Closed obgm closed 6 years ago
(Reported bei Jim Schaad):
“no valid access token” covers three cases:
MUST
Shouldn't we give the client a chance to POST a new token to /authz-info? Tearing down the DTLS session just because a token has expired seems pretty resource-wasteful to me.
Closed by commit 923fa97.
(Reported bei Jim Schaad):
“no valid access token” covers three cases:
MUST
)?