Commit c71c2c6b authored by Matthias Adrowski's avatar Matthias Adrowski
Browse files

Merge remote-tracking branch 'origin/master' into feature_Upgrade-to-TYPO3-11

parents e611c249 14e84568
......@@ -55,7 +55,8 @@ class AuthenticationController extends AbstractRestController implements LoggerA
/**
* Checks if there is a logged in frontend user and gives out a token
*/
public function getBearerTokenAction(): void {
public function postGetbearertokenAction(): void {
$loggedInUser = $GLOBALS['TSFE']->fe_user->user;
if ($loggedInUser !== NULL) {
......
......@@ -98,12 +98,12 @@ class RestAuthenticator extends AbstractRestMiddleware {
$httpMethod = $request->getMethod();
$actionName = $this->getCallableActionName($httpMethod);
$pureActionName = $this->getActionName();
/**
* when the client requests a bearer token, we don't need to do access checks etc. the user verification is done by the AuthServices
*/
if (!($this->pathSegments['entity'] === 'authentication' && $pureActionName === 'getbearertoken' && $httpMethod === 'POST')) {
if (!($this->pathSegments['entity'] === 'authentication' && $actionName === 'postGetbearertoken' && $httpMethod === 'POST')) {
$authenticated = $this->authenticationService->verifyRequest($this->requestHeaders);
if (!$authenticated) {
......
......@@ -4,7 +4,7 @@
"description": "The extension provieds a basis REST environment. New endpoints provides a REST environment, so that other extensions only need to register them.",
"homepage": "https://www.sgalinski.de",
"license": "GPL-2.0-or-later",
"version": "4.3.2",
"version": "4.3.4",
"require": {
"typo3/cms-core": "^10.4.0 || ^11.5.0"
},
......
Supports Markdown
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment