CluPilotCloud/app/Http
nexxo 278c4b9953 Match the logout exemption through AdminArea, not a bare route check
The setup-route exemption already went through AdminArea::routeIs(),
which matches both admin.<name> and admin.via*.<name>. The logout
exemption next to it used a bare $request->routeIs('admin.logout'),
which matches only the canonical name — on a recovery hostname the
logout route is admin.via0.logout, so the check failed there and an
unenrolled operator's logout POST bounced back to enrolment instead
of being let through, on exactly the host that exists because the
canonical one is not working.
2026-07-28 15:27:06 +02:00
..
Controllers Refuse a portal login for an address that already belongs to an operator 2026-07-28 14:42:16 +02:00
Middleware Match the logout exemption through AdminArea, not a bare route check 2026-07-28 15:27:06 +02:00