From 4f52c1852ffe0467e8718edb7509b11d6ae5b992 Mon Sep 17 00:00:00 2001 From: Robert von Burg Date: Fri, 2 Oct 2020 11:20:38 +0200 Subject: [PATCH] [Fix] Handle null authorization --- .../li/strolch/rest/filters/AuthenticationRequestFilter.java | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/li.strolch.rest/src/main/java/li/strolch/rest/filters/AuthenticationRequestFilter.java b/li.strolch.rest/src/main/java/li/strolch/rest/filters/AuthenticationRequestFilter.java index 51c117aac..9804ea5a1 100644 --- a/li.strolch.rest/src/main/java/li/strolch/rest/filters/AuthenticationRequestFilter.java +++ b/li.strolch.rest/src/main/java/li/strolch/rest/filters/AuthenticationRequestFilter.java @@ -155,7 +155,7 @@ public class AuthenticationRequestFilter implements ContainerRequestFilter { protected Certificate validateSession(ContainerRequestContext requestContext, String remoteIp) { String authorization = requestContext.getHeaderString(HttpHeaders.AUTHORIZATION); - authorization = authorization.trim(); + authorization = authorization == null ? "" : authorization.trim(); if (isEmpty(authorization) || (authorization.startsWith("Basic ") && !getRestful().isBasicAuthEnabled())) { return validateCookie(requestContext, remoteIp);