Iets strenger controleren op type=JWT
svn path=/Website/branches/v2016.2/; revision=31160
This commit is contained in:
@@ -112,7 +112,8 @@ if (user_key < 0 && jwt)
|
|||||||
|
|
||||||
var sql = "SELECT *"
|
var sql = "SELECT *"
|
||||||
+ " FROM fac_idp"
|
+ " FROM fac_idp"
|
||||||
+ " WHERE fac_idp_issuer = " + safe.quoted_sql(claim.payload.iss)
|
+ " WHERE fac_idp_type = 4" // JWT
|
||||||
|
+ " AND fac_idp_issuer = " + safe.quoted_sql(claim.payload.iss)
|
||||||
+ " AND fac_idp_audience = " + safe.quoted_sql(claim.payload.aud);
|
+ " AND fac_idp_audience = " + safe.quoted_sql(claim.payload.aud);
|
||||||
var oRs = Oracle.Execute(sql);
|
var oRs = Oracle.Execute(sql);
|
||||||
if (oRs.Eof)
|
if (oRs.Eof)
|
||||||
|
|||||||
Reference in New Issue
Block a user