Mercurial > hg > isophonics-drupal-site
view core/lib/Drupal/Core/Authentication/AuthenticationProviderChallengeInterface.php @ 13:5fb285c0d0e3
Update Drupal core to 8.4.7 via Composer. Security update; I *think* we've
been lucky to get away with this so far, as we don't support self-registration
which seems to be used by the so-called "drupalgeddon 2" attack that 8.4.5
was vulnerable to.
author | Chris Cannam |
---|---|
date | Mon, 23 Apr 2018 09:33:26 +0100 |
parents | 4c8ae668cc8c |
children |
line wrap: on
line source
<?php namespace Drupal\Core\Authentication; use Symfony\Component\HttpFoundation\Request; /** * Generate a challenge when access is denied for unauthenticated users. * * On a 403 (access denied), if there are no credentials on the request, some * authentication methods (e.g. basic auth) require that a challenge is sent to * the client. */ interface AuthenticationProviderChallengeInterface { /** * Constructs an exception which is used to generate the challenge. * * @param \Symfony\Component\HttpFoundation\Request $request * The request. * @param \Exception $previous * The previous exception. * * @return \Symfony\Component\HttpKernel\Exception\HttpExceptionInterface|null * An exception to be used in order to generate an authentication challenge. */ public function challengeException(Request $request, \Exception $previous); }