From 269c2c9835438969a3e40001ce354620689b9f9f Mon Sep 17 00:00:00 2001 From: Justin Richer Date: Tue, 14 Aug 2012 12:11:51 -0400 Subject: [PATCH] fixed nonce cookie handling --- .../mitre/openid/connect/client/OIDCSignedRequestFilter.java | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/openid-connect-client/src/main/java/org/mitre/openid/connect/client/OIDCSignedRequestFilter.java b/openid-connect-client/src/main/java/org/mitre/openid/connect/client/OIDCSignedRequestFilter.java index 16d8598b1..5cbc2ed67 100644 --- a/openid-connect-client/src/main/java/org/mitre/openid/connect/client/OIDCSignedRequestFilter.java +++ b/openid-connect-client/src/main/java/org/mitre/openid/connect/client/OIDCSignedRequestFilter.java @@ -118,7 +118,7 @@ public class OIDCSignedRequestFilter extends AbstractOIDCAuthenticationFilter { response.addCookie(nonceCookie); - claims.setClaim("nonce", nonceCookie); + claims.setClaim("nonce", nonce); try { signingAndValidationService.signJwt(jwt);