envoyproxy/envoy

Question about validating two tokens in the headers and ignoring one header if not present.

开放

#34,308 创建于 2024年5月22日

 (1 条评论) (0 个反应) (0 位负责人)C++ (5,373 个派生)batch import
area/jwt_authnhelp wantedquestion

仓库指标

星标
 (27,997 个星标)
PR 合并指标
 (PR 指标待抓取)

描述

If you are reporting any crash or any potential security issue, do not open an issue in this repo. Please report the issue via emailing envoy-security@googlegroups.com where the issue will be triaged appropriately.

Title: validating two tokens in the headers and ignoring one header if not present.

Description: The requirement I have is to accept and additional token header named X-originating-api-authorization, validate it along with the default authorization header using same issuer but ignore the check if X-originating-api-authorization is not present.

I have tried to achieve this by using allow_missing: {} but it doesnt work.

Envoy config as follows: rules: - match: { prefix: "/" } requires: requires_all: requirements: - requires_any: requirements: - provider_name: xyz_auth_pageSize - allow_missing: {} - requires_any: requirements: - provider_name: xyz_auth0 - provider_name: xyz_abc_auth0

please help find a solution [optional Relevant Links:] https://www.envoyproxy.io/docs/envoy/latest/api-v3/extensions/filters/http/jwt_authn/v3/config.proto

贡献者指南