summaryrefslogtreecommitdiffstats
path: root/settings
diff options
context:
space:
mode:
authorMorris Jobke <hey@morrisjobke.de>2016-10-06 10:24:02 +0200
committerMorris Jobke <hey@morrisjobke.de>2016-10-06 10:55:33 +0200
commitc84dc6aa1c523e8125ff6194ae944a465ebcd78b (patch)
treeffde3bcfb0dcec19ad82815ffe4c77b9f9e206a8 /settings
parentea9b1cc3409f39c545505bbcddb7a20fda114c0e (diff)
downloadnextcloud-server-c84dc6aa1c523e8125ff6194ae944a465ebcd78b.tar.gz
nextcloud-server-c84dc6aa1c523e8125ff6194ae944a465ebcd78b.zip
Properly catch password policy hint for personal page password changes
Signed-off-by: Morris Jobke <hey@morrisjobke.de>
Diffstat (limited to 'settings')
-rw-r--r--settings/Controller/ChangePasswordController.php28
1 files changed, 24 insertions, 4 deletions
diff --git a/settings/Controller/ChangePasswordController.php b/settings/Controller/ChangePasswordController.php
index df170b62f1a..f709a8dd431 100644
--- a/settings/Controller/ChangePasswordController.php
+++ b/settings/Controller/ChangePasswordController.php
@@ -91,6 +91,7 @@ class ChangePasswordController extends Controller {
* @return JSONResponse
*/
public function changePersonalPassword($oldpassword = '', $newpassword = null) {
+ /** @var IUser $user */
$user = $this->userManager->checkPassword($this->userId, $oldpassword);
if ($user === false) {
return new JSONResponse([
@@ -101,10 +102,19 @@ class ChangePasswordController extends Controller {
]);
}
- /** @var IUser $user */
- if ($newpassword === null || $user->setPassword($newpassword) === false) {
+ try {
+ if ($newpassword === null || $user->setPassword($newpassword) === false) {
+ return new JSONResponse([
+ 'status' => 'error'
+ ]);
+ }
+ // password policy app throws exception
+ } catch(HintException $e) {
return new JSONResponse([
- 'status' => 'error'
+ 'status' => 'error',
+ 'data' => [
+ 'message' => $e->getHint(),
+ ],
]);
}
@@ -216,7 +226,17 @@ class ChangePasswordController extends Controller {
]
]);
} else { // now we know that everything is fine regarding the recovery password, let's try to change the password
- $result = $targetUser->setPassword($password, $recoveryPassword);
+ try {
+ $result = $targetUser->setPassword($password, $recoveryPassword);
+ // password policy app throws exception
+ } catch(HintException $e) {
+ return new JSONResponse([
+ 'status' => 'error',
+ 'data' => [
+ 'message' => $e->getHint(),
+ ],
+ ]);
+ }
if (!$result && $recoveryEnabledForUser) {
return new JSONResponse([
'status' => 'error',