Commit Graph

415 Commits (17411f59e70ed94b13af8504f4991d7b2c186834)

Author SHA1 Message Date
Federica Agostini 19243821ed
Fix Charset to UTF-8 used by token value hash function (#11) 2024-01-24 12:05:23 +01:00
Enrico Vianello 29ec962d01 Removed AT expiration in case of infinite token
Bump version to 1.3.6-cnaf-20231129
2023-12-01 10:34:07 +01:00
Enrico Vianello da282b85aa Bump version to v1.3.6.cnaf-20231113
Back to bouncycastle v1.58
2023-11-13 17:49:53 +01:00
Enrico Vianello f504019231 Move version to 1.3.6.cnaf.20231030 and upgrade deps 2023-10-30 17:30:04 +01:00
Federica Agostini 20a9ed1a1a Always set access token exp claim
It follows RFC https://datatracker.ietf.org/doc/html/rfc9068
Bumped MitreID version 1.3.6.cnaf-20230914
2023-09-14 12:21:43 +02:00
Enrico Vianello 521019fed8 Use unencoded hash function and bump version to v1.3.6.cnaf.20230726 2023-07-26 10:55:10 +01:00
Enrico Vianello 07aeb26312 Bump version to v1.3.6.cnaf-20230725 2023-07-25 22:28:59 +01:00
Enrico Vianello fc8f1452e6 Bump version to v1.3.6.cnaf-20230717 2023-07-17 12:40:25 +02:00
Enrico Vianello 8b26560ff4 Bump version to v1.3.6.cnaf-SNAPSHOT 2023-07-12 16:44:03 +02:00
Andrea Ceccanti c6c4af6d12 Bumped version 2022-01-10 20:10:12 +01:00
Andrea Ceccanti 711a2e7eab Fix maven warnings 2021-10-25 16:55:53 +02:00
Andrea Ceccanti 096466268d Bump version to 1.3.5.cnaf.20210803 2021-08-03 11:43:32 +02:00
Andrea Ceccanti be8f32452e Propagate refresh token request to token enhancer 2020-01-19 21:22:20 +01:00
Andrea Ceccanti 2c48a4625c Fix scope checking in refresh token flow 2020-01-15 16:33:16 +01:00
Andrea Ceccanti 846727e9b3 Move dyn client validation to dedicated service
Which allows easier overriding for integrations
2019-10-04 07:40:16 +02:00
Andrea Ceccanti 68b2cc6a8c Bumped version to 1.3.5.cnaf.v20190827 2019-08-27 18:00:53 +02:00
Andrea Ceccanti e3392dd759 Merge upstream 1.3.5 with our local changes 2019-02-22 19:20:50 +01:00
Andrea Ceccanti 0ba26c1c03 inthemerge 2018-11-28 14:38:27 +01:00
Andrea Ceccanti 1136a048df Bumped version to 1.3.4.cnaf 2018-05-17 15:58:23 +02:00
Justin Richer 9d6f42b141
Merge pull request #1320 from bverhoeven/rfc7662-sub
Client: Parse 'sub' key to identify resource owner in introspection response (RFC7662)
2018-05-03 14:46:49 -04:00
Andrea Ceccanti 2eb5d1b3e2 Set device code validity in seconds for dynreg clients 2018-04-27 19:35:03 +02:00
Andrea Ceccanti 92c47c5449 Bumped version to 1.3.3.cnaf.rc0 2018-04-12 15:30:26 +02:00
enricovianello a69c3c5235 bumped version to 1.3.3.cnaf-SNAPSHOT 2018-02-26 12:14:34 +01:00
Justin Richer e2d94f422a new year 2018 2018-02-12 10:39:04 -05:00
Justin Richer b804f22bc8 [maven-release-plugin] prepare for next development iteration 2018-02-07 09:14:16 -05:00
Justin Richer f72e6b3e08 [maven-release-plugin] prepare release mitreid-connect-1.3.2 2018-02-07 09:14:10 -05:00
Brady Mulhollem f7da25fbe8 Upgrade nimbus-jose-jwt to 5.4. 2018-02-05 13:28:48 -05:00
Bas Verhoeven 85246d2d3e
Parse 'sub' to identify resource owner
As per https://tools.ietf.org/html/rfc7662#section-2.2 the `sub` key should
identify the resource owner in oauth2 introspection responses. 

