From 491f3f0e9504ae63ca7095d1bc40ebb7e2089bf4 Mon Sep 17 00:00:00 2001 From: Guy Huynh Date: Thu, 8 Sep 2016 10:20:34 -0400 Subject: [PATCH] less restrictive on Authorization header check --- src/ResourceServer.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/ResourceServer.php b/src/ResourceServer.php index 245cb4e2..697afdf4 100644 --- a/src/ResourceServer.php +++ b/src/ResourceServer.php @@ -138,7 +138,7 @@ class ResourceServer extends AbstractServer */ public function determineAccessToken($headerOnly = false) { - if ($this->getRequest()->headers->get('Authorization') !== null) { + if (!empty($this->getRequest()->headers->get('Authorization'))) { $accessToken = $this->getTokenType()->determineAccessTokenInHeader($this->getRequest()); } elseif ($headerOnly === false && (! $this->getTokenType() instanceof MAC)) { $accessToken = ($this->getRequest()->server->get('REQUEST_METHOD') === 'GET')