From 1621c27c1d176b639e9768b2acad7693e387fd51 Mon Sep 17 00:00:00 2001 From: 0xdcarns Date: Mon, 3 Apr 2023 14:17:14 -0400 Subject: [PATCH] fixed hard coded dns key --- logic/security.go | 2 +- servercfg/serverconf.go | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/logic/security.go b/logic/security.go index 1b57dc8b..a6b13dbb 100644 --- a/logic/security.go +++ b/logic/security.go @@ -187,7 +187,7 @@ func authenticateDNSToken(tokenString string) bool { if len(tokens) < 2 { return false } - return tokens[1] == servercfg.GetDNSKey() + return len(servercfg.GetDNSKey()) > 0 && tokens[1] == servercfg.GetDNSKey() } func ContinueIfUserMatch(next http.Handler) http.HandlerFunc { diff --git a/servercfg/serverconf.go b/servercfg/serverconf.go index c59253d9..1830cb66 100644 --- a/servercfg/serverconf.go +++ b/servercfg/serverconf.go @@ -277,7 +277,7 @@ func GetMasterKey() string { // GetDNSKey - gets the configured dns key of server func GetDNSKey() string { - key := "secretkey" + key := "" if os.Getenv("DNS_KEY") != "" { key = os.Getenv("DNS_KEY") } else if config.Config.Server.DNSKey != "" {