Browse Source

Remove Logging of Untrusted Data

pull/13631/head
Josh Cummings 2 years ago
parent
commit
fed3de8dce
  1. 3
      oauth2/oauth2-resource-server/src/main/java/org/springframework/security/oauth2/server/resource/authentication/JwtIssuerAuthenticationManagerResolver.java
  2. 3
      oauth2/oauth2-resource-server/src/main/java/org/springframework/security/oauth2/server/resource/authentication/JwtIssuerReactiveAuthenticationManagerResolver.java

3
oauth2/oauth2-resource-server/src/main/java/org/springframework/security/oauth2/server/resource/authentication/JwtIssuerAuthenticationManagerResolver.java

@ -227,8 +227,7 @@ public final class JwtIssuerAuthenticationManagerResolver implements Authenticat @@ -227,8 +227,7 @@ public final class JwtIssuerAuthenticationManagerResolver implements Authenticat
return authenticationManager;
}
else {
this.logger.debug(LogMessage
.format("Did not resolve AuthenticationManager since issuer is not trusted", issuer));
this.logger.debug("Did not resolve AuthenticationManager since issuer is not trusted");
}
return null;
}

3
oauth2/oauth2-resource-server/src/main/java/org/springframework/security/oauth2/server/resource/authentication/JwtIssuerReactiveAuthenticationManagerResolver.java

@ -221,8 +221,7 @@ public final class JwtIssuerReactiveAuthenticationManagerResolver @@ -221,8 +221,7 @@ public final class JwtIssuerReactiveAuthenticationManagerResolver
@Override
public Mono<ReactiveAuthenticationManager> resolve(String issuer) {
if (!this.trustedIssuer.test(issuer)) {
this.logger.debug(LogMessage
.format("Did not resolve AuthenticationManager since issuer is not trusted", issuer));
this.logger.debug("Did not resolve AuthenticationManager since issuer is not trusted");
return Mono.empty();
}
// @formatter:off

Loading…
Cancel
Save