Skip to content

feat: support hide credentials for jwt-auth plugin#8206

Merged
spacewander merged 29 commits into
apache:masterfrom
pixeldin:jwt-auth-plugin-supporting-hide-credentials
Nov 16, 2022
Merged

feat: support hide credentials for jwt-auth plugin#8206
spacewander merged 29 commits into
apache:masterfrom
pixeldin:jwt-auth-plugin-supporting-hide-credentials

Conversation

@pixeldin

@pixeldin pixeldin commented Oct 30, 2022

Copy link
Copy Markdown
Contributor

Description

Provides an optional feat for the jwt-auth plugin to hide authentication upstream as requested in #8122.
Setting hide_credentials to true in the plugin config will hide related auth parameters in upstream.

Fixes #8122

Checklist

  • I have explained the need for this PR and the problem it solves
  • I have explained the changes or the new features added to this PR
  • I have added tests corresponding to this change
  • I have updated the documentation to reflect this change
  • I have verified that this change is backward compatible (If not, please discuss on the APISIX mailing list first)

@pixeldin
pixeldin marked this pull request as ready for review October 30, 2022 18:23
Comment thread apisix/plugins/jwt-auth.lua Outdated
Comment thread t/plugin/jwt-auth3.t Outdated
Comment thread t/plugin/jwt-auth3.t Outdated
Comment thread apisix/plugins/jwt-auth.lua Outdated
Comment thread apisix/plugins/jwt-auth.lua Outdated
Comment thread apisix/plugins/jwt-auth.lua Outdated
tokers
tokers previously approved these changes Nov 1, 2022
Comment thread apisix/plugins/jwt-auth.lua Outdated
Comment thread t/plugin/jwt-auth3.t Outdated
Comment thread apisix/plugins/jwt-auth.lua Outdated
Comment thread apisix/plugins/jwt-auth.lua Outdated
Comment thread t/plugin/jwt-auth3.t Outdated
tokers
tokers previously approved these changes Nov 8, 2022
Comment thread t/plugin/jwt-auth3.t Outdated
Comment thread docs/zh/latest/plugins/jwt-auth.md Outdated
Comment thread t/plugin/jwt-auth3.t
Comment thread apisix/plugins/jwt-auth.lua Outdated
@pixeldin
pixeldin requested review from spacewander and tokers and removed request for spacewander and tokers November 9, 2022 03:32
Comment thread t/plugin/jwt-auth3.t Outdated
@pixeldin
pixeldin requested review from spacewander and removed request for tokers November 9, 2022 07:03
Comment thread apisix/plugins/jwt-auth.lua Outdated
Comment thread t/plugin/jwt-auth3.t Outdated
@pixeldin
pixeldin requested review from tzssangglass and removed request for spacewander November 9, 2022 08:46
Comment thread apisix/plugins/jwt-auth.lua Outdated
Comment thread t/plugin/jwt-auth3.t
starsz
starsz previously approved these changes Nov 11, 2022
Comment thread t/plugin/jwt-auth3.t Outdated
Comment thread apisix/plugins/jwt-auth.lua Outdated
Comment thread t/plugin/jwt-auth3.t Outdated
spacewander
spacewander previously approved these changes Nov 15, 2022

@spacewander spacewander left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@pixeldin
Could you apply this patch in your code before we can merge it?
Thanks!

diff --git t/plugin/jwt-auth3.t t/plugin/jwt-auth3.t
index c0a1961d..fd53d56a 100755
--- t/plugin/jwt-auth3.t
+++ t/plugin/jwt-auth3.t
@@ -30,10 +30,10 @@ add_block_preprocessor(sub {

     if (!defined $block->request) {
         $block->set_value("request", "GET /t");
-    }

-    if (!$block->response_body) {
-        $block->set_value("response_body eval", "qr/^$/");
+        if (!$block->response_body) {
+            $block->set_value("response_body", "passed\n");
+        }
     }
 });

@pixeldin

Copy link
Copy Markdown
Contributor Author

@pixeldin Could you apply this patch in your code before we can merge it? Thanks!

diff --git t/plugin/jwt-auth3.t t/plugin/jwt-auth3.t
index c0a1961d..fd53d56a 100755
--- t/plugin/jwt-auth3.t
+++ t/plugin/jwt-auth3.t
@@ -30,10 +30,10 @@ add_block_preprocessor(sub {

     if (!defined $block->request) {
         $block->set_value("request", "GET /t");
-    }

-    if (!$block->response_body) {
-        $block->set_value("response_body eval", "qr/^$/");
+        if (!$block->response_body) {
+            $block->set_value("response_body", "passed\n");
+        }
     }
 });

@spacewander Thanks, Done! Please review it when you have time.

@pixeldin
pixeldin requested a review from spacewander November 15, 2022 07:14
@spacewander
spacewander merged commit 2f4a4db into apache:master Nov 16, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

feat: As a user, I want to hide credentials for jwt-auth plugin, so that we wouldn't get jwt token at upstream

5 participants