Commit Graph

1888 Commits (7cf22d98b12b3a1e51ad8766a8d8df0a6e0b35d9)

Author SHA1 Message Date
Justin Richer 7cf22d98b1 updated spring release for CVE-2014-3578 2015-02-27 12:44:17 -05:00
Justin Richer f6c956825d updated copyright tag to 2015 2015-02-17 12:57:32 -05:00
Justin Richer 5214eab1e9 [maven-release-plugin] prepare for next development iteration 2015-01-25 23:14:14 -05:00
Justin Richer 3ac61839bb [maven-release-plugin] prepare release mitreid-connect-1.1.13 2015-01-25 23:14:11 -05:00
Justin Richer b65fc88809 fixed comparison of client IDs in refresh token, closes #752
Also addresses #735 (again)
2015-01-24 07:48:27 -05:00
Charif Belhaffef 7d649e5c9c add @Transient to function getAuthorizedGrantTypes() so it does not persist 2015-01-14 07:20:00 -05:00
John Brooks 321b3350f2 Changed lastWeek logic back to correct form, removed logic used for
testing.
2014-12-19 00:41:59 -05:00
Justin Richer 9979bd0603 [maven-release-plugin] prepare for next development iteration 2014-11-22 23:53:02 -05:00
Justin Richer 70237f35ad [maven-release-plugin] prepare release mitreid-connect-1.1.12 2014-11-22 23:48:19 -05:00
Justin Richer c77c9a70e8 fixed unit tests 2014-11-22 23:45:22 -05:00
Justin Richer 1ce3b51416 relaxed scope constraints on protected resources registered through self-service page 2014-11-22 22:49:51 -05:00
Justin Richer 5510f2f62c removed unused variable in dynreg page 2014-11-22 22:43:42 -05:00
Justin Richer ad5f3ef847 made offline access non-default 2014-11-22 22:43:29 -05:00
Justin Richer 4ccd948ad2 fixed checking of refresh token permissions in client service, clients can now request either refresh_token grant type or offline_access scope and it will work. added checkbox to dynreg page for ease-of-use
closes #734
2014-11-22 22:43:01 -05:00
Justin Richer e983e8a0c9 make sure that client presenting refresh token is the same client the refresh token was issued to
closes #735
2014-11-22 21:33:10 -05:00
Justin Richer 5561b75f48 removed java 1.7 operator 2014-11-13 22:22:28 -10:00
Justin Richer b5ae05162e moved test into test package 2014-11-13 22:18:00 -10:00
Justin Richer 4d22ec61cf applied list widget catch to all objects 2014-11-13 16:35:38 -10:00
Justin Richer 740e5407ef more comprehensive list widget leftover object handling in client 2014-11-13 16:35:38 -10:00
Justin Richer 57648cd9d5 client scopes now added appropriately 2014-11-13 16:35:38 -10:00
Justin Richer 51b477679a removed blur detection, started work on alternative 2014-11-13 16:35:38 -10:00
Justin Richer 7939771bf8 made claim popover more friendly to mobile environments 2014-11-13 16:35:38 -10:00
Justin Richer 8a2883f80b approval page defaults to "ask again" when prompt=consent is passed, closes #669 2014-11-13 16:35:38 -10:00
Justin Richer 0fd4e04725 updated date format of token introspection response, closes #719 2014-11-13 16:35:38 -10:00
Justin Richer 337ee0b165 added assertion authentication to introspection and revocation endpoints, closes #724 2014-11-13 16:35:38 -10:00
Justin Richer 3513289b00 added key id to id token, closes #725 2014-11-13 16:35:38 -10:00
Justin Richer 0396157543 added ROLE_CLIENT to assertion client authentication, cleaned up roles on client secret authentication, closes #728, closes #401 2014-11-13 16:35:38 -10:00
Justin Richer a8a991104c clean tabs, closes #727 2014-11-13 16:35:38 -10:00
Alexander Imfeld d30ec3dc03 Introduce introspection result assembler to allow for customized introspection results 2014-11-13 16:35:17 -10:00
Justin Richer b13e369851 relaxed issuer constraints in client, closes #638 2014-11-01 23:46:00 +00:00
Justin Richer 59caf8bcbe [maven-release-plugin] prepare for next development iteration 2014-10-23 23:33:50 -04:00
Justin Richer 729eda1fc1 [maven-release-plugin] prepare release mitreid-connect-1.1.11 2014-10-23 23:33:48 -04:00
Justin Richer 2fc164afca added click through sanity check to registration token rotation, closes #698 2014-10-23 23:28:48 -04:00
Justin Richer d5c96f5d0d updated icons list, enhanced editor display
Addresses #679
2014-10-23 23:13:44 -04:00
Justin Richer d371c99503 make user info classes serializable, closes #714 2014-10-23 22:44:00 -04:00
Justin Richer b764908416 if no alg is explicitly set, use the default from the signer 2014-10-23 22:08:32 -04:00
Justin Richer d26eb88faa generate random fake password for private key clients and shared secret crypto clients to avoid accidentally using client secret authentication and bypassing authentication, closes #715 2014-10-23 21:44:59 -04:00
David Steinkopff 73a626815b fix broken dependency declaration, that follow up to org.springframework.beans.NotWritablePropertyException: Invalid property 'jwkKeyList' of bean class exception 2014-10-14 20:28:15 -04:00
arielak 1815aa0be1 RefreshToken to AuthHolder linkage test now using AuthHolder ID to verify 2014-10-13 11:48:00 -04:00
arielak 797acd73f3 Added tests for ensuring the references between a refresh token and its authentication holder are preserved over import. Minor cleanup of other tests. 2014-10-10 17:48:20 -04:00
Ariel Abrams-Kudan 2e7f3f8936 adding netbeans config to gitignore 2014-10-10 15:14:11 -04:00
arielak fc2b544b25 Better method of creating test AuthenticationHolderEntity, added some more testing to testImport/ExportGrants
Conflicts:

	openid-connect-server/src/test/java/org/mitre/openid/connect/service/impl/TestMITREidDataService_1_1.java
2014-10-10 15:13:27 -04:00
arielak 9e138647de Added new data service tests, separated date parsing/formatting utilities into DateUtil class
Conflicts:

	openid-connect-server/src/main/java/org/mitre/openid/connect/service/impl/MITREidDataService_1_0.java
	openid-connect-server/src/main/java/org/mitre/openid/connect/service/impl/MITREidDataService_1_X.java
	openid-connect-server/src/main/java/org/mitre/openid/connect/util/DateUtil.java
2014-10-10 15:09:31 -04:00
Justin Richer e07af009d8 [maven-release-plugin] prepare for next development iteration 2014-10-07 22:06:04 -04:00
Justin Richer b950624843 [maven-release-plugin] prepare release mitreid-connect-1.1.10 2014-10-07 22:06:02 -04:00
Justin Richer f133bc9b24 added null check to confirmation controller, closes #684 2014-10-07 21:58:00 -04:00
Justin Richer dcee8a2311 changed color of "matched" element list in client search 2014-10-07 21:45:52 -04:00
Justin Richer 14f2efae10 added warnings for empty scopes and empty redirect URI lists 2014-10-07 21:45:52 -04:00
John Brooks 97666b086f Change this.model.id to this.model.get('id') 2014-10-07 19:38:08 -04:00
John Brooks 5af78f1f66 Change whitelist references from .id to .get('id') 2014-10-07 19:38:08 -04:00