7.0.0
What's Changed
- PPS-2007 PPS-2012 No token audience check by @paulineribeyre in #87
New Features
- The audience
audfield of JWT tokens is not validated anymore. The validation of which Gen3 instance a token is meant for is already done by using the issuerissfield to get public keys and verify the signature.
Breaking Changes
- The audience
audfield of JWT tokens is not validated anymore.
Bug Fixes
- Fix "Authentication Error: Audience doesn't match" errors in Gen3 services (such as Sheepdog and Peregrine) running in a local Helm instance. The tokens' "audience" set by Fence (typically the
BASE_URLsetting "https://hostname/user") did not match the "audience" used by the services (typically theUSER_APIsetting "http://fence-service").
Full Changelog: 6.2.7...7.0.0