summaryrefslogtreecommitdiffstats
path: root/src/DotNetOpenAuth.AspNet/Clients/OAuth/AuthenticationOnlyCookieOAuthTokenManager.cs
diff options
context:
space:
mode:
authorAndrew Arnott <andrewarnott@gmail.com>2012-05-09 08:17:43 -0700
committerAndrew Arnott <andrewarnott@gmail.com>2012-05-09 08:17:43 -0700
commit01ff3ee1aa3209b9dfd9b9456f05a3a9c0b1234d (patch)
treede45abe5d03af972ab10241402e66c21b3e50c71 /src/DotNetOpenAuth.AspNet/Clients/OAuth/AuthenticationOnlyCookieOAuthTokenManager.cs
parent957a1811bc69a033a16b00d755a88ceeaf3fced6 (diff)
parent3d1dcc42ffc0bcaec407d82b0d228b1305815829 (diff)
downloadDotNetOpenAuth-01ff3ee1aa3209b9dfd9b9456f05a3a9c0b1234d.zip
DotNetOpenAuth-01ff3ee1aa3209b9dfd9b9456f05a3a9c0b1234d.tar.gz
DotNetOpenAuth-01ff3ee1aa3209b9dfd9b9456f05a3a9c0b1234d.tar.bz2
Merge pull request #142 from dotnetjunky/v4.0a
Make the MachineKeyUtil class internal
Diffstat (limited to 'src/DotNetOpenAuth.AspNet/Clients/OAuth/AuthenticationOnlyCookieOAuthTokenManager.cs')
-rw-r--r--src/DotNetOpenAuth.AspNet/Clients/OAuth/AuthenticationOnlyCookieOAuthTokenManager.cs4
1 files changed, 4 insertions, 0 deletions
diff --git a/src/DotNetOpenAuth.AspNet/Clients/OAuth/AuthenticationOnlyCookieOAuthTokenManager.cs b/src/DotNetOpenAuth.AspNet/Clients/OAuth/AuthenticationOnlyCookieOAuthTokenManager.cs
index 10cf39d..a58549a 100644
--- a/src/DotNetOpenAuth.AspNet/Clients/OAuth/AuthenticationOnlyCookieOAuthTokenManager.cs
+++ b/src/DotNetOpenAuth.AspNet/Clients/OAuth/AuthenticationOnlyCookieOAuthTokenManager.cs
@@ -87,6 +87,10 @@ namespace DotNetOpenAuth.AspNet.Clients {
/// <param name="requestTokenSecret">The request token secret.</param>
public void StoreRequestToken(string requestToken, string requestTokenSecret) {
var cookie = new HttpCookie(TokenCookieKey);
+ if (FormsAuthentication.RequireSSL) {
+ cookie.Secure = true;
+ }
+
byte[] cookieBytes = Encoding.UTF8.GetBytes(requestTokenSecret);
var secretBytes = MachineKeyUtil.Protect(cookieBytes, TokenCookieKey, "Token:" + requestToken);
cookie.Values[requestToken] = HttpServerUtility.UrlTokenEncode(secretBytes);