Skip to content

JWT: looks that buy as Tom also works with alg:none #1411

@nbaars

Description

@nbaars

The lesson is meant to use the refresh token, but as the integration test shows it actually can also be solved with using none.

Of course this is not a problem, might be good to mention in the response towards the user, to mention "good thinking you found an alternative solution..."

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions