Commit Graph

705 Commits (31e3c5e5e759785e0dfbf3f8f4bb978d4ad75a6d)

Author SHA1 Message Date
Justin Richer 1144d511af inject scopes 2013-02-03 22:02:23 -05:00
Justin Richer f9d50db1f1 don't treat openid scope special here -- by default client gets access to *all* scopes it's registered for 2013-02-03 22:02:23 -05:00
Justin Richer 078342715b moved request object to request manager 2013-02-03 22:02:22 -05:00
Amanda Anganes 3399eed45a Added about, contact, and stats pages. Still largely placeholders, but the topbar works correctly now at least. 2013-01-31 11:34:07 -05:00
Justin Richer 0be254c99a updated token introspection output to match spec and client filter 2013-01-30 15:31:32 -05:00
Justin Richer e02e08563c changed order or custom filters to make assertions work, added client credentials token granter to default 2013-01-30 14:34:16 -05:00
Justin Richer c1d33bb55b bugfix in assertion processor 2013-01-30 14:34:16 -05:00
Amanda Anganes 2e2c0e8e6c Fixed bug in nonce processing 2013-01-29 13:07:41 -05:00
Amanda Anganes 3db74100a4 working on bug 2013-01-29 13:07:41 -05:00
Amanda Anganes dd8b48e863 Reset ConnectAuthorizationRequestManager to version from master 2013-01-29 13:07:41 -05:00
Amanda Anganes 06f970e61b Trying to fix nonce service 2013-01-29 13:07:41 -05:00
Amanda Anganes 86bf51f0a7 Added java reflection code for request object handling, needs to be tested 2013-01-29 13:07:41 -05:00
Amanda Anganes 677f0f2d4c Stubbed out required functionality for request object filtering 2013-01-29 13:07:41 -05:00
Amanda Anganes 67e8714671 Working on request object userinfo parsing 2013-01-29 13:07:41 -05:00
Justin Richer 779001a8c8 updated copyright year 2013-01-28 13:39:25 -05:00
Justin Richer 7269700dc6 switched injector from repository to service 2013-01-24 19:32:55 -05:00
Justin Richer f0ee36dad2 auth_type -> auth_method (addresses #258) 2013-01-18 18:26:55 -05:00
Justin Richer fd2253303e changed pointer on tabs, addresses #252 2013-01-18 18:17:39 -05:00
Justin Richer 899e306683 fixed JS crash on "new client" operation 2013-01-18 18:15:19 -05:00
Justin Richer 8831bc64a2 offline -> offline_access (addresses #248) 2013-01-18 18:03:39 -05:00
Justin Richer 27a26e0a35 (user_id/prn) -> sub 2013-01-18 16:40:05 -05:00
Justin Richer 1ab29882b4 fixed user prepoulation table 2013-01-18 15:38:53 -05:00
Justin Richer 0ab4ad4bbe added "birthdate", addresses #253 2013-01-18 15:38:41 -05:00
Justin Richer 6ef4dc817e genericized nimbus code, added caching 2013-01-18 15:10:48 -05:00
Justin Richer 2d21a72e7e switched to nimbus to check JWT signature 2013-01-18 15:10:48 -05:00
Justin Richer 60bda31c54 updated custom filter 2013-01-18 15:10:48 -05:00
Justin Richer c17bc05b0e wiring configuration 2013-01-18 15:10:48 -05:00
Justin Richer 4262be1fd3 added jwt processing to client auth provider 2013-01-18 15:06:00 -05:00
Justin Richer abd64eccd6 added framework for processing assertions for client auth 2013-01-18 15:06:00 -05:00
Amanda Anganes ad5e77f7ff Made nonce storage duration configurable in application-context.xml; 2013-01-10 10:34:40 -05:00
