From 28f3dba050a77b28d4ac58515538e32f928ef34b Mon Sep 17 00:00:00 2001 From: bergzand Date: Wed, 28 Sep 2016 10:50:37 +0200 Subject: [PATCH] Fix issue #133. Store hash as '*' for external users Set password to '*' for users created by the create_user method. Should cause an invalid password hash for non local users added to the database --- app/models.py | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/app/models.py b/app/models.py index 7f14d40..ff8d97d 100644 --- a/app/models.py +++ b/app/models.py @@ -242,6 +242,10 @@ class User(db.Model): We will create a local user (in DB) in order to manage user profile such as name, roles,... """ + + # Set an invalid password hash for non local users + self.password = '*' + db.session.add(self) db.session.commit()