You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
brasseld
changed the title
[gateway/management] http core services should not enforce basic authentication
[gateway/management-api] http core services should not enforce basic authentication
Oct 6, 2017
the new HTTP core services should not enforce authentication. One should be able to disable authentication from setting in conf file
Expected Behavior
when
services.core.http.authentication.type
is set tonone
no authentication should be requiredCurrent Behavior
currently basic authentication is hardcoded and does not take into account the type of authentication
Possible Solution
when
services.core.http.authentication.type
is set tonone
, don't attach any AuthHandler to the mainRouter and nodeRouter routesretrieve authentication type from config file:
act on it:
Context
We want to use the new health check ability but without the need for authentication (the port it is on is not exposed to the outside world)
Your Environment
The text was updated successfully, but these errors were encountered: