From 9f528295d16e97a7910f225cf567fd598a918afc Mon Sep 17 00:00:00 2001 From: Aki Tuomi Date: Thu, 28 May 2020 15:05:08 +0300 Subject: [PATCH] lib-oauth2: test-oauth2-jwt - Ensure we ignore 'none' algorithm --- src/lib-oauth2/test-oauth2-jwt.c | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/src/lib-oauth2/test-oauth2-jwt.c b/src/lib-oauth2/test-oauth2-jwt.c index 890712e48d..5f9925c276 100644 --- a/src/lib-oauth2/test-oauth2-jwt.c +++ b/src/lib-oauth2/test-oauth2-jwt.c @@ -430,6 +430,11 @@ static void test_jwt_broken_token(void) "q2wwwWWJVJxqw-J3uQ0DdlIyWfoZ7Z0QrdzvMW_B-jo", .is_jwt = TRUE }, + { /* algorithm is 'none' */ + .token = "eyJhbGciOiJub25lIiwidHlwIjoiSldUIn0." + "eyJleHAiOjE1ODEzMzA3OTN9.", + .is_jwt = TRUE + } }; test_begin("JWT broken tokens"); -- 2.47.3