Justin Richer
24a464e142
put in a dummy resource set service so that introspection can pass through
2015-05-12 20:30:05 -04:00
Justin Richer
a2edb31753
moved UMA server to its own module
2015-05-12 15:59:03 -04:00
Justin Richer
7188a06488
added deletion functionality to UI
2015-05-12 11:16:51 -04:00
Justin Richer
43a432eb9a
removed extraneous TODO
2015-05-12 10:31:22 -04:00
Justin Richer
ed7799b54a
make RPTs optionally expire, closes #794
2015-05-11 19:00:26 -04:00
Justin Richer
e0cdeb3571
inject uma token service
2015-05-11 18:20:57 -04:00
Justin Richer
fc64dcc9b9
discovery endpoint cleanup
2015-05-11 15:34:50 -04:00
Justin Richer
f4f08d9449
RPT endpoint cleanup
2015-05-11 15:28:09 -04:00
Justin Richer
1f083c7acb
extracted RPT generation component to new token service class, closes #797
2015-05-11 15:20:26 -04:00
Justin Richer
0ea06f01b8
moved claims processor to the right package
2015-05-11 15:07:56 -04:00
Justin Richer
53d4f15923
shuffle authz endpoint
2015-05-11 14:56:55 -04:00
Justin Richer
7951ff5086
separated claims processing out into its own service, closes #796
2015-05-11 14:44:21 -04:00
Justin Richer
8d5c7d6226
fixed some rogue documentation
2015-05-11 13:03:17 -04:00
Justin Richer
afad3a720b
Merge branch 'master' into uma
...
* master:
added strict URI matching option to redirect resolver (off by default)
2015-05-11 12:33:05 -04:00
Justin Richer
e155cdc282
added strict URI matching option to redirect resolver (off by default)
2015-05-09 16:37:11 -04:00
Justin Richer
06f7dc984d
switched to view constants
2015-04-12 21:20:10 -05:00
Justin Richer
d6dfa89533
check client information on delete of resource set
2015-04-12 21:15:03 -05:00
Justin Richer
7273b0a5b7
fixed discovery endpoint information, closes #805
2015-04-12 17:00:46 -05:00
Justin Richer
eb49d9624c
inject claims from OIDC auth token into permission ticket
2015-03-31 18:21:34 -04:00
Justin Richer
98cd5ba27d
added save to permission ticket system
2015-03-31 18:21:14 -04:00
Justin Richer
08413302eb
configured OIDC client on claims collection endpoint
2015-03-31 15:35:20 -04:00
Justin Richer
f48049be4d
deny tickets with no claims required (closes a race condition)
2015-03-31 10:26:06 -04:00
Justin Richer
dc10779abb
removed extraneous issuer in discovery endpoint, closes #793
2015-03-31 10:10:14 -04:00
Justin Richer
a38a0b6f75
removed extraneous bob
2015-03-30 18:19:13 -04:00
Justin Richer
6e095e3266
can now add and remove email address claims from the UI
2015-03-30 17:54:16 -04:00
Justin Richer
687517d7f4
Merge branch 'master' into claims-editing-ui
2015-03-30 12:21:59 -04:00
Justin Richer
d015d17fad
search for local users first (by email), then check remote users
2015-03-30 12:20:19 -04:00
Justin Richer
348ff7ee17
made webfinger endpoint search by email address, then by username
2015-03-30 12:18:50 -04:00
Justin Richer
5aa5cc1a10
added search by email to user info data stack
2015-03-30 12:18:50 -04:00
Justin Richer
e89d8cd985
added webfinger lookup helper service
2015-03-30 11:49:49 -04:00
Justin Richer
394785b9c4
don't give resource sets default client scopes
2015-03-30 09:57:10 -04:00
Justin Richer
7af19dbd61
added copyright text
2015-03-30 08:44:51 -04:00
Justin Richer
3e931c68b4
added policy editing overview page
2015-03-20 17:27:10 -04:00
Justin Richer
5698393d31
created claims API
2015-03-19 16:44:34 -04:00
Justin Richer
bde03411f1
Merge branch 'master' into uma
2015-03-18 21:42:26 -04:00
Justin Richer
006a4d1ec6
fixed import function of 1.2 data service
2015-03-18 21:42:18 -04:00
Justin Richer
6f149cba69
Merge branch 'master' into uma
2015-03-18 20:10:19 -04:00
Justin Richer
30e894a64a
put 'kid' into JWS header, closes #784
2015-03-18 20:09:06 -04:00
Justin Richer
866186f611
pointed data API at the correct service version
2015-03-18 19:54:42 -04:00
Justin Richer
6daeeefb33
augmented introspection unit tests with one for new permissions mode
2015-03-18 08:45:05 -04:00
Justin Richer
9f913244a0
fixed unit tests for introspection results
2015-03-18 08:00:18 -04:00
Justin Richer
7df31f1e87
completed rudimentary UMA authorization API.
...
Working: resource set registration, permission ticket creation, RPT creation from ticket
Still missing: adding required claims to resource set, adding provided claims to permission ticket
2015-03-17 22:26:12 -04:00
Justin Richer
1be9da52c6
separated ticket object from permission object to facilitate re-use of permission object with tokens
2015-03-17 21:16:29 -04:00
Justin Richer
f123366069
added scope filtering to protection api
2015-03-17 19:43:02 -04:00
Justin Richer
ff958e20b6
basic authorization support
2015-03-17 19:21:20 -04:00
Justin Richer
098519da5e
added OAuth2 error reporting to permission and resource set endpoints
2015-03-17 19:01:44 -04:00
Justin Richer
2aadb09f49
started claims service, added expiration to permissions
2015-03-16 22:52:21 -04:00
Justin Richer
c234f78dbd
Merge branch 'master' into authorization-api
2015-03-13 19:08:14 -04:00
Justin Richer
5873b336f2
fixed erroneous import
2015-03-13 19:07:27 -04:00
Justin Richer
8352145d82
Merge branch 'master' into authorization-api
...
Conflicts:
openid-connect-common/src/main/java/org/mitre/oauth2/service/SystemScopeService.java
openid-connect-server-webapp/src/main/webapp/WEB-INF/application-context.xml
openid-connect-server/src/main/java/org/mitre/discovery/web/DiscoveryEndpoint.java
openid-connect-server/src/main/java/org/mitre/oauth2/web/IntrospectionEndpoint.java
openid-connect-server/src/main/java/org/mitre/openid/connect/web/ClientAPI.java
openid-connect-server/src/test/java/org/mitre/oauth2/service/impl/TestDefaultIntrospectionAuthorizer.java
2015-03-13 18:39:26 -04:00