Uploaded image for project: 'WildFly Elytron'
  1. WildFly Elytron
  2. ELY-1507

JwtValidator issuer and audience check ignoring does not work

    XMLWordPrintable

Details

    Description

      https://tools.ietf.org/html/rfc7519

      JwtValidator implements iss clam as optional, samy way as stated in RFC7519. The validator is supposed to ignore iss check if its issuers set was empty, however even though it logs that issuer check is ignored it still checks it and rejects all tokens that do not contain iss claim.

      Attachments

        Activity

          People

            mmazanek Martin Mazánek (Inactive)
            mmazanek Martin Mazánek (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: