oltu-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Adam Campbell (JIRA)" <j...@apache.org>
Subject [jira] [Created] (OLTU-182) Colons in client secrets are not supported
Date Fri, 09 Oct 2015 18:16:05 GMT
Adam Campbell created OLTU-182:

             Summary: Colons in client secrets are not supported
                 Key: OLTU-182
                 URL: https://issues.apache.org/jira/browse/OLTU-182
             Project: Apache Oltu
          Issue Type: Bug
    Affects Versions: oauth2-1.0.0
            Reporter: Adam Campbell

Let me know if I'm misunderstanding, but it seems like the basic auth spec allows colons in
the password: https://tools.ietf.org/html/rfc2617#section-2

OAuthUtils.decodeClientAuthentication just splits on a colon, thus failing if colons are used
in the password.

This message was sent by Atlassian JIRA

View raw message