Amanda Anganes 59f1b1f05e Testing, nonce handling seems to be working now 2013-01-07 13:28:30 -05:00
Amanda Anganes a1a117cfde Added default constructor to ConnectAuthorizationRequestManager 2013-01-07 10:54:33 -05:00
Amanda Anganes af81e371fb Updated application-context to use new authorization request manager 2013-01-07 10:46:55 -05:00
Amanda Anganes 77b932f5a7 Added implementation of AuthorizationRequestManager. Nonce checking will go in here 2013-01-04 15:30:24 -05:00
Amanda Anganes 1af6513499 Removed nonce checking from token service impl 2013-01-04 15:30:24 -05:00
Amanda Anganes 7e7b2527db Added nonce to persistence.xml 2013-01-04 15:30:24 -05:00
Amanda Anganes 246ed962bb Added stub of repository test 2013-01-04 15:30:24 -05:00
Amanda Anganes e1dffb959c Added NonceReuseException 2013-01-04 15:30:24 -05:00
Amanda Anganes 8f8a3754db Added database tables for Nonce 2013-01-04 15:30:24 -05:00
Amanda Anganes a4637ec395 Fleshed out nonce service classes, added code to token service impl to check for and store nonces. Added JodaTime library for working with dates. 2013-01-04 15:30:24 -05:00
Amanda Anganes c7ae315e98 Added initial files for nonce service. Repository and service impls are stubs 2013-01-04 15:30:24 -05:00
Justin Richer cbcfe55bb9 added introspection flag to client bootstrap 2013-01-02 14:16:31 -05:00
Justin Richer 4068952a81 fixed well size, added comment 2013-01-02 10:19:55 -05:00
Justin Richer 655092a12b added introspection checkbox, added access tab
Signed-off-by: Justin Richer <jricher@mitre.org>
2012-12-21 16:38:52 -05:00
Justin Richer 9a1b2d7fac made client edit page tabbable (that was seriously easy) 2012-12-21 16:26:34 -05:00
Justin Richer 48866c15f2 button display cleanup 2012-12-21 16:07:59 -05:00
Justin Richer a85b1f5d74 split approved sites into two tables 2012-12-21 15:35:33 -05:00
Justin Richer 198a45369a buttonsize tweak 2012-12-21 15:03:45 -05:00
Justin Richer f12efc1b80 added dynreg caution block 2012-12-21 14:48:15 -05:00
Justin Richer 231e81a426 updated icons 2012-12-21 14:28:07 -05:00
Justin Richer 797d521691 cleaned up logged-in button 2012-12-21 13:04:33 -05:00
Justin Richer 7ebbe3acc4 removed mockups 2012-12-21 11:01:22 -05:00
Justin Richer 7459767646 fixed validation problem with new backbone 2012-12-20 17:46:34 -05:00
Justin Richer 37bca0d5fb cleaned out backbone validation plugin 2012-12-20 17:31:22 -05:00
Justin Richer 9dd54d47bb updated versions of backbone and underscore 2012-12-20 17:31:08 -05:00
Justin Richer e0672757bf update to bootstrap 2.2.2 2012-12-20 12:44:02 -05:00
Justin Richer 8ad28b41aa fixing CSS and collapsing headerbar 2012-12-20 12:35:30 -05:00
Justin Richer 67a682d53a added default router to backbone app 2012-12-18 13:56:57 -05:00
Justin Richer 87788f0710 let users visit home page without logging in 2012-12-18 13:56:46 -05:00
Justin Richer f265347311 tweaked error messages 2012-12-18 12:08:36 -05:00
Justin Richer 18ddd8333f added flag to allow introspection, relaxed same-client restrictions on introspection and chained tokens 2012-12-18 11:07:24 -05:00
Justin Richer 6eabc895b9 moved database file to a reasonable name 2012-12-17 13:45:39 -05:00
Justin Richer 1f53f41648 generic entity view now takes optional HttpStatus argument 2012-12-14 17:35:21 -05:00
Justin Richer a3790f943e cleaned up introspection endpoint to use exceptions 2012-12-14 17:35:20 -05:00
Justin Richer e5206f2b92 implemented jwt assertions for id tokens 2012-12-14 17:35:20 -05:00
Justin Richer 51b67ebc03 added queries to get access token from id token 2012-12-14 17:35:20 -05:00
Justin Richer 1853bd7117 added assertion token granter 2012-12-14 17:35:20 -05:00
Justin Richer 0d6c96f410 moved JPA adapter to data-context, addresses #242 2012-12-14 09:43:42 -05:00
Justin Richer 2a74be5baf bringing mysql tables up to date 2012-12-13 16:54:21 -05:00
Justin Richer 2c104a71e2 cleaned up mysql table 2012-12-13 16:04:45 -05:00
Justin Richer cda6163d0d null and blank handling 2012-12-12 12:29:14 -05:00
Justin Richer 06fad3a41c moved view for client API 2012-12-11 15:19:11 -05:00
Justin Richer 6344a72519 missed a few applicationName references, fixed API JSON rendering 2012-12-11 15:16:18 -05:00
Justin Richer dfd8e9c7c7 removed unused view 2012-12-11 15:15:52 -05:00
Justin Richer dd04df6a22 fixed javascript bugs 2012-12-11 14:08:10 -05:00
Justin Richer f12d3c7d30 fixed variable reference 2012-12-11 13:37:14 -05:00
Justin Richer 920777128d switched to uncompressed jquery 2012-12-11 13:29:19 -05:00
Justin Richer 829c8ae5f4 tweaked functionality of grant types and scopes 2012-12-11 13:16:33 -05:00
Justin Richer cc36851bdd propagated field name change to UI 2012-12-11 12:38:55 -05:00
Justin Richer 179903b074 propagated client changes to service 2012-12-11 12:31:01 -05:00
Justin Richer 2f7891d02c updated mysql table to new schema 2012-12-11 12:27:24 -05:00
Justin Richer bcfa37040e missed one 2012-12-11 12:18:51 -05:00
Justin Richer 33ceedb283 added scope and grant_type, switched to timeunit 2012-12-11 12:11:09 -05:00
Justin Richer e2bc15c2b2 beginning of client registration refactor to track IETF dynreg spec 2012-12-10 17:36:33 -05:00
Justin Richer 94c37f5815 added redelegate scope to client list, fixed inconsistency with refresh token issuance (addresses #239) 2012-12-10 16:53:05 -05:00
Justin Richer 510ddb48b7 override the correct part of the token granter class 2012-12-10 15:54:37 -05:00
Justin Richer bdcc6af096 temporary sanity check for client ID's 2012-12-10 11:40:03 -05:00
Justin Richer cab0839430 added workarounds for quirks in SECOAUTH 2012-12-10 11:27:28 -05:00
Justin Richer edc96d646c added chained token grant 2012-12-10 10:48:38 -05:00
Justin Richer 54708fb0ac fixed id token scopes (shouldn't inherit from parent token) 2012-12-10 10:11:02 -05:00
Justin Richer 2a206654b6 added client credential protection to revocation endpoint 2012-12-07 17:17:19 -05:00
Justin Richer e38b2b0ba5 shortened revocation endpoint url 2012-12-07 17:16:03 -05:00
Justin Richer fbc3c46128 Introspection now draft spec compliant, requires client auth
Currently this is the client that originally sent the token, we want to have a way to bind other "clients" to this token as well, like resource services. Also want to let open calls, sometimes.
2012-12-07 17:12:13 -05:00
Justin Richer 544e3d7b43 added copy constructors because Dave likes to use unmodifiable sets for no apparent reason 2012-12-07 10:06:10 -05:00
Justin Richer 64ef752f08 added refresh token granter for testing 2012-12-07 09:56:43 -05:00
Justin Richer 7561ac9e8c client dynamic registration now protected by access token, addresses #199 2012-12-06 17:48:23 -05:00
Justin Richer 7342da6a51 completed making id tokens into access tokens 2012-12-06 16:24:04 -05:00
Justin Richer e4f9fa2bbf labeled introspection endpoint 2012-12-06 16:19:25 -05:00
Justin Richer 17374a57e0 added ISO date format to generic entity view, addresses #232 2012-12-06 16:15:14 -05:00
Justin Richer 3378cd5c4c cleaned table 2012-12-06 14:24:38 -05:00
Justin Richer b8f701d9d8 switched id tokens to entities, they're now access tokens also
still needs some work to get the auth object right, for now we're just copying from the access token
2012-12-06 10:19:21 -05:00
Justin Richer 2ef8d16e9c typo, formatting 2012-12-05 15:49:50 -05:00
Justin Richer ba7ddf17f9 added bootstrapping for clients, cleaned up sql files 2012-12-05 15:04:14 -05:00
Justin Richer cf7ceb74f3 betterer logout button 2012-12-04 16:40:28 -05:00
Justin Richer 2f1a6864b8 made a better logout button 2012-12-04 16:37:57 -05:00
Justin Richer 838e029db1 added logout button 2012-12-04 16:18:58 -05:00
Justin Richer d7d9e84e70 fixed user_id mapping 2012-12-04 16:18:37 -05:00
Justin Richer f091343d84 moved back to in-memory database by default 2012-12-04 15:56:03 -05:00
Justin Richer 49e216412e Added bootstrapped users set. 2012-12-04 15:51:10 -05:00
Justin Richer dcc56ec9dd temporary tables to prevent casts from leaking 2012-12-04 14:38:08 -05:00
Justin Richer 8b37011244 added casts to varchar to avoid extraneous spaces 2012-12-04 13:35:40 -05:00
Justin Richer e305d3b16b Making stable in-memory and in-file database with HSQL 2012-12-03 17:53:25 -05:00
Justin Richer 061c0f0814 minor cleanup 2012-12-03 16:10:07 -05:00
Stephen Moore 250432ce7f Added information into the user_info table 2012-12-03 14:56:40 -05:00
Stephen Moore 1bcaa68cb4 Added user_info stuff... and changed serverconfig for issuer... 2012-12-03 14:56:40 -05:00
Stephen Moore 47b34d2b1b Added blacklist table to HSQLDB sql script 2012-12-03 14:56:40 -05:00
Stephen Moore 4fdb0816eb Moved DB to use in memory HSQLDB. Made authentication-provider use a jdbc-user-service in that in-memory hsqldb. 2012-12-03 14:56:40 -05:00
Justin Richer fce47c239a added slashes to patterns what needed them, removed vestigial intercept from user-context 2012-11-26 16:23:46 -05:00
Justin Richer 122a2de074 First attempt at making API not redirect to /login, failed 2012-11-26 16:05:46 -05:00
Justin Richer d07f67bd76 let user select when grants time out 2012-11-26 14:26:07 -05:00
Justin Richer 84401531ae tie refresh token generation to "offline" scope tag 2012-11-26 13:16:19 -05:00
Justin Richer 50040a8ef4 fixed checkbox labels 2012-11-26 12:57:49 -05:00
Justin Richer 667c3abc8a dynamic scope display/selection on approval page 2012-11-26 11:53:19 -05:00
Justin Richer 1281d75aa9 stopped re-parsing scopes 2012-11-26 11:53:19 -05:00
Justin Richer 9c3a40779b updated to SECOAUTH's horrible new object-breaking authorization request paradigm.
Bonus: it works!
2012-11-26 11:53:19 -05:00
Justin Richer 3e327b9df6 reverted to original controller behavior 2012-11-26 11:53:19 -05:00
Justin Richer cf4581a5eb updated configuration to reflect secoauth changes 2012-11-26 11:53:19 -05:00
Justin Richer 45ca4e565e updated to SECOAUTH-1.0.1-BUILD-SNAPSHOT 2012-11-26 11:53:19 -05:00
Amanda Anganes cf1ddf0457 Determined that init binder was not needed to fix default for Boolean require_auth_time; instead use defaultValue=\"true\" in the RequestParam declaration. Also fixed bug in ClientDetails service so that it will not blow up if the client has no redirect uris registered 2012-11-21 15:39:07 -05:00
Amanda Anganes 2084639828 Working on init binder for ClientDynamicRegistrationEndpoint 2012-11-21 14:54:24 -05:00
Amanda Anganes 8b0c520534 Issue 213, writing init binder to convert null Boolean values to false before calling setters 2012-11-21 14:53:41 -05:00
Justin Richer a2a29e7b76 trying out new confirmation controller 2012-11-21 10:00:35 -05:00
Justin Richer d9b6918bc2 softened error from scope checker -- returns false now, allows things to pass through 2012-11-20 14:08:18 -05:00
Justin Richer 9c08944a02 Changed arity on approved sites (now can have many per user/site combo) 2012-11-20 14:07:55 -05:00
Justin Richer 58b97f7371 stupid javascript 2012-11-20 13:16:08 -05:00
Justin Richer fda86e23e9 moved everything to use the consumes/produces framework of Spring 3.1 2012-11-20 13:12:21 -05:00
Justin Richer 51920ee381 switched to using "uneditable-input" classes instead of disabled input fields 2012-11-19 16:32:04 -05:00
Justin Richer e303319701 got rid of postrender 2012-11-19 16:13:49 -05:00
Justin Richer 5b0c17c5de added in checks to blacklist service upon client registration and update 2012-11-19 14:10:55 -05:00
Justin Richer 7a6c96a759 fixed links 2012-11-19 14:10:37 -05:00
Justin Richer e9d1ed270d service layer cleanups 2012-11-19 13:46:09 -05:00
Justin Richer 4e18fb4525 blacklist management UI 2012-11-19 13:01:16 -05:00
Justin Richer d576df4b31 fixed render length limits on list widget 2012-11-19 11:52:30 -05:00
Justin Richer 757e21a722 added blacklist API 2012-11-16 11:57:46 -05:00
Justin Richer 1f4b97bc7e fixed icon and variable reference 2012-11-16 10:14:28 -05:00
Justin Richer e86f19bd7c added dynamic icons to whitelist table 2012-11-15 17:53:38 -05:00
Justin Richer 2beff07d4b added icons and tooltips to approved site table 2012-11-15 17:51:31 -05:00
Justin Richer 20b73ea0c4 tooltip works! 2012-11-15 17:46:13 -05:00
Justin Richer 8ecdb8a4ab added icon to template, popover doesn't work yet 2012-11-15 17:41:00 -05:00
Justin Richer 9064b49a54 added refresh buttons to all tables, fixed loading behavior to a proper cascading function call 2012-11-15 16:55:51 -05:00
Justin Richer a88ae8258a Updated plus and minus buttons in list views, addresses #202 2012-11-15 16:35:17 -05:00
Justin Richer 150c4032fd WTF MYSQL!!
Added "NULL" option to all appropriate TIMESTAMP columns so that they behave how we expect them to.
2012-11-15 15:23:54 -05:00
Justin Richer f9aafb5edd approved sites UI 2012-11-15 14:50:30 -05:00
Justin Richer f4605ef2fc cleaned out startAfter function 2012-11-15 12:18:47 -05:00
Justin Richer 845c11ad3a methods for creating, editing, and deleting whitelist sites all function 2012-11-14 17:08:58 -05:00
Justin Richer 321172c40c fixed load/fetch order, fixed edit form display, robustified whitelist views against missing client IDs 2012-11-14 16:30:10 -05:00
Justin Richer f39c254353 updated variables for consistency, tracking down a data-loading bug 2012-11-14 15:21:41 -05:00
Justin Richer 51cfe1746d whitelist editing 2012-11-14 15:20:32 -05:00
Justin Richer bb589fc29a fixed logic error in script inclusion 2012-11-13 18:05:15 -05:00
Justin Richer cccbad2ca1 added whitelist button to table view 2012-11-13 17:55:29 -05:00
Justin Richer 7a9d7e6363 Fixed sidebar menu 2012-11-13 17:13:20 -05:00
Justin Richer 7b1a2529dc added whitelist model and template 2012-11-13 17:11:09 -05:00
Justin Richer ee0fe4a9d3 applied placeholder CSS hack to header CSS 2012-11-13 15:35:01 -05:00
Justin Richer 86ebdff82b Revert "Placeholder UI updates"
This reverts commit fd89312b0c.
2012-11-13 15:08:22 -05:00
Justin Richer 030e2ce2df fixed link scanner 2012-11-13 15:06:09 -05:00
Justin Richer 706858c41f added comments, fixed paths, uncommented logo hide function 2012-11-13 13:27:57 -05:00
Justin Richer f2e1317365 added purl.js library for URL parsing 2012-11-13 13:12:15 -05:00
Justin Richer 33f11cb98f cleanly applied pushstate changes, new URL structure 2012-11-13 13:10:34 -05:00
Justin Richer 1d8254bf2f changed target of approve form 2012-10-24 15:06:56 -04:00
Michael Jett be506ae952 Moved fonts local, fixed loading indicator 2012-09-25 13:37:36 -04:00
Michael Jett 84cedbb45e Support the "Enter" key on list widget 2012-09-25 13:24:38 -04:00
Michael Jett 8fc6b2b680 Removing the rest of Justin's load hack 2012-09-25 13:18:31 -04:00
Michael Jett fd89312b0c Placeholder UI updates 2012-09-25 12:52:55 -04:00
Michael Jett 48941f1713 Dynamic JS loading and UI updates 2012-09-25 12:52:54 -04:00
Michael Jett 2311cdf1f2 Revert "Dynamic Client Loading Initial Commit"
This reverts commit a4e5335eda02cdb6b32a966d194035429ca52915.
2012-09-25 12:52:52 -04:00
Michael Jett d7455dba14 Dynamic Client Loading Initial Commit 2012-09-25 12:52:51 -04:00
Amanda Anganes 29862f15bd Removed a bunch of commented-out configuration 2012-09-18 15:21:55 -04:00
Amanda Anganes 51073a7f8d Refactor part 3 2012-09-18 15:01:05 -04:00
Amanda Anganes ef80676dc1 Cleaned up web package a bit - lots of unused imports and variables 2012-09-18 14:39:07 -04:00
Amanda Anganes dd2abd94d1 Refactoring part 2 2012-09-18 14:36:27 -04:00
Amanda Anganes c40efda6b5 Refactor part 1 2012-09-18 14:24:34 -04:00
Justin Richer 0b6aebfefe Revert "removed postrender function, use render function instead"
This reverts commit 2b1e78d195.
2012-09-13 11:27:50 -04:00
Justin Richer ebf77bea68 Updated timeout functions 2012-09-13 11:24:48 -04:00
Justin Richer 6fdd088125 Updated client secret panel display 2012-09-13 11:24:29 -04:00
Justin Richer be17133a99 Changed "submit" label to "save" 2012-09-13 11:02:53 -04:00
Justin Richer 2b1e78d195 removed postrender function, use render function instead 2012-09-13 10:33:52 -04:00
Justin Richer ece1b56095 added missing brackets 2012-09-13 10:33:52 -04:00
Justin Richer fe3e890bb3 changed to table head for input control 2012-09-13 10:33:52 -04:00
Justin Richer d8221a2a35 added missing semicolon 2012-09-13 10:33:52 -04:00
Justin Richer ed75b38ecc changed list view table styling 2012-09-13 10:33:52 -04:00
Justin Richer a4a40ffae5 unit test for x509 endpoint 2012-09-12 14:14:15 -04:00
Michael Jett d9771f2322 Timout Bugfixes 2012-09-12 13:55:30 -04:00
Michael Jett 26c3cf5989 Timout UI refactor 2012-09-12 13:48:01 -04:00
Michael Jett 19df5ae032 Timeout form updates. Logo URL updates 2012-09-11 15:06:20 -04:00
Michael Jett cb6767dfb4 Timout form updates 2012-09-11 15:06:17 -04:00
Justin Richer a9d1799eda added getter/setter to UIE schema-to-view map 2012-09-11 12:44:47 -04:00
Justin Richer 920b2a59ba Fixed error logging 2012-09-10 17:17:03 -04:00
Justin Richer 2d24435365 Created custom resolver, handler mapper
moved endpoint back to server
2012-09-10 17:17:03 -04:00
Justin Richer 7eb0a6f3d2 Moved JWK to commons 2012-09-10 17:17:03 -04:00
Amanda Anganes f3c225d8f2 Updated SECOAUTH reference, made required alterations to our configuration 2012-09-07 16:08:15 -04:00