We have created a Jira REST module and also implemented OAuth in Servlet-Filter. We have added servlets for -
- /requesttoken
- /authorize
- /accesstoken
Now we are able to validate the oauth_token, sent in a REST service url (after succesfull authentication), but if we remove the annotation @AnonymousAllowed from REST module, then Jira is again calling the /requesttoken servlet and asking for authentication.
I would like to know, how we can authenticate REST module using OAuth, without annotation - @AnonymousAllowed.