forked from ticketfrei/ticketfrei
check hashes at login (not tested)
This commit is contained in:
parent
ee96441f21
commit
1f77827f54
|
@ -39,7 +39,7 @@ def login():
|
|||
"""
|
||||
uname = bottle.request.forms.get('uname')
|
||||
psw = bottle.request.forms.get('psw')
|
||||
if psw == db.cur.execute("SELECT pass FROM user WHERE email=?;", (uname, )):
|
||||
if pylibscrypt.scrypt_mcf_check(db.cur.execute("SELECT pass FROM user WHERE email=?;", (uname, )), psw):
|
||||
# :todo Generate Session Cookie and give to user
|
||||
return bottle.static_file("../static/bot.html", root="../static")
|
||||
else:
|
||||
|
|
Loading…
Reference in a new issue