Skip to content
#

apis

Here are 857 public repositories matching this topic...

joshkping
joshkping commented Nov 16, 2021

Is there an existing issue for this?

  • I have searched the existing issues

Kong version ($ kong version)

2.5.1.0

Current Behavior

When calling kong.response.exit(), the function automatically sets the Content-Length header on the response even if the Transfer-Encoding header is present. This is in violation of RFC 7230 3.3.2:

A sender MUST NOT send a Content-

piyushgupta243
piyushgupta243 commented Nov 2, 2021

Issue

The response header does not reflect the correct version for HTTP2 requests. Even though, wiremock replies in h2 but the version in the response header shows "HTTP/1.1 200". This is caused by the hardcoded value in the toString() method of Response.java class

    @Override
    public String toString() {
        StringBuilder sb = new StringBuilder();
        **sb.append("HTTP
kuma
jakubdyszkiewicz
jakubdyszkiewicz commented Dec 17, 2021

Description

Right now we put an authentication filter on the whole API server including / and /gui.

If you put Kuma GUI behind an API gateway with another authentication mechanism like Okta, the gateway may pass authenticated JWT token down to the Kuma GUI. Kuma then is trying to authenticate the user using the User Token mechanism which of course fails.

We can configure the gateway

Improve this page

Add a description, image, and links to the apis topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the apis topic, visit your repo's landing page and select "manage topics."

Learn more