From 06bc7c4de7e40a362562df514d88a98e251f4b13 Mon Sep 17 00:00:00 2001 From: Florian Dold Date: Tue, 30 Jan 2018 00:25:32 +0100 Subject: make ApiKey part case insensitive --- etc/nginx/sites-enabled/test.site | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) (limited to 'etc/nginx') diff --git a/etc/nginx/sites-enabled/test.site b/etc/nginx/sites-enabled/test.site index 8420010..bc2a5ca 100644 --- a/etc/nginx/sites-enabled/test.site +++ b/etc/nginx/sites-enabled/test.site @@ -223,7 +223,9 @@ server { error_page 419 = @green; recursive_error_pages on; - if ($http_authorization != "ApiKey sandbox") { + # match the ApiKey part ignoring case, and the actual key + # with case-sensitivity on. + if ($http_authorization !~ "(?i)ApiKey (?-i)sandbox") { return 401; } -- cgit v1.2.3