cxf-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From ilgro...@apache.org
Subject [cxf] branch master updated: Take default signAlgo from JWS headers (fixes compatibility issue with Azure)
Date Tue, 08 May 2018 08:55:55 GMT
This is an automated email from the ASF dual-hosted git repository.

ilgrosso pushed a commit to branch master
in repository https://gitbox.apache.org/repos/asf/cxf.git


The following commit(s) were added to refs/heads/master by this push:
     new 144a32e  Take default signAlgo from JWS headers (fixes compatibility issue with Azure)
144a32e is described below

commit 144a32e669e4fe242f52cd9626e899e7f4f65820
Author: Francesco Chicchiriccò <ilgrosso@apache.org>
AuthorDate: Tue May 8 10:54:47 2018 +0200

    Take default signAlgo from JWS headers (fixes compatibility issue with Azure)
---
 .../java/org/apache/cxf/rs/security/oidc/rp/OidcClaimsValidator.java    | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/rt/rs/security/sso/oidc/src/main/java/org/apache/cxf/rs/security/oidc/rp/OidcClaimsValidator.java
b/rt/rs/security/sso/oidc/src/main/java/org/apache/cxf/rs/security/oidc/rp/OidcClaimsValidator.java
index 52dd672..222d421 100644
--- a/rt/rs/security/sso/oidc/src/main/java/org/apache/cxf/rs/security/oidc/rp/OidcClaimsValidator.java
+++ b/rt/rs/security/sso/oidc/src/main/java/org/apache/cxf/rs/security/oidc/rp/OidcClaimsValidator.java
@@ -153,7 +153,7 @@ public class OidcClaimsValidator extends OAuthJoseJwtConsumer {
         }
         JwsSignatureVerifier theJwsVerifier = null;
         if (key != null) {
-            theJwsVerifier = JwsUtils.getSignatureVerifier(key);
+            theJwsVerifier = JwsUtils.getSignatureVerifier(key, jwt.getJwsHeaders().getSignatureAlgorithm());
         } else {
             theJwsVerifier = super.getInitializedSignatureVerifier(jwt.getJwsHeaders());
         }

-- 
To stop receiving notification emails like this one, please contact
ilgrosso@apache.org.

Mime
View raw message