Support

Home Forums Event Espresso Premium Authorization header malformed error

Authorization header malformed error

Posted: June 3, 2020 at 8:10 am


amcfamily

June 3, 2020 at 8:10 am

We’ve been using the Event Espresso app for a few years, but recently ran into trouble. When a user tries to log in (on Android or iPhone) it returns a “authorization header malformed” error and returns to the login page. The same user information can log the user into the web site fine. We’re using basic authentication and have the .htaccess “SetEnvIf Authorization “(.*)” HTTP_AUTHORIZATION=$1″ line set properly. We’re also using WPEngine. This was working, and I’m not sure where to start checking for what might have changed. Any thoughts as to where to start looking?


Tony

  • Support Staff

June 3, 2020 at 8:32 am

Hi there,

Looking over your site it looks like you may have this plugin activated:

https://wordpress.org/plugins/jwt-authentication-for-wp-rest-api/

Looking over the support threads there are a couple of threads showing this error when using basic auth which is very likely to be related to this issue.

https://wordpress.org/support/topic/error-authorization-header-malformed-jwt_auth_bad_auth_header/

https://wordpress.org/support/topic/fix-basic-authentication-jwt_auth_bad_auth_header-error/

If you disable the above plugin, does the app work as expected then?


amcfamily

June 3, 2020 at 8:44 am

Hi Tony, thanks for the quick response! Yes, disabling that plugin seems to allow the app to authenticate. It’s not a long-term solution, however, as we need to use the JWT authentication plugin for a different mobile app in the near future. Do you know if the “Application Passwords” method of authenticating with the Event Espresso app would bypass this problem?


Tony

  • Support Staff

June 3, 2020 at 9:11 am

No, I don’t think it would as it’s still using basic auth.

The JWT Auth plugin needs to fix this as it is currently hijacking all requests even those not using JWT / Bearer Tokens.


amcfamily

June 3, 2020 at 9:26 am

Got it, thanks!

You must be logged in to reply to this support post. Sign In or Register for an Account

Support forum for Event Espresso 3 and Event Espresso 4.
Documentation for EE3 and EE4
Documentation for Event Espresso 3 Documentation for Event Espresso 4

Status: publish

Updated by  amcfamily 4 months ago ago

Topic Tags

Notifications

This topic is: resolved
Do NOT follow this link or you will be banned from the site!
[gravityform id=80 title=false description=false ajax=false]
<div class='gf_browser_unknown gform_wrapper' id='gform_wrapper_80' ><form method='post' enctype='multipart/form-data' id='gform_80' action='/topic/authorization-header-malformed-error/'> <div class='gform_body'><ul id='gform_fields_80' class='gform_fields top_label form_sublabel_below description_below'><li id='field_80_1' class='gfield gfield_contains_required field_sublabel_below field_description_below gfield_visibility_visible' ><label class='gfield_label' for='input_80_1' >First name<span class='gfield_required'>*</span></label><div class='ginput_container ginput_container_text'><input name='input_1' id='input_80_1' type='text' value='' class='medium' aria-required="true" aria-invalid="false" /></div></li><li id='field_80_2' class='gfield gfield_contains_required field_sublabel_below field_description_below gfield_visibility_visible' ><label class='gfield_label' for='input_80_2' >Email address<span class='gfield_required'>*</span></label><div class='ginput_container ginput_container_email'> <input name='input_2' id='input_80_2' type='email' value='' class='medium' aria-required="true" aria-invalid="false" /> </div></li><li id='field_80_3' class='gfield gfield_contains_required field_sublabel_below field_description_below gfield_visibility_visible' ><label class='gfield_label' >GDPR Agreement<span class='gfield_required'>*</span></label><div class='ginput_container ginput_container_checkbox'><ul class='gfield_checkbox' id='input_80_3'><li class='gchoice_80_3_1'> <input name='input_3.1' type='checkbox' value='I consent to have this website store my submitted information so they can respond to my inquiry.' id='choice_80_3_1' /> <label for='choice_80_3_1' id='label_80_3_1'>I consent to have this website store my submitted information so they can respond to my inquiry.</label> </li></ul></div></li><li id='field_80_4' class='gfield gform_validation_container field_sublabel_below field_description_below gfield_visibility_visible' ><label class='gfield_label' for='input_80_4' >Name</label><div class='ginput_container'><input name='input_4' id='input_80_4' type='text' value='' autocomplete='off'/></div><div class='gfield_description' id='gfield_description_80_4'>This field is for validation purposes and should be left unchanged.</div></li> </ul></div> <div class='gform_footer top_label'> <input type='submit' id='gform_submit_button_80' class='gform_button button' value='Download Now' onclick='if(window["gf_submitting_80"]){return false;} if( !jQuery("#gform_80")[0].checkValidity || jQuery("#gform_80")[0].checkValidity()){window["gf_submitting_80"]=true;} ' onkeypress='if( event.keyCode == 13 ){ if(window["gf_submitting_80"]){return false;} if( !jQuery("#gform_80")[0].checkValidity || jQuery("#gform_80")[0].checkValidity()){window["gf_submitting_80"]=true;} jQuery("#gform_80").trigger("submit",[true]); }' /> <input type='hidden' class='gform_hidden' name='is_submit_80' value='1' /> <input type='hidden' class='gform_hidden' name='gform_submit' value='80' /> <input type='hidden' class='gform_hidden' name='gform_unique_id' value='' /> <input type='hidden' class='gform_hidden' name='state_80' value='WyJbXSIsIjBiNjdjZjkyMDUzOWUxOWY5Y2NiZjIwMzM4YjA1Mjk4Il0=' /> <input type='hidden' class='gform_hidden' name='gform_target_page_number_80' id='gform_target_page_number_80' value='0' /> <input type='hidden' class='gform_hidden' name='gform_source_page_number_80' id='gform_source_page_number_80' value='1' /> <input type='hidden' name='gform_field_values' value='' /> </div> </form> </div><script type='text/javascript'> jQuery(document).bind('gform_post_render', function(event, formId, currentPage){if(formId == 80) {} } );jQuery(document).bind('gform_post_conditional_logic', function(event, formId, fields, isInit){} );</script><script type='text/javascript'> jQuery(document).ready(function(){jQuery(document).trigger('gform_post_render', [80, 1]) } ); </script>
[i]
[i]