mirror of
https://github.com/nextcloud/server.git
synced 2026-04-21 06:08:46 -04:00
Merge pull request #33772 from nextcloud/debug/remember-me-login-token-mispatch-session-unavailable
This commit is contained in:
commit
affa402d21
1 changed files with 8 additions and 0 deletions
|
|
@ -865,6 +865,10 @@ class Session implements IUserSession, Emitter {
|
|||
$tokens = $this->config->getUserKeys($uid, 'login_token');
|
||||
// test cookies token against stored tokens
|
||||
if (!in_array($currentToken, $tokens, true)) {
|
||||
$this->logger->error('Tried to log in {uid} but could not verify token', [
|
||||
'app' => 'core',
|
||||
'uid' => $uid,
|
||||
]);
|
||||
return false;
|
||||
}
|
||||
// replace successfully used token with a new one
|
||||
|
|
@ -876,6 +880,10 @@ class Session implements IUserSession, Emitter {
|
|||
$sessionId = $this->session->getId();
|
||||
$token = $this->tokenProvider->renewSessionToken($oldSessionId, $sessionId);
|
||||
} catch (SessionNotAvailableException $ex) {
|
||||
$this->logger->warning('Could not renew session token for {uid} because the session is unavailable', [
|
||||
'app' => 'core',
|
||||
'uid' => $uid,
|
||||
]);
|
||||
return false;
|
||||
} catch (InvalidTokenException $ex) {
|
||||
$this->logger->warning('Renewing session token failed', ['app' => 'core']);
|
||||
|
|
|
|||
Loading…
Reference in a new issue