[
https://issues.apache.org/jira/browse/NIFI-6280?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Andy LoPresto updated NIFI-6280:
--------------------------------
Status: Patch Available (was: Open)
> Re-evaluate handling of Authorization bearer token during JWT logout
> --------------------------------------------------------------------
>
> Key: NIFI-6280
> URL: https://issues.apache.org/jira/browse/NIFI-6280
> Project: Apache NiFi
> Issue Type: Improvement
> Components: Core Framework
> Affects Versions: 1.9.2
> Reporter: Andy LoPresto
> Assignee: Nathan Gough
> Priority: Major
> Labels: jwt, logout, security
> Time Spent: 4.5h
> Remaining Estimate: 0h
>
> The handling of the JWT for logging out can be improved (add unit tests,
> handle string slicing more strictly, etc.).
> See AccessResource line 769 and JwtService line 178.
--
This message was sent by Atlassian JIRA
(v7.6.3#76005)