mirror of
https://github.com/Bubka/2FAuth.git
synced 2025-08-13 23:38:32 +02:00
Allow PAT usage while useSsoOnly is enabled - Resolves #474
This commit is contained in:
@ -5,7 +5,9 @@ namespace App\Http\Controllers\Auth;
|
||||
use App\Http\Controllers\Controller;
|
||||
use App\Http\Requests\WebauthnRenameRequest;
|
||||
use Illuminate\Http\Request;
|
||||
use Illuminate\Support\Facades\Gate;
|
||||
use Illuminate\Support\Facades\Log;
|
||||
use Symfony\Component\HttpKernel\Exception\AccessDeniedHttpException;
|
||||
|
||||
class WebAuthnManageController extends Controller
|
||||
{
|
||||
@ -16,6 +18,10 @@ class WebAuthnManageController extends Controller
|
||||
*/
|
||||
public function index(Request $request)
|
||||
{
|
||||
if (Gate::denies('manage-webauthn-credentials')) {
|
||||
throw new AccessDeniedHttpException(__('errors.unsupported_with_sso_only'));
|
||||
}
|
||||
|
||||
$allUserCredentials = $request->user()->webAuthnCredentials()->WhereEnabled()->get();
|
||||
|
||||
return response()->json($allUserCredentials, 200);
|
||||
@ -46,6 +52,10 @@ class WebAuthnManageController extends Controller
|
||||
public function delete(Request $request, $credential)
|
||||
{
|
||||
Log::info('Deletion of security device requested');
|
||||
|
||||
if (Gate::denies('manage-webauthn-credentials')) {
|
||||
throw new AccessDeniedHttpException(__('errors.unsupported_with_sso_only'));
|
||||
}
|
||||
|
||||
$user = $request->user();
|
||||
$user->flushCredential($credential);
|
||||
|
Reference in New Issue
Block a user