jwt-auth-proxy
jwt-auth-proxy copied to clipboard
The /auth/refresh endpoint return 401 requests with expired accessToken
/auth/refresh endpoint doc is at https://jwt-auth-proxy.readthedocs.io/en/latest/user-facing/#refresh-access-token
Refresh endpoint is for obtaining a valid accessToken with an expired accessToken and a valid refreshToken.
To reproduce
- obtain an accessToken and refreshToken pair through login
- wait until accessToken is expired
- send refresh request
Expected behavior
The server returns a valid accessToken
Actual behavior
The server returns 401
Possible cause
Refresh requests go through a expiration check during VerifyJwtMiddleware function.