mirror of
https://github.com/fleetdm/fleet
synced 2026-05-23 08:58:41 +00:00
In https://github.com/fleetdm/fleet/pull/16750 we introduced logic to prevent POST requests to frontend endpoints. The redirect for SSO was using `http.StatusTemporaryRedirect` as the status code, which preserves the original request method (`POST` in this case). This changes the method to be `http.StatusSeeOther`, [per MDN][1]: > This response code is often sent back as a result of PUT or POST. The > method used to display this redirected page is always GET. [1]: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/303 # Checklist for submitter If some of the following don't apply, delete the relevant line. <!-- Note that API documentation changes are now addressed by the product design team. --> - [x] Changes file added for user-visible changes in `changes/` or `orbit/changes/`. See [Changes files](https://fleetdm.com/docs/contributing/committing-changes#changes-files) for more information. - [x] Added/updated tests - [x] Manual QA for all new/changed functionality
1 line
102 B
Text
1 line
102 B
Text
* Fixed a bug that caused macOS ADE enrollments gated behind SSO to get a "method not allowed" error.
|