Skip to content

Commit 20fddc9

Browse files
committed
Refer to RelyingParty.origins setting in origin mismatch error message
1 parent 3c74bb5 commit 20fddc9

File tree

2 files changed

+4
-2
lines changed

2 files changed

+4
-2
lines changed

webauthn-server-core/src/main/java/com/yubico/webauthn/FinishAssertionSteps.java

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -400,7 +400,8 @@ public void validate() {
400400
final String responseOrigin = response.getResponse().getClientData().getOrigin();
401401
assertTrue(
402402
OriginMatcher.isAllowed(responseOrigin, origins, allowOriginPort, allowOriginSubdomain),
403-
"Incorrect origin: " + responseOrigin);
403+
"Incorrect origin, please see the RelyingParty.origins setting: %s",
404+
responseOrigin);
404405
}
405406

406407
@Override

webauthn-server-core/src/main/java/com/yubico/webauthn/FinishRegistrationSteps.java

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -215,7 +215,8 @@ public void validate() {
215215
final String responseOrigin = clientData.getOrigin();
216216
assertTrue(
217217
OriginMatcher.isAllowed(responseOrigin, origins, allowOriginPort, allowOriginSubdomain),
218-
"Incorrect origin: " + responseOrigin);
218+
"Incorrect origin, please see the RelyingParty.origins setting: %s",
219+
responseOrigin);
219220
}
220221

221222
@Override

0 commit comments

Comments
 (0)