Skip to content
Commit 38ab6192 authored by Kohsuke Kawaguchi's avatar Kohsuke Kawaguchi
Browse files

[ZD-19640] diagnostic improvement in case impersonation failed.

I think this is an oversight in bded790f. A random attacker wouldn't know the correct API token value,
so given that it matched, I think the caller should know that it was the impersonation that failed, not the authentication.

Also log this at a higher level, since this indicates a problem in SecurityRealm.
parent f0943018
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment