ThreeMammals / Ocelot

.NET API Gateway
https://www.nuget.org/packages/Ocelot
MIT License
8.31k stars 1.63k forks source link

Why isn't Ocelot reviewing my Token claims? #1830

Closed kopticx closed 9 months ago

kopticx commented 9 months ago

Hello, I am trying to add authentication to my endpoints, however it appears that ocelot is not verifying the claims because even though my token does not have the admin role it still allows me to POST.

How could I resolve this?

image

Token: eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJodHRwOi8vc2NoZW1hcy54bWxzb2FwLm9yZy93cy8yMDA1LzA1L2lkZW50aXR5L2NsYWltcy9lbWFpbGFkZHJlc3MiOiJrZXZpbjJAYWEuY29tIiwiaHR0cDovL3NjaGVtYXMueG1sc29hcC5vcmcvd3MvMjAwNS8wNS9pZGVudGl0eS9jbGFpbXMvbmFtZSI6ImtvcHRpY3gyIiwiZXhwIjoxNzMzMzIyMDQzfQ.H1WYrYEuH6EppNnXI2TJASDl1PeO6_943sPIf4FJl0o

image

image