We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 930e02f commit 2992fe5Copy full SHA for 2992fe5
1 file changed
00-Starter-Seed/server.py
@@ -80,6 +80,10 @@ def decorated(*args, **kwargs):
80
return handle_error({"code": "invalid_header",
81
"description": "Invalid header. "
82
"Use an RS256 signed JWT Access Token"}, 401)
83
+ if unverified_header["alg"] == "HS256":
84
+ return handle_error({"code": "invalid_header",
85
+ "description": "Invalid header. "
86
+ "Use an RS256 signed JWT Access Token"}, 401)
87
rsa_key = {}
88
for key in jwks["keys"]:
89
if key["kid"] == unverified_header["kid"]:
0 commit comments