From c8366f3de580495441b1495b56b2ccdb8f619508 Mon Sep 17 00:00:00 2001 From: Björn Schießle Date: Wed, 9 Dec 2015 12:00:00 +0100 Subject: don't allow to create a federated share if source and target server are the same --- apps/files_sharing/ajax/external.php | 8 ++++++++ 1 file changed, 8 insertions(+) (limited to 'apps/files_sharing') diff --git a/apps/files_sharing/ajax/external.php b/apps/files_sharing/ajax/external.php index 153285e11ff..7c41dc96813 100644 --- a/apps/files_sharing/ajax/external.php +++ b/apps/files_sharing/ajax/external.php @@ -30,6 +30,14 @@ if(!\OCP\Util::isValidFileName($name)) { exit(); } +$currentUser = \OC::$server->getUserSession()->getUser()->getUID(); +$currentServer = \OC::$server->getURLGenerator()->getAbsoluteURL('/'); +if (\OC\Share\Helper::isSameUserOnSameServer($owner, $remote, $currentUser, $currentServer )) { + \OCP\JSON::error(array('data' => array('message' => $l->t('Not allowed to create a federated share with the same user server')))); + exit(); +} + + $externalManager = new \OCA\Files_Sharing\External\Manager( \OC::$server->getDatabaseConnection(), \OC\Files\Filesystem::getMountManager(), -- cgit v1.2.3