← Back to events
CoolingTechOutage10978 minOngoing

401 errors due to JWT rejections

  • JWT: 2 events in the last 90 days
  • JWT: 2th Outage in the last 90 days

What happened

Aug 21 , 17:21 UTC Update - We are continuing to test and rollout the fixes for intermittent HTTP 401 errors. In most cases, waiting and refreshing is successful. We will monitor eu-central-2 over the weekend and are preparing for the fix to be pushed to all regions starting Monday. Thank you for your patience while we've worked on multiple fixes for this issue. Aug 20 , 16:37 UTC Update - As part of the incident re…

Summary assembled by rule from the sources below

Why it's spreading

Timeline

  1. First appeared on Supabase StatusSupabase Status
    1. IdentifiedWe have identified the root cause of newly refreshed JWTs being rejected by the API, resulting in HTTP 401 errors for affected sessions. We are working on a fix and will provide updates as things progress.
    2. UpdateOur teams are continuing to work on the fix and rollout is underway for selected customers. We will provide another update as we are applying the fix to all impacted users.
    3. UpdateFixes for this issue are being sequentially rolled out. The impact of the issue is limited to a subset of new projects that can experience it upon some JWT renewals. We will update the status when all the fix rollouts have completed.
    4. UpdateAs part of the incident remediation flow, we have separately identified "/lib/aarch64-linux-gnu/libc.so.6: version `GLIBC_2.34' not found" error between 11:15 - 16:24 UTC today affecting PostgREST. This has been fixed and we can see the error rates have subsided.
    5. UpdateWe are continuing to test and rollout the fixes for intermittent HTTP 401 errors. In most cases, waiting and refreshing is successful. We will monitor eu-central-2 over the weekend and are preparing for the fix to be pushed to all regions starting Monday. Thank you for your patience while we've wor…

Sources

Status