fixed oauth scope check
parent
4d88e04e59
commit
40fc70894e
|
@ -229,7 +229,7 @@ public class ResourceSetRegistrationEndpoint {
|
||||||
if (auth instanceof OAuth2Authentication) {
|
if (auth instanceof OAuth2Authentication) {
|
||||||
OAuth2Authentication oAuth2Authentication = (OAuth2Authentication) auth;
|
OAuth2Authentication oAuth2Authentication = (OAuth2Authentication) auth;
|
||||||
if (oAuth2Authentication.getOAuth2Request().getScope() == null
|
if (oAuth2Authentication.getOAuth2Request().getScope() == null
|
||||||
|| oAuth2Authentication.getOAuth2Request().getScope().contains(SystemScopeService.RESOURCE_SET_REGISTRATION_SCOPE)) {
|
|| !oAuth2Authentication.getOAuth2Request().getScope().contains(SystemScopeService.RESOURCE_SET_REGISTRATION_SCOPE)) {
|
||||||
throw new InsufficientScopeException("Insufficient scope", ImmutableSet.of(SystemScopeService.RESOURCE_SET_REGISTRATION_SCOPE));
|
throw new InsufficientScopeException("Insufficient scope", ImmutableSet.of(SystemScopeService.RESOURCE_SET_REGISTRATION_SCOPE));
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in New Issue