Ovidiu Popa
298ebc7c01
Avoid client secret double encoding when updating a registered client
...
This might have to be revisited at a later point, but to check if a value is encoded or not is quite tricky. The decision was to remove client_secret and client_secret_expires_at from the update statement
Closes gh-389
2021-09-23 13:51:56 -04:00
Joe Grandja
0735abdaad
Polish gh-411
2021-09-23 12:01:42 -04:00
Dmitriy Dubson
0dfe5cb44a
Fix cancel consent functionality on default consent page
...
- Fix also applies to custom consent sample
Closes gh-393
2021-09-23 08:17:54 -04:00
Joe Grandja
e4ce97b887
Access token is active after revoke then refresh
...
Closes gh-432
2021-09-22 10:34:55 -04:00
Joe Grandja
f3f69b300f
Authorization failure does not clear current Authentication
...
Closes gh-409
2021-08-18 20:00:02 -04:00
Joe Grandja
f3c29bd545
Use OAuth2AuthenticationException(String errorCode)
...
Closes gh-402
2021-08-18 15:23:45 -04:00
Joe Grandja
ea1f95b4ed
Replace stream usage with for loops
...
Closes gh-401
2021-08-18 13:42:08 -04:00
Joe Grandja
3ee47efff7
Disable Oidc client registration by default
...
Closes gh-398
2021-08-17 10:04:19 -04:00
Joe Grandja
7680505eed
Move OAuth2AuthorizationCode
...
Closes gh-395
2021-08-13 04:56:24 -04:00
Joe Grandja
c7815939d2
Validate redirect_uri on dynamic client registration
...
Closes gh-392
2021-08-10 09:28:26 -04:00
Joe Grandja
6b5d9f0fe5
Polish JwtEncoder APIs
...
Closes gh-391
2021-08-10 04:49:27 -04:00
Steve Riesenberg
115a78d5f5
Add post processor to register ProviderSettings Bean
...
Closes gh-373
2021-07-30 11:58:42 -04:00
Ovidiu Popa
1929e3a80a
JdbcRegisteredClientRepository hashes client secret on save
...
Closes gh-378
2021-07-30 11:11:32 -04:00
Joe Grandja
7546d18a40
Polish gh-379
2021-07-30 09:55:29 -04:00
Steve Riesenberg
83915e8421
Do not issue refresh token to public client
...
Closes gh-296
2021-07-30 09:55:29 -04:00
Joe Grandja
0493bbf1d1
OAuth2ClientAuthenticationToken supports any type of credentials
...
Closes gh-382
2021-07-30 09:54:56 -04:00
Ovidiu Popa
41f8c9cd00
Add update support in JdbcRegisteredClientRepository
...
Closes gh-356
2021-07-29 11:10:36 -04:00
Joe Grandja
3d4df8807d
Provide configuration for client authentication
...
Closes gh-380
2021-07-29 10:24:00 -04:00
Joe Grandja
3ea7d8c9b6
Provide configuration for refresh token generator
...
Closes gh-377
2021-07-28 06:02:56 -04:00
Joe Grandja
06ad211fce
Provide configuration for authorization code generator
...
Closes gh-376
2021-07-28 04:56:05 -04:00
Joe Grandja
f6c4d49b9f
Introduce OAuth2AuthenticationValidator
...
Closes gh-374
2021-07-27 04:28:23 -04:00
Joe Grandja
0723936b8a
Remove OAuth2RefreshToken2
...
Closes gh-367
2021-07-23 06:18:30 -04:00
Joe Grandja
0d7727a7d4
Make Settings implementations immutable
...
Closes gh-366
2021-07-23 05:50:17 -04:00
Joe Grandja
70142f3705
Rename ClientSettings.requireUserConsent() to requireAuthorizationConsent()
...
Closes gh-363
2021-07-21 14:37:34 -04:00
Joe Grandja
a7feab605b
Remove OAuth2ParameterNames2
...
