From 21b3e87c771987768e0ffe38823e680ff738394f Mon Sep 17 00:00:00 2001 From: MichaIng Date: Mon, 12 Jul 2021 19:22:04 +0200 Subject: Allow SSO authentication to provide a user secret Implementing PR #24837 from immerda Signed-off-by: MichaIng --- lib/private/legacy/OC_User.php | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) (limited to 'lib/private') diff --git a/lib/private/legacy/OC_User.php b/lib/private/legacy/OC_User.php index b7547be5e82..de066e143b4 100644 --- a/lib/private/legacy/OC_User.php +++ b/lib/private/legacy/OC_User.php @@ -178,7 +178,11 @@ class OC_User { } $userSession->setLoginName($uid); $request = OC::$server->getRequest(); - $userSession->createSessionToken($request, $uid, $uid); + $password = null; + if ($backend instanceof \OCP\Authentication\IProvideUserSecretBackend) { + $password = $backend->getCurrentUserSecret(); + } + $userSession->createSessionToken($request, $uid, $uid, $password); $userSession->createRememberMeToken($userSession->getUser()); // setup the filesystem OC_Util::setupFS($uid); @@ -191,7 +195,7 @@ class OC_User { 'post_login', [ 'uid' => $uid, - 'password' => null, + 'password' => $password, 'isTokenLogin' => false, ] ); -- cgit v1.2.3