From 4be9e30eee18e5b868da05eb42b7e59f7f3cb6b5 Mon Sep 17 00:00:00 2001 From: Dane Everitt Date: Wed, 1 Feb 2017 23:05:19 -0500 Subject: [PATCH] Include that 30 second limit on other 2FA checks --- app/Models/User.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app/Models/User.php b/app/Models/User.php index 8d1d7fb71..80d9192fa 100644 --- a/app/Models/User.php +++ b/app/Models/User.php @@ -105,7 +105,7 @@ class User extends Model implements AuthenticatableContract, AuthorizableContrac */ public function toggleTotp($token) { - if (! Google2FA::verifyKey($this->totp_secret, $token)) { + if (! Google2FA::verifyKey($this->totp_secret, $token, 1)) { return false; }