diff --git a/changelog/unreleased/fix-oidc-auth-cache.md b/changelog/unreleased/fix-oidc-auth-cache.md new file mode 100644 index 000000000..abd8711e5 --- /dev/null +++ b/changelog/unreleased/fix-oidc-auth-cache.md @@ -0,0 +1,5 @@ +Bugfix: Fix OIDC auth cache + +We've fixed an issue rendering the OIDC auth cache useless. + +https://github.com/owncloud/ocis/pull/5997 diff --git a/services/proxy/pkg/middleware/oidc_auth.go b/services/proxy/pkg/middleware/oidc_auth.go index 7a4f8caa3..9ba727b22 100644 --- a/services/proxy/pkg/middleware/oidc_auth.go +++ b/services/proxy/pkg/middleware/oidc_auth.go @@ -80,7 +80,7 @@ func (m *OIDCAuthenticator) getClaims(token string, req *http.Request) (map[stri if err != nil && err != store.ErrNotFound { m.Logger.Error().Err(err).Msg("could not read from userinfo cache") } - if len(record) > 1 { + if len(record) > 0 { if err = msgpack.Unmarshal(record[0].Value, &claims); err == nil { m.Logger.Debug().Interface("claims", claims).Msg("cache hit for userinfo") return claims, nil