You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
Commit 19e0d0e
Browse filesBrowse the repository at this point in the historyBrowse files
fix(kernel): move JWT M2M options to internal type; address review
Addresses PR #504 review feedback:
- Move oauthJwtKeyFile/oauthJwtKid/oauthJwtPassphrase/oauthJwtAlgorithm/
tokenUrl off the public `databricks-oauth` AuthOptions onto
InternalConnectionOptions (kernel-only), mirroring `useKernel` and the
TLS knobs. The Thrift backend has no JWT client-assertion path, so
exposing them on the shared public type would let a Thrift caller set
them and have them silently ignored (Eric's divergence concern).
- Classify JWT M2M correctly in telemetry `mapAuthType` (`oauth-m2m-jwt`)
instead of misreporting it as `external-browser` (bot F1).
- Reject a PAT `token` supplied alongside `oauthJwtKeyFile` in the
PAT-branch ambiguity guard, so a JWT key can't be silently dropped
under authType 'access-token' (bot consistency note).
- Add regression tests: connect() on the useKernel path installs no
OAuth provider (no eager browser flow) / a PAT-only provider when a
token is present (bot F2); plus the new PAT+JWT ambiguity guard.
Co-authored-by: Isaac
Signed-off-by: Rahul Singhal <rahul.singhal@databricks.com>
0 commit comments