Iets strenger controleren op type=JWT
svn path=/Website/branches/v2016.2/; revision=31160
This commit is contained in:
@@ -112,7 +112,8 @@ if (user_key < 0 && jwt)
|
||||
|
||||
var sql = "SELECT *"
|
||||
+ " FROM fac_idp"
|
||||
+ " WHERE fac_idp_issuer = " + safe.quoted_sql(claim.payload.iss)
|
||||
+ " WHERE fac_idp_type = 4" // JWT
|
||||
+ " AND fac_idp_issuer = " + safe.quoted_sql(claim.payload.iss)
|
||||
+ " AND fac_idp_audience = " + safe.quoted_sql(claim.payload.aud);
|
||||
var oRs = Oracle.Execute(sql);
|
||||
if (oRs.Eof)
|
||||
|
||||
Reference in New Issue
Block a user