Skip to content

Commit a18a58b

Browse files
authored
MOSIP-44250: allow expired certificate to verify jwt sign (#513)
* MOSIP-44250: allow expired certifivate to verify jwt sign Signed-off-by: nagendra0721 <nagendra0718@gmail.com> * MOSIP-44250: Disable error logging for certificate date validation Comment out error logging for invalid certificate dates. Signed-off-by: nagendra0721 <nagendra0718@gmail.com> --------- Signed-off-by: nagendra0721 <nagendra0718@gmail.com>
1 parent 9930608 commit a18a58b

1 file changed

Lines changed: 4 additions & 4 deletions

File tree

kernel/kernel-keymanager-service/src/main/java/io/mosip/kernel/signature/service/impl/SignatureServiceImpl.java

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -619,10 +619,10 @@ private boolean verifySignature(String[] jwtTokens, String actualData, Certifica
619619
X509Certificate x509CertToVerify = (X509Certificate) certToVerify;
620620
boolean validCert = SignatureUtil.isCertificateDatesValid(x509CertToVerify);
621621
if (!validCert) {
622-
LOGGER.error(SignatureConstant.SESSIONID, SignatureConstant.JWT_SIGN, SignatureConstant.BLANK,
623-
"Error certificate dates are not valid.");
624-
throw new CertificateNotValidException(SignatureErrorCode.CERT_NOT_VALID.getErrorCode(),
625-
SignatureErrorCode.CERT_NOT_VALID.getErrorMessage());
622+
// LOGGER.error(SignatureConstant.SESSIONID, SignatureConstant.JWT_SIGN, SignatureConstant.BLANK,
623+
// "Error certificate dates are not valid.");
624+
// throw new CertificateNotValidException(SignatureErrorCode.CERT_NOT_VALID.getErrorCode(),
625+
// SignatureErrorCode.CERT_NOT_VALID.getErrorMessage());
626626
}
627627

628628
String keyAlgorithm = x509CertToVerify.getPublicKey().getAlgorithm();

0 commit comments

Comments
 (0)