mirror of
https://github.com/nextcloud/server.git
synced 2026-02-20 00:12:30 -05:00
fix: Use hashed password in files_external settings
Signed-off-by: Louis Chemineau <louis@chmn.me>
This commit is contained in:
parent
e247c26071
commit
20eb464835
1 changed files with 8 additions and 0 deletions
|
|
@ -19,6 +19,7 @@ use OCP\Security\ICredentialsManager;
|
|||
*/
|
||||
class GlobalAuth extends AuthMechanism {
|
||||
public const CREDENTIALS_IDENTIFIER = 'password::global';
|
||||
private const PWD_PLACEHOLDER = '************************';
|
||||
|
||||
/** @var ICredentialsManager */
|
||||
protected $credentialsManager;
|
||||
|
|
@ -41,11 +42,18 @@ class GlobalAuth extends AuthMechanism {
|
|||
'password' => ''
|
||||
];
|
||||
} else {
|
||||
$auth['password'] = self::PWD_PLACEHOLDER;
|
||||
return $auth;
|
||||
}
|
||||
}
|
||||
|
||||
public function saveAuth($uid, $user, $password) {
|
||||
// Use old password if it has not changed.
|
||||
if ($password === self::PWD_PLACEHOLDER) {
|
||||
$auth = $this->credentialsManager->retrieve($uid, self::CREDENTIALS_IDENTIFIER);
|
||||
$password = $auth['password'];
|
||||
}
|
||||
|
||||
$this->credentialsManager->store($uid, self::CREDENTIALS_IDENTIFIER, [
|
||||
'user' => $user,
|
||||
'password' => $password
|
||||
|
|
|
|||
Loading…
Reference in a new issue