Browse Source

pass through nonce

pull/59/head
Justin Richer 13 years ago
parent
commit
4a15e51e12
  1. 2
      openid-connect-server/src/main/java/org/mitre/openid/connect/token/ConnectAuthCodeTokenGranter.java

2
openid-connect-server/src/main/java/org/mitre/openid/connect/token/ConnectAuthCodeTokenGranter.java

@ -170,6 +170,8 @@ public class ConnectAuthCodeTokenGranter implements TokenGranter {
idToken.getClaims().setIssuer(configBean.getIssuer());
// TODO: expiration? other fields?
idToken.getClaims().setClaim("nonce", unconfirmedAuthorizationRequest.getParameters().get("nonce"));
//Sign
//TODO: check client to see if they have a preferred alg, attempt to use that

Loading…
Cancel
Save