def _func(self, conv):
request = access_token_request(conv)
ca = request['parsed_client_assertion']
missing = []
for claim in ["iss", "sub", "aud", "iat", "exp", "jti"]:
if claim not in ca:
missing.append(claim)
if missing:
self._status = ERROR
self._message = 'Redirect_uri not registered'
# verify jti entropy
bits = calculate(ca['jti'])
if bits < 128:
self._status = WARNING
self._message = 'Not enough entropy in string: {} < 128'.format(
bits)
return {}
评论列表
文章目录