Fixed http_auth when authorization is not provided in header

This commit is contained in:
Rodrigue Cloutier
2013-04-03 21:29:04 -04:00
parent c84c485493
commit 3575a2df18
2 changed files with 10 additions and 1 deletions
+3 -1
View File
@@ -67,7 +67,9 @@ def _check_token():
def _check_http_auth():
auth = request.authorization or dict(username=None, password=None)
from collections import namedtuple
Auth = namedtuple('Auth', 'username, password')
auth = request.authorization or Auth(username=None, password=None)
user = _security.datastore.find_user(email=auth.username)
if user and utils.verify_and_update_password(auth.password, user):