The parent project for OpenZiti. Here you will find the executables for a fully zero trust, application embedded, programmable network @OpenZiti
2.88k
stars
162
forks
source link
expired JWTs are allowed to enroll #2559
Closed
dovholuknf closed 4 days ago
Observed:
ziti-edge-tunnel
Expected Behavior I expected to see the enrollment fail as the JWT had expired
Steps to Reproduce
ziti edge quickstart --home c:\temp\expired-jwt
c:\temp\expired-jwt\ctrl.yaml
, find and replace180m
with5m
ziti edge quickstart --home c:\temp\expired-jwt
ziti edge create identity expired -o c:\temp\expired-jwt\expired.jwt
ziti-edge-tunnel
(or zdew) installed and enroll identity:"C:\Program Files (x86)\NetFoundry Inc\Ziti Desktop Edge\ziti-edge-tunnel.exe" enroll --jwt C:\temp\expired-jwt\expired.jwt --identity C:\temp\expired-jwt\expired.json
Additional Information
fails with: