@@ -418,7 +418,7 @@ func getJWTUsername(provider JWTConfigCommon, identity *Identity) (username stri
418
418
if provider .UsernameClaim != "" {
419
419
value , ok := identity .Claims [provider .UsernameClaim ]
420
420
if ! ok {
421
- return "" , fmt . Errorf ("jwt: specified claim %q not found in id_token, identity: %v" , provider .UsernameClaim , identity )
421
+ return "" , base . RedactErrorf ("jwt: specified claim %q not found in id_token, identity: %+ v" , provider .UsernameClaim , base . UD ( identity ) )
422
422
}
423
423
if username , err = formatUsername (value ); err != nil {
424
424
return "" , err
@@ -626,13 +626,13 @@ func (op *OIDCProvider) verifyToken(ctx context.Context, token string, callbackU
626
626
// Verify claims and signature on the JWT; ensure that it's been signed by the provider.
627
627
idToken , err := client .verifyJWT (ctx , token )
628
628
if err != nil {
629
- base .InfofCtx (ctx , base .KeyAuth , "Client %v could not verify JWT. Error: %v" , base .UD (client ), err )
629
+ base .InfofCtx (ctx , base .KeyAuth , "Client %v could not verify JWT. Error: %v" , base .UD (op . Name ), err )
630
630
return nil , err
631
631
}
632
632
633
633
identity , ok , err := getIdentity (idToken )
634
634
if err != nil {
635
- base .InfofCtx (ctx , base .KeyAuth , "Error getting identity from token (Identity: %v, Error: %v)" , base .UD (identity ), err )
635
+ base .InfofCtx (ctx , base .KeyAuth , "Error getting identity from token (Identity: %+ v, Error: %v)" , base .UD (identity ), err )
636
636
}
637
637
if ! ok {
638
638
return nil , err
@@ -654,7 +654,7 @@ func getIssuerWithAudience(token *jwt.JSONWebToken) (issuer string, audiences []
654
654
return issuer , audiences , pkgerrors .Wrapf (err , "failed to parse JWT claims" )
655
655
}
656
656
if claims .Issuer == "" {
657
- return issuer , audiences , fmt .Errorf ("malformed JWT %v , issuer claim doesn't exist" , token )
657
+ return issuer , audiences , fmt .Errorf ("malformed JWT, issuer claim doesn't exist" )
658
658
}
659
659
return claims .Issuer , claims .Audience , err
660
660
}
0 commit comments