jwt-auth-proxy icon indicating copy to clipboard operation
jwt-auth-proxy copied to clipboard

The /auth/refresh endpoint return 401 requests with expired accessToken

Open li6in9muyou opened this issue 2 years ago • 0 comments

/auth/refresh endpoint doc is at https://jwt-auth-proxy.readthedocs.io/en/latest/user-facing/#refresh-access-token

Refresh endpoint is for obtaining a valid accessToken with an expired accessToken and a valid refreshToken.

To reproduce

  1. obtain an accessToken and refreshToken pair through login
  2. wait until accessToken is expired
  3. send refresh request

Expected behavior

The server returns a valid accessToken

Actual behavior

The server returns 401

Possible cause

Refresh requests go through a expiration check during VerifyJwtMiddleware function.

li6in9muyou avatar Jun 03 '23 03:06 li6in9muyou