diff --git a/plugin.rb b/plugin.rb index 58ea1dc..1a3f451 100644 --- a/plugin.rb +++ b/plugin.rb @@ -29,7 +29,7 @@ def register_middleware(omniauth) opts = env['omniauth.strategy'].options opts[:client_id] = SiteSetting.oauth2_client_id opts[:client_secret] = SiteSetting.oauth2_client_secret - opts[:provider_ignores_state] = false + opts[:provider_ignores_state] = true opts[:client_options] = { authorize_url: SiteSetting.oauth2_authorize_url, token_url: SiteSetting.oauth2_token_url,