Comment 3 for bug 1243336

Revision history for this message
Morgan Fainberg (mdrnstm) wrote :

Perhaps 403 is the correct response for "invalid" x-subject-tokens.

Reference to current code that would need to be fixed in keystoneclient https://github.com/openstack/python-keystoneclient/blob/master/keystoneclient/middleware/auth_token.py#L1104