-
Type: Bug
-
Status: Resolved
-
Priority: Minor
-
Resolution: Cannot Reproduce
-
Affects Version/s: None
-
Fix Version/s: None
-
Component/s: Web API (REST or WS*)
Somehow the NUXEO-INTEGRATED-AUTH hack is broken... but it cannot be found with hg grep so I am not sure how this ever worked.
here is example request:
GET /nuxeo/restAPI/dashboard/USER_WORKSPACES?format=JSON&page=0&domain=default-domain&lang=en_US&ts=12678134519671.8640802583079692
Host: localhost:8080
X-Shindig-AuthType: none
Cache-control: no-cache, must-revalidate
X-Forwarded-For: 0:0:0:0:0:0:0:1%0
X-NUXEO-INTEGRATED-AUTH: 171hnx7981a0w
X-shindig-dos: on
this is failing with a 401 the nuxeo-integrated-auth trick is actually an alias for Cookie: JSESSONID=171hnx7981a0w;