suppress warning if session already active (trace logs the password)

This commit is contained in:
Ralf Becker 2020-02-26 13:45:21 +01:00
parent e99c3368e6
commit deb482aca3

View File

@ -549,9 +549,12 @@ class Session
// for *DAV and eSync we use a pseudo sessionid created from md5(user:passwd)
// --> allows this stateless protocolls which use basic auth to use sessions!
if (($this->sessionid = self::get_sessionid(true)))
{
if (session_status() !== PHP_SESSION_ACTIVE) // gives warning including password
{
session_id($this->sessionid);
}
}
else
{
self::cache_control();