Closes gh-361
2021-07-21 13:35:59 -04:00
Joe Grandja
d85ce0a6dd
Reduce visibility of default endpoint URI constants
...
Closes gh-358
2021-07-21 10:42:59 -04:00
Joe Grandja
5593208e61
Move AuthenticationConverter's to web.authentication package
...
Closes gh-357
2021-07-21 09:32:24 -04:00
Joe Grandja
beb1233358
Rename OAuth2TokenIntrospectionClaimAccessor.getScope() to getScopes()
...
Closes gh-354
2021-07-21 06:34:03 -04:00
Joe Grandja
75d649578a
Polish gh-350
2021-07-20 06:31:52 -04:00
Bibibiu
bd98031036
Remove use of deprecated ClientAuthenticationMethod's
...
Closes gh-346
2021-07-20 05:38:01 -04:00
Steve Riesenberg
687f03f047
Fix windows test failures
2021-07-14 11:11:56 -05:00
Joe Grandja
7ffcbe57a7
Fix package tangle
2021-07-09 08:00:45 -04:00
Joe Grandja
c93c1a8097
Polish gh-338
2021-07-09 06:51:13 -04:00
Joe Grandja
1ae4f7aa13
Polish JdbcRegisteredClientRepository
...
Issue gh-291
2021-07-09 06:06:53 -04:00
Joe Grandja
a11284f0f5
Polish gh-331
2021-07-09 04:37:52 -04:00
Joe Grandja
ad108f519a
Polish JdbcOAuth2AuthorizationConsentService
...
Issue gh-314
2021-07-08 09:58:07 -04:00
Joe Grandja
9787794ea1
Polish JdbcOAuth2AuthorizationService
...
Issue gh-304
2021-07-08 08:50:02 -04:00
Steve Riesenberg
4204bc7e78
Temporarily fix expires_in for access token response
...
TODO: This can be reverted when Spring Security 5.6 is released.
Closes gh-281
2021-07-07 08:05:44 -04:00
Anoop Garlapati
385fc37b1d
Refresh token grant may issue ID token
...
See https://openid.net/specs/openid-connect-core-1_0.html#RefreshTokenResponse
Closes gh-287
2021-07-07 06:18:25 -04:00
Daniel Garnier-Moiroux
b62b161b95
Include WebAuthenticationDetails in token requests
...
Closes gh-322
2021-07-07 04:49:26 -04:00
Joe Grandja
9def059e29
Provide configuration for the authorization endpoint
...
Closes gh-342
2021-07-06 18:15:59 -04:00
Joe Grandja
fb276e7a4a
Provide extension for processing authorization response
...
Issue gh-342
2021-07-06 15:47:33 -04:00
Joe Grandja
543fa264b3
Provide extension for processing authorization request
...
Issue gh-342
2021-07-06 15:07:59 -04:00
Joe Grandja
4517022f36
Polish authorization consent
...
Issue gh-340 gh-280
2021-07-06 10:21:12 -04:00
Joe Grandja
08ba07d676
Extract AuthenticationProvider from OAuth2AuthorizationEndpointFilter
...
Closes gh-340
2021-07-06 09:16:27 -04:00
Steve Riesenberg
023e22c9d3
Update integration tests to use jdbc
2021-07-01 17:50:19 -05:00
Steve Riesenberg
549cdc7222
Update integration tests to use in-memory
2021-07-01 17:50:19 -05:00
Steve Riesenberg
a949998664
Add test to override schema for JdbcOAuth2AuthorizationConsentService
2021-06-30 15:58:17 -05:00
Steve Riesenberg
aa208a2d30
Add correct script for testing JdbcOAuth2AuthorizationService
2021-06-30 13:05:10 -05:00
Steve Riesenberg
99fb4c8a5f
Add test to override schema for JdbcOAuth2AuthorizationService
2021-06-30 12:08:35 -05:00