Bug ID 783233: OAuth puts quotation marks around claim values that are not string type

Last Modified: Dec 13, 2019

Bug Tracker

Affected Product:  See more info
BIG-IP APM(all modules)

Known Affected Versions:
14.0.0, 14.0.0.1, 14.0.0.2, 14.0.0.3, 14.0.0.4, 14.0.0.5, 14.0.1, 14.0.1.1, 14.1.0, 14.1.0.1, 14.1.0.2, 14.1.0.3, 14.1.0.4, 14.1.0.5, 14.1.0.6, 14.1.2, 14.1.2.1, 14.1.2.2, 15.0.0, 15.0.1

Fixed In:
15.1.0

Opened: May 17, 2019
Severity: 2-Critical

Symptoms

When you define a claim to use with OAuth, and the claim-type setting is set to something other than String, the claim value is treated as a string anyway and encapsulated in quotation marks.

Impact

The claim value is encapsulated in quotation marks and processed as a string.

Conditions

-- OAuth is configured. -- The oauth claim value being used is not of type string (i.e. array, or boolean, or number)

Workaround

None.

Fix Information

OAuth no longer puts quotation marks around claim values that are not string type.

Behavior Change