server
server copied to clipboard
[Discuss] Check if authenticated only when specified
See:
- #993
This 'resolves' the issue noticed by @triumphtang and @yuchen-w in #993 at the cost of returning Forbidden instead of Unauthorized for typical implementations when policy/role requirements are set in the transport.
Should this be changed as shown in this PR? Or leave as is?