Details
-
Bug
-
Status: Open
-
Major
-
Resolution: Unresolved
-
1.6.0
-
None
-
None
Description
In light of KNOX-2556, the metadata for server-managed token state should include everything needed for validation, including:
- intended audience(s)
- NotBeforeTime
such that the JWTProvider can more thoroughly validate a token UUID presented as a HTTP Basic password.