Iets strenger controleren op type=JWT

svn path=/Website/branches/v2016.2/; revision=31160
This commit is contained in:
Jos Groot Lipman
2016-10-20 07:17:01 +00:00
parent 2b345b81a6
commit 36fbb2c575

View File

@@ -112,7 +112,8 @@ if (user_key < 0 && jwt)
var sql = "SELECT *"
+ " FROM fac_idp"
+ " WHERE fac_idp_issuer = " + safe.quoted_sql(claim.payload.iss)
+ " WHERE fac_idp_type = 4" // JWT
+ " AND fac_idp_issuer = " + safe.quoted_sql(claim.payload.iss)
+ " AND fac_idp_audience = " + safe.quoted_sql(claim.payload.aud);
var oRs = Oracle.Execute(sql);
if (oRs.Eof)