Skip to content

Commit 2992fe5

Browse files
authored
Error when using HS256
1 parent 930e02f commit 2992fe5

1 file changed

Lines changed: 4 additions & 0 deletions

File tree

00-Starter-Seed/server.py

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -80,6 +80,10 @@ def decorated(*args, **kwargs):
8080
return handle_error({"code": "invalid_header",
8181
"description": "Invalid header. "
8282
"Use an RS256 signed JWT Access Token"}, 401)
83+
if unverified_header["alg"] == "HS256":
84+
return handle_error({"code": "invalid_header",
85+
"description": "Invalid header. "
86+
"Use an RS256 signed JWT Access Token"}, 401)
8387
rsa_key = {}
8488
for key in jwks["keys"]:
8589
if key["kid"] == unverified_header["kid"]:

0 commit comments

Comments
 (0)