Browse Source

Remove Logging of Untrusted Data

pull/13631/head
Josh Cummings 2 years ago
parent
commit
fed3de8dce
  1. 3
      oauth2/oauth2-resource-server/src/main/java/org/springframework/security/oauth2/server/resource/authentication/JwtIssuerAuthenticationManagerResolver.java
  2. 3
      oauth2/oauth2-resource-server/src/main/java/org/springframework/security/oauth2/server/resource/authentication/JwtIssuerReactiveAuthenticationManagerResolver.java

3
oauth2/oauth2-resource-server/src/main/java/org/springframework/security/oauth2/server/resource/authentication/JwtIssuerAuthenticationManagerResolver.java

@ -227,8 +227,7 @@ public final class JwtIssuerAuthenticationManagerResolver implements Authenticat
return authenticationManager; return authenticationManager;
} }
else { else {
this.logger.debug(LogMessage this.logger.debug("Did not resolve AuthenticationManager since issuer is not trusted");
.format("Did not resolve AuthenticationManager since issuer is not trusted", issuer));
} }
return null; return null;
} }

3
oauth2/oauth2-resource-server/src/main/java/org/springframework/security/oauth2/server/resource/authentication/JwtIssuerReactiveAuthenticationManagerResolver.java

@ -221,8 +221,7 @@ public final class JwtIssuerReactiveAuthenticationManagerResolver
@Override @Override
public Mono<ReactiveAuthenticationManager> resolve(String issuer) { public Mono<ReactiveAuthenticationManager> resolve(String issuer) {
if (!this.trustedIssuer.test(issuer)) { if (!this.trustedIssuer.test(issuer)) {
this.logger.debug(LogMessage this.logger.debug("Did not resolve AuthenticationManager since issuer is not trusted");
.format("Did not resolve AuthenticationManager since issuer is not trusted", issuer));
return Mono.empty(); return Mono.empty();
} }
// @formatter:off // @formatter:off

Loading…
Cancel
Save