Allow PAT usage while useSsoOnly is enabled - Resolves #474

This commit is contained in:
Bubka
2025-06-02 14:13:56 +02:00
parent f0eec6582a
commit 12228bc536
18 changed files with 461 additions and 91 deletions

View File

@ -5,7 +5,9 @@ namespace App\Http\Controllers\Auth;
use App\Http\Controllers\Controller;
use App\Http\Requests\WebauthnRenameRequest;
use Illuminate\Http\Request;
use Illuminate\Support\Facades\Gate;
use Illuminate\Support\Facades\Log;
use Symfony\Component\HttpKernel\Exception\AccessDeniedHttpException;
class WebAuthnManageController extends Controller
{
@ -16,6 +18,10 @@ class WebAuthnManageController extends Controller
*/
public function index(Request $request)
{
if (Gate::denies('manage-webauthn-credentials')) {
throw new AccessDeniedHttpException(__('errors.unsupported_with_sso_only'));
}
$allUserCredentials = $request->user()->webAuthnCredentials()->WhereEnabled()->get();
return response()->json($allUserCredentials, 200);
@ -46,6 +52,10 @@ class WebAuthnManageController extends Controller
public function delete(Request $request, $credential)
{
Log::info('Deletion of security device requested');
if (Gate::denies('manage-webauthn-credentials')) {
throw new AccessDeniedHttpException(__('errors.unsupported_with_sso_only'));
}
$user = $request->user();
$user->flushCredential($credential);