Details
-
Bug
-
Status: Open
-
Major
-
Resolution: Unresolved
-
0.23.0, 2.0.0-alpha, 3.0.0-alpha1
-
None
-
None
Description
The NN requires get/renew token operations to be securely authenticated - ie. you can't use a token to get/renew a token. However, token cancelation is allowed with a token, including using a token to cancel itself. Cancelation should perform the same authentication checks as get/renew.