Justin Richer
|
4c53112923
|
[maven-release-plugin] prepare release mitreid-connect-1.1.15
|
2015-05-09 17:24:17 -04:00 |
Justin Richer
|
2627a4438f
|
added strict URI matching option to redirect resolver (off by default)
|
2015-05-09 16:36:08 -04:00 |
Justin Richer
|
22c86d09f8
|
put 'kid' into JWS header, closes #784
|
2015-05-09 16:00:35 -04:00 |
Justin Richer
|
8569213994
|
moved requirement to different component, closes #759
also cleaned up comments in filter
|
2015-03-08 23:04:12 -04:00 |
William Kim
|
3ae8d46e44
|
Made the constructor public for OIDCAuthentication filter.
Backported, closes #777
|
2015-03-08 23:03:53 -04:00 |
Justin Richer
|
b74df7b583
|
[maven-release-plugin] prepare for next development iteration
|
2015-02-27 12:46:33 -05:00 |
Justin Richer
|
2b6a4a32fa
|
[maven-release-plugin] prepare release openid-connect-parent-1.1.14
|
2015-02-27 12:46:31 -05:00 |
Justin Richer
|
7cf22d98b1
|
updated spring release for CVE-2014-3578
|
2015-02-27 12:44:17 -05:00 |
Justin Richer
|
f6c956825d
|
updated copyright tag to 2015
|
2015-02-17 12:57:32 -05:00 |
Justin Richer
|
5214eab1e9
|
[maven-release-plugin] prepare for next development iteration
|
2015-01-25 23:14:14 -05:00 |
Justin Richer
|
3ac61839bb
|
[maven-release-plugin] prepare release mitreid-connect-1.1.13
|
2015-01-25 23:14:11 -05:00 |
Justin Richer
|
b65fc88809
|
fixed comparison of client IDs in refresh token, closes #752
Also addresses #735 (again)
|
2015-01-24 07:48:27 -05:00 |
Charif Belhaffef
|
7d649e5c9c
|
add @Transient to function getAuthorizedGrantTypes() so it does not persist
|
2015-01-14 07:20:00 -05:00 |
John Brooks
|
321b3350f2
|
Changed lastWeek logic back to correct form, removed logic used for
testing.
|
2014-12-19 00:41:59 -05:00 |
Justin Richer
|
9979bd0603
|
[maven-release-plugin] prepare for next development iteration
|
2014-11-22 23:53:02 -05:00 |
Justin Richer
|
70237f35ad
|
[maven-release-plugin] prepare release mitreid-connect-1.1.12
|
2014-11-22 23:48:19 -05:00 |
Justin Richer
|
c77c9a70e8
|
fixed unit tests
|
2014-11-22 23:45:22 -05:00 |
Justin Richer
|
1ce3b51416
|
relaxed scope constraints on protected resources registered through self-service page
|
2014-11-22 22:49:51 -05:00 |
Justin Richer
|
5510f2f62c
|
removed unused variable in dynreg page
|
2014-11-22 22:43:42 -05:00 |
Justin Richer
|
ad5f3ef847
|
made offline access non-default
|
2014-11-22 22:43:29 -05:00 |
Justin Richer
|
4ccd948ad2
|
fixed checking of refresh token permissions in client service, clients can now request either refresh_token grant type or offline_access scope and it will work. added checkbox to dynreg page for ease-of-use
closes #734
|
2014-11-22 22:43:01 -05:00 |
Justin Richer
|
e983e8a0c9
|
make sure that client presenting refresh token is the same client the refresh token was issued to
closes #735
|
2014-11-22 21:33:10 -05:00 |
Justin Richer
|
5561b75f48
|
removed java 1.7 operator
|
2014-11-13 22:22:28 -10:00 |
Justin Richer
|
b5ae05162e
|
moved test into test package
|
2014-11-13 22:18:00 -10:00 |
Justin Richer
|
4d22ec61cf
|
applied list widget catch to all objects
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
740e5407ef
|
more comprehensive list widget leftover object handling in client
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
57648cd9d5
|
client scopes now added appropriately
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
51b477679a
|
removed blur detection, started work on alternative
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
7939771bf8
|
made claim popover more friendly to mobile environments
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
8a2883f80b
|
approval page defaults to "ask again" when prompt=consent is passed, closes #669
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
0fd4e04725
|
updated date format of token introspection response, closes #719
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
337ee0b165
|
added assertion authentication to introspection and revocation endpoints, closes #724
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
3513289b00
|
added key id to id token, closes #725
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
0396157543
|
added ROLE_CLIENT to assertion client authentication, cleaned up roles on client secret authentication, closes #728, closes #401
|
2014-11-13 16:35:38 -10:00 |
Justin Richer
|
a8a991104c
|
clean tabs, closes #727
|
2014-11-13 16:35:38 -10:00 |
Alexander Imfeld
|
d30ec3dc03
|
Introduce introspection result assembler to allow for customized introspection results
|
2014-11-13 16:35:17 -10:00 |
Justin Richer
|
b13e369851
|
relaxed issuer constraints in client, closes #638
|
2014-11-01 23:46:00 +00:00 |
Justin Richer
|
59caf8bcbe
|
[maven-release-plugin] prepare for next development iteration
|
2014-10-23 23:33:50 -04:00 |
Justin Richer
|
729eda1fc1
|
[maven-release-plugin] prepare release mitreid-connect-1.1.11
|
2014-10-23 23:33:48 -04:00 |
Justin Richer
|
2fc164afca
|
added click through sanity check to registration token rotation, closes #698
|
2014-10-23 23:28:48 -04:00 |
Justin Richer
|
d5c96f5d0d
|
updated icons list, enhanced editor display
Addresses #679
|
2014-10-23 23:13:44 -04:00 |
Justin Richer
|
d371c99503
|
make user info classes serializable, closes #714
|
2014-10-23 22:44:00 -04:00 |
Justin Richer
|
b764908416
|
if no alg is explicitly set, use the default from the signer
|
2014-10-23 22:08:32 -04:00 |
Justin Richer
|
d26eb88faa
|
generate random fake password for private key clients and shared secret crypto clients to avoid accidentally using client secret authentication and bypassing authentication, closes #715
|
2014-10-23 21:44:59 -04:00 |
David Steinkopff
|
73a626815b
|
fix broken dependency declaration, that follow up to org.springframework.beans.NotWritablePropertyException: Invalid property 'jwkKeyList' of bean class exception
|
2014-10-14 20:28:15 -04:00 |
arielak
|
1815aa0be1
|
RefreshToken to AuthHolder linkage test now using AuthHolder ID to verify
|
2014-10-13 11:48:00 -04:00 |
arielak
|
797acd73f3
|
Added tests for ensuring the references between a refresh token and its authentication holder are preserved over import. Minor cleanup of other tests.
|
2014-10-10 17:48:20 -04:00 |
Ariel Abrams-Kudan
|
2e7f3f8936
|
adding netbeans config to gitignore
|
2014-10-10 15:14:11 -04:00 |
arielak
|
fc2b544b25
|
Better method of creating test AuthenticationHolderEntity, added some more testing to testImport/ExportGrants
Conflicts:
openid-connect-server/src/test/java/org/mitre/openid/connect/service/impl/TestMITREidDataService_1_1.java
|
2014-10-10 15:13:27 -04:00 |
arielak
|
9e138647de
|
Added new data service tests, separated date parsing/formatting utilities into DateUtil class
Conflicts:
openid-connect-server/src/main/java/org/mitre/openid/connect/service/impl/MITREidDataService_1_0.java
openid-connect-server/src/main/java/org/mitre/openid/connect/service/impl/MITREidDataService_1_X.java
openid-connect-server/src/main/java/org/mitre/openid/connect/util/DateUtil.java
|
2014-10-10 15:09:31 -04:00 |