最近搜索


没有最近搜索

Robert Hung's Avatar

Robert Hung

已加入2023年10月18日

·

最后活动2023年10月18日

关注

0

关注者

0

活动总数

2

投票

0

订阅

1

活动概览

的最新活动 Robert Hung

Robert Hung 进行了评论,

评论Security and user access in Zendesk Support

Hello! I have tested the two endpoints for revoking token, and noticed the one ending with /current does not work as expected. I get a 204 response, but I can continue using the same token for future requests.

I did a comparison of the other revoke endpoint that requires you to pass in the /{oauth_token_id} and this works as expected - all subsequent requests return with a 401 unauthorized.

Is this expected, or am I missing something?

I would prefer to use that endpoint because the access token we provide does not have full read scopes, preventing the use of the show token endpoint to retrieve the oauth_token_id and revoke using the working endpoint.

查看评论 · 已于 2023年10月18日 编辑 · Robert Hung

0

关注者

0

投票

0

评论