check.py 文件源码

python
阅读 32 收藏 0 点赞 0 评论 0

项目:otest 作者: rohe 项目源码 文件源码
def _func(self, conv):
        request = access_token_request(conv)

        ca = request['parsed_client_assertion']
        missing = []
        for claim in ["iss", "sub", "aud", "iat", "exp", "jti"]:
            if claim not in ca:
                missing.append(claim)

        if missing:
            self._status = ERROR
            self._message = 'Redirect_uri not registered'

        # verify jti entropy
        bits = calculate(ca['jti'])
        if bits < 128:
            self._status = WARNING
            self._message = 'Not enough entropy in string: {} < 128'.format(
                bits)

        return {}
评论列表
文章目录


问题


面经


文章

微信
公众号

扫码关注公众号