago Douma <roeland@famdouma.nl>
Diffstat (limited to 'lib')
-rw-r--r--lib/private/Authentication/Token/PublicKeyTokenProvider.php2
1 files changed, 1 insertions, 1 deletions
diff --git a/lib/private/Authentication/Token/PublicKeyTokenProvider.php b/lib/private/Authentication/Token/PublicKeyTokenProvider.php
index f6a6fc3455f..73bd7a711dc 100644
--- a/lib/private/Authentication/Token/PublicKeyTokenProvider.php
+++ b/lib/private/Authentication/Token/PublicKeyTokenProvider.php
@@ -80,7 +80,7 @@ class PublicKeyTokenProvider implements IProvider {
throw new InvalidTokenException();
}
- if ($token->getExpires() !== null && $token->getExpires() < $this->time->getTime()) {
+ if ($token->getExpires() !== null && $token->getExpires() !== 0 && $token->getExpires() < $this->time->getTime()) {
throw new ExpiredTokenException($token);
}