Page MenuHomePhabricator

[identity] verify nonce in siwe message
ClosedPublic

Authored by varun on Oct 9 2023, 9:11 PM.
Tags
None
Referenced Files
Unknown Object (File)
Fri, Jan 10, 2:49 PM
Unknown Object (File)
Fri, Jan 10, 2:49 PM
Unknown Object (File)
Fri, Jan 10, 2:23 PM
Unknown Object (File)
Fri, Jan 10, 8:53 AM
Unknown Object (File)
Nov 26 2024, 4:03 PM
Unknown Object (File)
Nov 26 2024, 3:05 PM
Unknown Object (File)
Nov 22 2024, 3:20 PM
Unknown Object (File)
Nov 21 2024, 5:57 AM
Subscribers

Details

Summary

get the nonce from the SIWE message provided by the user and check if it exists in our nonces table. if it doesn't, return an error. if it does, remove it and proceed.

Depends on D9440

Test Plan

tried to use the same nonce for consecutive sign-in requests and only the first request succeeded.

Diff Detail

Repository
rCOMM Comm
Lint
No Lint Coverage
Unit
No Test Coverage