Join GitHub today
GitHub is home to over 28 million developers working together to host and review code, manage projects, and build software together.Sign up
[nginx-ingress-controller] Basic auth header is not stripped #1383
If you use basic auth in an ingress, then the
For example, Drone will ignore its session cookie if the auth header is specified.
The correct behaviour is to strip the header and not pass it to the upstream.
Until this is fixed, I've been trying to find a workaround by injecting a custom Nginx directive, but I can't a way. Is there one?
Sorry that I have to ask under a closed issue, but how is it possible to pass the authorization header to an upstream now? I see the condition