-
-
Notifications
You must be signed in to change notification settings - Fork 4.3k
feat(login-flow-v2): Restrict allowed apps by user agent check #50650
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
feat(login-flow-v2): Restrict allowed apps by user agent check #50650
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Not sure either, but apart from that code looks fine.
1ce7ca2
to
4777ede
Compare
Hello there, We hope that the review process is going smooth and is helpful for you. We want to ensure your pull request is reviewed to your satisfaction. If you have a moment, our community management team would very much appreciate your feedback on your experience with this PR review process. Your feedback is valuable to us as we continuously strive to improve our community developer experience. Please take a moment to complete our short survey by clicking on the following link: https://cloud.nextcloud.com/apps/forms/s/i9Ago4EQRZ7TWxjfmeEpPkf6 Thank you for contributing to Nextcloud and we hope to hear from you soon! (If you believe you should not receive this message, you can add yourself to the blocklist.) |
074fcdf
to
dca825f
Compare
|
dca825f
to
bc2d8f0
Compare
Updated autoloaders |
Enable via: ./occ config:system:set core.login_flow_v2.allowed_user_agents 0 --value '/Custom Foo Client/i' ./occ config:system:set core.login_flow_v2.allowed_user_agents 1 --value '/Custom Bar Client/i' if user agent string is unknown the template with "Access forbidden"-"Please use original client" will be displayed Signed-off-by: Misha M.-Kupriyanov <[email protected]>
bc2d8f0
to
d1a94f3
Compare
add config value to
config.php
:or via occ
./occ config:system:set core.login_flow_v2.allowed_user_agents 0 --value '/Custom Foo/i'
Test Allowed client
click on generated
login
url.Test Forbidden client
click on generated

login
url.observe
Unitests
phpunit-autotest-core.xml
filephpunit-autotest-core.xml
Checklist