exceptionfactory commented on PR #8532:
URL: https://github.com/apache/nifi/pull/8532#issuecomment-2077575616

   Thanks for the feedback @raditpan! Glad to hear it works as expected.
   
   You are correct that the Client ID from the `sub` claim needs to be 
authorized, which follows the pattern of other authentication strategies such 
as client certificates, where the certificate subject needs to be authorized 
for invoking REST API resources.
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to