Skip to content

seen_nonce warning in Sender.accept_response #50

@jkeys089

Description

@jkeys089

I'm using v0.3.4 on python 3.6 and I'm seeing the following warning being logged during Sender.accept_response calls: seen_nonce was None; not checking nonce. You may be vulnerable to replay attacks

I'm confused since there is no nonce in the server's Server-Authorization response header. Is this possibly a bug or am I just misunderstanding?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions