Inbound OAuth 2.0 API authenticating without token with glide_user cookies

Guilherme Silve
Tera Contributor

Hello Community, we have recently developed some APIs with OAuth 2.0 authentication, after we made the first correct request test with Postman, ServiceNow responds with several cookies, along which is "glide_user", that is allowing us to authenticate on said API without the authorization headers, returning 200.


Does anyone know if this is standard ServiceNow behavior? And is there any way to prevent our instance from sending those cookies?

0 REPLIES 0