openziti / ziti

The parent project for OpenZiti. Here you will find the executables for a fully zero trust, application embedded, programmable network @OpenZiti
https://openziti.io
Apache License 2.0
2.88k stars 162 forks source link

expired JWTs are allowed to enroll #2559

Closed dovholuknf closed 4 days ago

dovholuknf commented 5 days ago

Observed:

Expected Behavior I expected to see the enrollment fail as the JWT had expired

Steps to Reproduce

Additional Information

ziti edge enroll c:\temp\expired-jwt\ziti-id.jwt

fails with:

failed to parse JWT: token has invalid claims: token is expired