This change adds support for the `sub` key and will allow the introspection 
response of RFC-compliant servers to be parsed.

Will still try `user_id` first as to not break backward compatibility.
2017-11-13 16:46:52 +01:00
Andrea Ceccanti 18517484a3 Bumped version to 1.3.2.cnaf.rc0
Now for real...
2017-09-26 16:37:16 +02:00
Andrea Ceccanti 880f2c1b2c Bumped version to 1.3.2.cnaf.rc0 2017-09-26 16:25:06 +02:00
Andrea Ceccanti 2b1df25aad Merge remote-tracking branch 'mitre/master' into devel-1.3.1
* mitre/master: (153 commits)
  removed old document PDFs from repo
  check for missing refresh token value on refresh, closes #1242
  removed unused field from UI config bean
  fixed client readme file
  Updated copyrights
  Corrected typo
  fixed unit test for new default redirect behavior
  set redirect URI matching to strict by default
  escaped output values on approval page, closes #1111
  added changelog file
  [maven-release-plugin] prepare for next development iteration
  [maven-release-plugin] prepare release mitreid-connect-1.3.1
  downgrade mysql dependency to GA version
  Removed double 'sure'
  fixed discovery endpoint, closes #1230
  Completed end session endpoint
  end session endpoint
  skeleton of end session endpoint, maybe need a change to user info lookup
  Fix psql_database script, replace SERIAL with BIGSERIAL and fix ...
  [maven-release-plugin] prepare for next development iteration
  ...
2017-09-21 14:25:06 +02:00
Justin Richer 4dc31cdfbd fixed client readme file 2017-05-26 20:17:29 -04:00
Justin Richer 661c242a9f Updated copyrights 2017-05-26 20:17:17 -04:00
Justin Richer 7b06d91700 [maven-release-plugin] prepare for next development iteration 2017-05-09 14:29:53 -04:00
Justin Richer 8301f35e17 [maven-release-plugin] prepare release mitreid-connect-1.3.1 2017-05-09 14:29:49 -04:00
Justin Richer 0efa77b580 [maven-release-plugin] prepare for next development iteration 2017-04-15 13:20:13 -04:00
Justin Richer b9b7bf53c3 [maven-release-plugin] prepare release mitreid-connect-1.3.0 2017-04-15 13:20:05 -04:00
Justin Richer 050662dd5c updated dependencies 2017-03-24 12:12:06 -04:00
Justin Richer bd72b4138d added missing copyright declarations 2017-03-21 14:11:40 -04:00
Justin Richer 32ce21b5cd automated code formatting and cleanup 2017-03-21 14:07:20 -04:00
Justin Richer dd0f69ba6d [maven-release-plugin] prepare for next development iteration 2017-03-20 11:58:58 -04:00
Justin Richer 80358566a5 [maven-release-plugin] prepare release mitreid-connect-1.3.0-RC2 2017-03-20 11:58:52 -04:00
Justin Richer 3e5e7a0f0b [maven-release-plugin] prepare for next development iteration 2017-03-03 18:03:26 -05:00
Justin Richer 0d84db49af [maven-release-plugin] prepare release mitreid-connect-1.3.0-RC1 2017-03-03 18:03:20 -05:00
Justin Richer 1cb5b6c6ff added toString to error for debug and display 2017-03-03 17:23:39 -05:00
Ryan Pickett e1ae8f3d8d Add parameters from error response to exception
Introduce a new exception class to hold the parameters from an
authentication error response, allowing simpler retrieval later in the
filter processing.
2017-03-03 17:22:13 -05:00
Justin Richer 52d2298f99 begin modularization of data import/export API 2017-02-15 11:51:32 -05:00
Justin Richer db50a88fe5 Happy New Year 2017 2017-01-17 17:09:14 -05:00
Justin Richer 275c1b7e1c user info fetcher cache throws error instead of returning null (as per library contract), closes #1144 2016-12-21 14:48:37 -05:00
Julian Schlichtholz c3d0c18af5 make HttpClient configurable, closes #1071 2016-12-02 16:23:55 -05:00