Commit 08d364c6 authored by Imran Hussain's avatar Imran Hussain
Browse files

Tweak a bug introduced when making sure legacy site usernames are lowercase

parent 7f83d7f2
......@@ -63,7 +63,7 @@ if ( isset($_POST["username"]) && isset($_POST["password"]) && !$RATELIMITED ) {
require("../lib/ldap-auth/ldap-auth.php");
$isAuthd = ldapAuth($_POST["username"], $_POST["password"]);
$username = strtolower($_POST['username']);
$username = strtolower($_POST["username"]);
if ($isAuthd == "sucs"){
//do stuff for sucs auth
......@@ -93,9 +93,9 @@ if ( isset($_POST["username"]) && isset($_POST["password"]) && !$RATELIMITED ) {
// connect to the sucssite db to get the username of the session
$db_connection = pg_connect("dbname=sucssite");
$username = strtolower(pg_fetch_result(pg_query_params($db_connection, "SELECT * FROM session WHERE hash=$1", array($legacySessionID)), 0, "username"));
$username = pg_fetch_result(pg_query_params($db_connection, "SELECT * FROM session WHERE hash=$1", array($legacySessionID)), 0, "username");
if ($username !== null && $username !== false) {
if ($username !== null && $username !== false && username !== "") {
// we have a vlid username from a old session
$DB_CON->exec("UPDATE sessions SET sucs_username='${username}' WHERE id='${SESSIONID}'");
$SUCS_LOGIN = true;
......@@ -234,4 +234,4 @@ if ($RATELIMITED) {
</body>
</html>
\ No newline at end of file
</html>
Supports Markdown
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment