You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Yeah once I realized that my use case was not really valid (verify the issuer that I'm not actually providing), I wasn't as concerned and fixed my code to provide the issuer. But I suspect I'm not the only one who may have made this mistake. I could see a future major version actually raising an error if you ask it to verify something without providing the info needed to verify it.
There has been some comments that the way the verification is enabled is not that intuitive, needing to pass both verify_iss: true and issparameters, could be enough to just pass the expected list of issuers to enable this validation.
Issue: InvalidIssuerError is raised even though no specific issuer was specified. There was no error in 2.8.2
Sample code to illustrate the issue:
Running in 2.8.2 --
data:image/s3,"s3://crabby-images/9ec68/9ec68dabcb6727cd7c41e834ff22fc144eaf3cd0" alt="image"
Running the same code in 2.9.0 --
data:image/s3,"s3://crabby-images/adca2/adca2a5b778ab069b2e486aa789307d2c16a4c47" alt="image"
The text was updated successfully, but these errors were encountered: