Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Appearance settings

Fix Authorization header. #660

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 1 commit into from
Aug 8, 2018
Merged

Fix Authorization header. #660

merged 1 commit into from
Aug 8, 2018

Conversation

Rudnev
Copy link
Contributor

@Rudnev Rudnev commented Aug 7, 2018

The Authorization header should not be set if the token is not found.

The application can implement different logic when this header is present and when it is not present. For example, when using the jwt-auth package, you can pass a token through the header and the cookie, but the header has the highest priority. In this case, the presence of the header makes it impossible to parse the token from other places.

The Authorization header should not be set if the token is not found.
@streamtw streamtw merged commit b28ede3 into UniSharp:master Aug 8, 2018
@streamtw
Copy link
Member

streamtw commented Aug 8, 2018

Thanks @Rudnev !

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants
Morty Proxy This is a proxified and sanitized view of the page, visit original site.