Uploaded image for project: 'Red Hat 3scale API Management'
  1. Red Hat 3scale API Management
  2. THREESCALE-6168

Hide client_id and client_secret

XMLWordPrintable

    • Icon: Feature Request Feature Request
    • Resolution: Can't Do
    • Icon: Major Major
    • None
    • 2.9 GA
    • System
    • False
    • False
    • Not Started
    • Not Started
    • Not Started
    • Not Started
    • Not Started
    • Not Started
    • Undefined

      Customer is raising concern about the data returned from /admin/api/applications.json.
      In the case of Client Credentials Flow Enabled a user can issue a JWT and act as the application.

      It could be useful having the options to hide sensitive data in the response.

              Unassigned Unassigned
              rhn-support-cpalmier Carlo Palmieri (Inactive)
              Votes:
              1 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: