Justin Richer
9e60da2675
added controls for client secret processing
2012-08-20 12:22:38 -04:00
Justin Richer
a02f37cec3
added generators to client service API
2012-08-20 12:22:18 -04:00
Justin Richer
8520fcbf72
removed deprecated granted authority reference
2012-08-17 14:40:13 -04:00
Justin Richer
a65504c0cb
added new exception for userinfo, addresses #133
2012-08-15 16:02:06 -04:00
Justin Richer
209fc2d249
refactored request object endpoint to avoid urlspace conflict with SECOAUTH
2012-08-15 12:06:37 -04:00
Mike Derryberry
d1218efb2a
cleaned up imports
2012-08-14 10:55:08 -04:00
Mike Derryberry
55e7a4d707
moved request object auth endpoint in project setup
2012-08-14 10:55:08 -04:00
Mike Derryberry
ec286b9644
removed auth bean from application-context. Added extra parameter checks in request object auth endpoint
2012-08-14 10:55:08 -04:00
Mike Derryberry
04d8faa90a
updated autowired annotation
2012-08-14 10:55:08 -04:00
Mike Derryberry
20a7ebc576
autowired all member variables in request object auth endpoint
2012-08-14 10:55:08 -04:00
Mike Derryberry
694074ee58
moved endpoint, added param processing
2012-08-14 10:55:08 -04:00
Mike Derryberry
36b9c805d9
added reference to abstract endpoint class to get token granter
2012-08-14 10:55:08 -04:00
Mike Derryberry
2bdbb283b7
removed dependency on abstract endpoint class. added methods needed to authRequestObjectEndpoint (afterPropertiesSet())
2012-08-14 10:55:08 -04:00
Mike Derryberry
51ec529861
readded implementation of initializingBean
2012-08-14 10:55:08 -04:00
Mike Derryberry
638ebf2010
cleaned up AuthRequestObjectEndpoint class
2012-08-14 10:55:08 -04:00
Mike Derryberry
d93f5f18e5
added state value to jwt that gets passed as request object. certain methods from SECOAUTH use this
2012-08-14 10:55:08 -04:00
Mike Derryberry
3486ea28f1
updated mimicked methods to not use jwt, but rather a jwt in an auth request
2012-08-14 10:55:08 -04:00
Mike Derryberry
1a20dcbc6e
added methods that mimic behavior of private SECOATH methods
2012-08-14 10:55:08 -04:00
Mike Derryberry
d5caa0b543
changed server endpoint to act like an endpoint. WIP to accept request objects, validate, and redirect
2012-08-14 10:55:08 -04:00
Mike Derryberry
7d6211afd7
cleaned up some imports, added serverEndpointRequest class
2012-08-14 10:55:08 -04:00
Mike Derryberry
28344a3c91
auth endpoint got into client code. removed
2012-08-14 10:55:08 -04:00
Mike Derryberry
2888c08083
changed cookie claim to include the response
2012-08-14 10:55:07 -04:00
Justin Richer
c0a61fe47a
moved jquery to page header instead of footer, added focus call on login form
2012-08-14 10:48:38 -04:00
Justin Richer
484abc4915
fixed client delete
2012-08-10 17:24:21 -04:00
Michael Jett
5e898a7b0b
Id toke timeout binding for UI
2012-08-10 17:20:23 -04:00
Michael Jett
aaa38a761d
Mis-type for client secret
2012-08-10 17:18:43 -04:00
Michael Jett
b99d2ed9dc
Client Id null fix
2012-08-10 17:15:35 -04:00
Michael Jett
935b5ed43a
Client Id is now editable
2012-08-10 17:11:13 -04:00
Michael Jett
0f9d4ef255
Id refactor UI
2012-08-10 17:05:28 -04:00
Justin Richer
155974d8e3
moved services and api over to using new client Id field (instead of client_id)
2012-08-10 16:53:31 -04:00
Justin Richer
eb5a24690f
added method to get client by its (new) Long id
2012-08-10 16:29:16 -04:00
Michael Jett
480fb8e593
Id refactor UI
2012-08-10 16:26:54 -04:00
Michael Jett
ae5e1ca859
Merge remote branch 'origin/master'
2012-08-10 16:12:54 -04:00
Michael Jett
3f9e2cfa52
Horizontal UI refactor
2012-08-10 15:29:11 -04:00
Justin Richer
74a40fc973
changed auth holder reference, moved dates to timestamps
2012-08-10 14:26:47 -04:00
Justin Richer
bb7d6b2e94
split scopes table
2012-08-10 14:26:47 -04:00
Justin Richer
ed99bd36cf
changed clientdetails entity to use @Enumerated, cleaned up .sql file foreign keys
2012-08-10 14:26:47 -04:00
Michael Jett
66e5cf3f04
Client table button UI tweaks
2012-08-10 14:23:54 -04:00
Michael Jett
8d57e0e9ef
Issue # 81 Client UI - Creating new client creates duplicate
2012-08-10 14:19:33 -04:00
Michael Jett
a5a102bbe4
Github Issue #116
2012-08-10 11:25:50 -04:00
Amanda Anganes
97d7bc9c13
added field to indicate whether the client has been dynamically registered
2012-08-09 15:55:07 -04:00
Amanda Anganes
170036e0b8
Added expiration to id tokens
2012-08-09 12:44:22 -04:00
Amanda Anganes
6bb9f67f5e
Removed individual .sql files. All table definitions are now concatenated in database_tables.sql.
2012-08-09 12:44:22 -04:00
Amanda Anganes
f724d3a9fe
updated userinfo table definitions
2012-08-09 12:44:22 -04:00
Amanda Anganes
617e9568d8
Fixed bugs; I can get tokens now. User approval handler seems to be working corrrectly.
2012-08-09 12:44:22 -04:00
Amanda Anganes
49cb8bd0cb
fixing bugs; needed to make all ids BIGINT AUTO-INCREMENT PRIMARY KEY in sql files
2012-08-09 12:44:21 -04:00
Amanda Anganes
0757642e67
removed "s" from allowed_scopes
2012-08-09 12:44:21 -04:00
Amanda Anganes
9c32e92da5
Cleaned up sql tables some more; sticking to _ naming convention
2012-08-09 12:44:21 -04:00
Amanda Anganes
d7deda1699
Propogated AuthenticationHolder effects; this is untested but compiles and I think it is mostly correct
2012-08-09 12:44:21 -04:00
Amanda Anganes
90df91c351
Added AuthenticationHolder object, got references squared away for AccessToken side. Compiles.
2012-08-09 12:44:21 -04:00
Amanda Anganes
cf348590b0
Removed unused ClientGeneratorFactory
2012-08-09 12:44:21 -04:00
Amanda Anganes
d6d80c3e60
Gave OAuth2RefreshTokenEntity a Long Id
2012-08-09 12:44:21 -04:00
Amanda Anganes
6b1dad7215
Gave OAuth2AccessTokenEntity a Long Id
2012-08-09 12:44:21 -04:00
Amanda Anganes
780839dbf9
Made things compile after ClientDetailsEntity refactoring
2012-08-09 12:44:21 -04:00
Amanda Anganes
a68a4f9796
Organized ClientDetailsEntity, updated JPA annotations. Updated sql files to match. Naming conventions: table and column names with multiple words should be seperated by underscores; table and column names should be singular.
2012-08-09 12:44:21 -04:00
Amanda Anganes
15428a875e
Added additional fields to ClientDetailsEntity and did some reorganization, still some more to do. Added "id" field to the sql file, but the sql still needs all of the other additional fields.
2012-08-09 12:44:21 -04:00
Justin Richer
09e528e113
added discovery info for x509 and client auth
2012-08-07 17:30:36 -04:00
Justin Richer
dc7aac12f9
added custom login form, changed footer to only optionally load app
2012-08-07 12:09:32 -04:00
Amanda Anganes
8d4e046408
All logging is now org.slf4j. We had a mix of org.slf4j and apache commons-logging. Added error logging to all view which throw errors.
2012-08-07 10:04:38 -04:00
Amanda Anganes
a061e64abf
Merge branch 'user-approval-handler-updated-rebase'
2012-08-06 16:30:03 -04:00
Amanda Anganes
32dc92119f
Cleanup completed, this works for the most part. TODO: need to make an upstream change in order to inject a new set of scopes into the AuthorizationRequest.
2012-08-06 16:29:22 -04:00
Amanda Anganes
5fb67ab7bb
Did a lot of cleanup; untested but compiles
2012-08-06 14:33:16 -04:00
Amanda Anganes
ae44bd5e0c
Works; about to do some cleanup
2012-08-06 13:40:27 -04:00
Amanda Anganes
2f28cf33e7
Changed UserInfo refs in WhitelistedSite to String ids; updated the user approval handler to check if "remember this decision" is checked and only make a new AP if so, and to pull in the scopes selected on the approval page as the saved allowed scopes for that AP.
2012-08-03 16:43:37 -04:00
Amanda Anganes
b87d54b06e
Changed UserInfo references to String "userId" references
2012-08-03 13:32:17 -04:00
Amanda Anganes
845976b8ac
First stages of getting the graylist portion to work. Currently no mechanism for telling the system NOT to remember your decision; that will come later. All approvals will be automatically stored with this code.
2012-08-03 12:49:40 -04:00
Justin Richer
51b8dbe065
Revert "updated jwtHeader typ to use an enum" -- set things back to using a string
...
This reverts commit 3b2268c622
.
2012-08-02 14:16:55 -04:00
Justin Richer
9a7e40fee7
moved all bean definitions to annotations, removed orphaned CheckID view
2012-08-02 12:46:35 -04:00
Justin Richer
1508369548
now with Walsh-flavored certificate generation
2012-08-01 18:04:26 -04:00
Justin Richer
61a8d4a787
x509 take -- bouncycastley version
2012-08-01 17:19:33 -04:00
Amanda Anganes
db415bfa2b
Working on user approval handler
2012-07-31 14:50:24 -04:00
Amanda Anganes
a223565364
updating user approval handler
2012-07-31 14:50:24 -04:00
Amanda Anganes
676808bdac
got things to deploy - could not reference UserInfo directly in ApprovedSite and WhitelistedSite; needed to reference DefaultUserInfo instead.
2012-07-31 14:50:24 -04:00
Amanda Anganes
4e10fce7ef
Implementing user approval handler; made some modifications to ApprovedSite and WhitelistedSite models, repositories, and service layers.
2012-07-31 14:50:24 -04:00
Amanda Anganes
7c33e19950
Changed authorization endpoint to /authorize rather than /auth; updated SWD entry. Also removed checkid entry from SWD.
2012-07-31 14:39:27 -04:00
Justin Richer
863693cf59
Merge pull request #128 from mtderryberry/jwe-and-jwt-fixes
...
Jwe and jwt fixes
2012-07-31 10:52:04 -07:00
Amanda Anganes
3982561a5b
Removing "throws exception" from views. Addresses issue #70
2012-07-31 12:28:46 -04:00
Amanda Anganes
5cf6359f7d
Merge branch 'master' of github.com:mitreid-connect/OpenID-Connect-Java-Spring-Server
2012-07-31 12:14:19 -04:00
Amanda Anganes
686412757f
shortened urls
2012-07-31 12:02:21 -04:00
Mike Derryberry
3b2268c622
updated jwtHeader typ to use an enum
2012-07-31 11:29:48 -04:00
Justin Richer
1b5f99efec
added .json mapping to SWD
2012-07-31 10:42:42 -04:00
Amanda Anganes
02da9fceed
fixed imports
2012-07-31 09:16:05 -04:00
Justin Richer
d07667576e
cleaned up old code
2012-07-30 16:50:44 -04:00
Justin Richer
40f39a18e0
cleaning up introspection endpoint
2012-07-30 16:50:44 -04:00
Amanda Anganes
e7449901a6
Removed IdTokenGeneratorService. Addresses issue #75
2012-07-30 16:46:20 -04:00
Justin Richer
ee9288a72a
turned down cache in default
2012-07-30 16:16:02 -04:00
Justin Richer
c80f7f1fcd
removed keystore dependency where it is not needed
2012-07-30 14:58:29 -04:00
Justin Richer
319568d971
refactored JWA algorithm markers to use enum instead of string as stored class
2012-07-23 20:21:31 -04:00
Justin Richer
165f3ea292
fixed some unit tests, broke others
2012-07-23 18:44:47 -04:00
Justin Richer
1f68c835c0
updated openid connect image
2012-07-16 15:12:35 -06:00
Michael Jett
7a3ae5a757
Merge remote branch 'origin/master'
2012-07-10 17:00:30 -04:00
Michael Jett
30addb5439
Redirect URI now displayed on approval page.
2012-07-10 16:54:55 -04:00
Justin Richer
9f16f309bd
updated userinfouserdetailsservice to use username instead of userid -- this should actually be a wrapper class though
2012-07-10 16:44:29 -04:00
Justin Richer
b0a7ebd9b1
fixed JWK algorithm display
2012-07-10 14:57:12 -04:00
Stephen Moore
84aa451095
Added comment for spring-servlet.xml
2012-07-10 13:29:53 -04:00
Justin Richer
5657bc8f28
updated configuration, confirmed works pending SECOAUTH-299
2012-07-09 11:25:45 -04:00
Justin Richer
e5eb2e03d8
added implicit beans
2012-07-09 11:25:45 -04:00
Amanda Anganes
01793ec57f
added preferred_username claim to userinfo endpoint
2012-07-06 16:02:11 -04:00
Amanda Anganes
8abbce3a2d
fixed broken unit tests - they were pointing to the wrong spring context file;
2012-07-06 14:22:06 -04:00
Amanda Anganes
50241e4da1
changed UserInfo.verified to UserInfo.emailVerified.
2012-07-06 14:11:43 -04:00
Justin Richer
8fe132cb53
formatting
2012-07-05 18:32:31 -04:00
Justin Richer
830e07c35c
moved whole configuration from servlet context into application context
2012-07-05 18:26:12 -04:00
Justin Richer
dbd563f3f2
attempting to allow make use of SPEL
2012-07-05 18:21:52 -04:00
Justin Richer
f0c949fd09
added scope-based filter for userinfo
2012-07-05 17:14:51 -04:00
Justin Richer
c619e736f9
removed eclipse files from repository
2012-06-29 15:13:52 -04:00
Justin Richer
5c1b07ae65
don't overwrite an existing JWT nonce
2012-06-28 17:04:21 -04:00
Justin Richer
29731d52f6
Merge branch 'refreshtokens' of file:///home/jricher/Projects/workspace-sts/OpenIDConnect-MITRE/OpenID-Connect-Java-Spring-Server into refreshtokens
2012-06-28 17:00:17 -04:00
Justin Richer
de1597b214
refresh token handling fixed, removed token factory references
2012-06-28 16:55:11 -04:00
Michael Jett
0dc568e5d0
Fixed more information link on approval page
2012-06-28 14:54:59 -04:00
Michael Jett
a022f4d713
Authorized grant types now supported client-side
2012-06-28 14:40:37 -04:00
Michael Jett
bff34f647c
Allowing a null value for redirectURIs
2012-06-28 12:07:02 -04:00
Michael Jett
8fbea2516a
Updated client side variable names to reflect name changes to access token and refresh token timeout
2012-06-28 11:37:34 -04:00
Amanda Anganes
4e3c99abe4
Merge branch 'validityIntegers'
2012-06-26 13:55:26 -04:00
Amanda Anganes
81d1af40bd
Updated our ClientDetailsEntity *TokenTimeout fields to be *ValiditySeconds, which are now typed as proper Integers in the SECOAUTH ClientDetails interface
2012-06-26 13:54:01 -04:00
Michael Jett
b6e00b9884
Base white-list functionality and template
2012-06-26 12:50:13 -04:00
Justin Richer
1127a7cfbc
refactored JWKs, updated signing servier to use them
2012-06-25 17:19:25 -04:00
Justin Richer
adb8499bee
merged derryberry code, plus tweaks, still WIP
2012-06-25 16:42:41 -04:00
Amanda Anganes
baa7ce5e7b
Merge branch 'master' of github.com:mitreid-connect/OpenID-Connect-Java-Spring-Server
2012-06-20 15:10:58 -04:00
Amanda Anganes
2930719700
Added architecture diagram
2012-06-20 15:07:37 -04:00
Mike Derryberry
b94fbd7439
updated -common and -client code by removing throws exception, changing to rest templates, and updating test cases to use annotations
2012-06-20 09:36:55 -04:00
Justin Richer
94256d95a1
added crypto configuration file
2012-06-19 16:25:13 -04:00
Justin Richer
a38dc0ce29
added crypto configuration file
2012-06-19 16:24:50 -04:00
Justin Richer
fe3bbfb3d5
Further cleanups. Still missing:
...
- All tests extend TestCase, should use annotations instead
- Several elements throw Exception
- Key Fetchers should use RESTTemplates and be in a separate utility set
2012-06-15 17:11:58 -04:00
Justin Richer
b86abdd761
merge from pull request, plus cleanup
2012-06-15 15:36:14 -04:00
Justin Richer
731ad2e2e2
updated SECOAUTH reference, fixed some SQL files, temporarily closed token timeout issue
2012-06-15 12:05:08 -04:00
U-MITRE\mjwalsh
f9558f0955
stripped out check id endpoint interaction as it deprecated, refactored nonce checking based on spec change, pull user_id as id_token token claim
2012-06-13 18:31:13 -04:00
Justin Richer
ace5dd1f1e
imported userinfouserdetails filter from MITRE codebase
2012-06-13 16:33:55 -04:00
Mike Derryberry
65dc3daaf8
smart client
2012-06-12 16:09:01 -04:00
Amanda Anganes
2a05ff995d
Added support for additional field in ClientDetailsEntity.java.
2012-06-11 16:27:35 -04:00
Amanda Anganes
bbf9591c92
Merge branch 'master' into issue52
...
Conflicts:
openid-connect-server/src/main/java/org/mitre/oauth2/service/impl/DefaultOAuth2ProviderTokenService.java
openid-connect-server/src/main/webapp/WEB-INF/spring-servlet.xml
openid-connect-server/src/main/webapp/WEB-INF/views/oauth/approve.jsp
2012-06-11 15:04:01 -04:00
Justin Richer
c3cffe1eac
cleaned up bad config file
2012-06-05 16:42:26 -04:00
Justin Richer
195810fc63
Merge branch 'architecturedocs'
2012-06-05 16:38:07 -04:00
Justin Richer
7a207dc162
Merge branch 'discoveryupdate'
2012-06-05 16:37:04 -04:00
Justin Richer
250e0c730e
Merge branch 'jwtupdate'
2012-06-05 16:36:32 -04:00
Justin Richer
7df2663e00
added final slashification of configuration URLs
2012-06-05 16:36:11 -04:00
Justin Richer
fbdccdb78e
added Xrd support ( fixes #63 ), updated configuration locations ( fixes #47 )
2012-06-05 16:32:49 -04:00
Justin Richer
e44697cef9
updated JWK display to latest, closes #58
2012-06-05 16:07:19 -04:00
Michael Jett
3b4e95ac10
Approval page updates
2012-06-05 15:52:09 -04:00
Michael Jett
d424f44b8c
Removing some whitespace
2012-06-05 13:08:55 -04:00
Justin Richer
46cd08071d
cleaned up sql table references to redirect uris, see #48
2012-06-05 11:45:06 -04:00
Justin Richer
8e33a17307
moved DB schema files up a few levels, fixed test context to point to new locations
2012-06-05 11:32:51 -04:00
Justin Richer
5c72d8b95f
revocation endpoint cleanup, still needs views
2012-06-05 11:24:11 -04:00
Justin Richer
27219c066d
refactored our service to reflect upstream
2012-06-05 10:18:26 -04:00
Justin Richer
e95528a08d
added implementation to stub to read an access token by value
2012-06-05 10:11:24 -04:00
Amanda Anganes
c89b1814d6
Fixed approve.jsp checkboxes (both had the same name).
2012-06-01 17:12:33 -04:00
Amanda Anganes
8684bb969f
Updated approve.jsp with Jett's new code to display some checkboxes. This has been tested, and the additional parameters are persisted correctly and are available to the TokenGranter.
2012-05-31 13:39:24 -04:00
Michael Jett
68483536a6
Approval page updates. Approval and denial buttons are now in one form. Generic checkboxes are in place.
2012-05-31 12:12:56 -04:00
Amanda Anganes
424f8bb737
Refactored to use TokenEnhancer rather than a custom TokenGranter.
2012-05-30 16:14:00 -04:00
nemonik
998fc7f98b
cleaned up beans layout
2012-05-30 15:17:33 -04:00
nemonik
8917e75010
see issue #19
2012-05-30 15:14:15 -04:00
Amanda Anganes
16aa0c59b5
Added token enhancer. Now to plug it in.
2012-05-30 12:31:12 -04:00
Amanda Anganes
d4e107caf1
updating
2012-05-30 12:08:44 -04:00
Amanda Anganes
2070d2e413
Updated to use AuthorizationRequestFactory rather than ClientCredentialsChecker.
2012-05-30 12:08:08 -04:00
Justin Richer
ce847dd4f7
updated poco user view to contain name
2012-05-24 15:57:34 -04:00
Stephen Moore
c418ccabb1
Merge branch 'master' into userInfoEndpoint
2012-05-24 13:06:29 -04:00
Stephen Moore
1bff5ef19f
Added POCO view, Added UnknownUserInfoScheamException runtime exception
2012-05-24 11:00:49 -04:00
Michael Jett
b838ddb786
Client ID display fix
2012-05-23 14:24:53 -04:00
Michael Jett
a1d85e281e
Client ID now showing on display and edit page
2012-05-23 14:21:08 -04:00
Michael Jett
48ff2d3d77
Merge remote branch 'origin/master'
2012-05-23 14:01:40 -04:00
Michael Jett
f8af7bf884
Adding help text for time-out options
2012-05-23 14:01:31 -04:00
Stephen Moore
5c544dfe7c
Merge branch 'master' into userInfoEndpoint
2012-05-23 13:43:32 -04:00
Justin Richer
7d4d65c359
Merge branch 'userinfo_integration'
2012-05-23 13:39:03 -04:00
Justin Richer
a8e9f1d2cd
fixed rendering issues with user info view
2012-05-23 13:36:53 -04:00
Stephen Moore
9612fde10e
Check for null address, and added email
2012-05-23 13:35:05 -04:00
Justin Richer
08958d4137
Merge remote-tracking branch 'remotes/steve/userInfoEndpoint' into userinfo_integration
2012-05-23 13:11:40 -04:00
Justin Richer
06fadb5f2b
oauth provider configuration started
2012-05-23 12:55:21 -04:00
Stephen Moore
9b03831d4e
Filled in the UserInfoEndpoint, and added the JSON view for userInfo (openIdSchema)
2012-05-22 16:56:22 -04:00
Michael Jett
668952ec09
Fixing typo
2012-05-22 16:12:21 -04:00
Michael Jett
b59baa09a9
Cleaning up placeholder fields
2012-05-22 16:07:51 -04:00
Michael Jett
c85248c40c
Editing bug fix for validation
2012-05-22 15:19:47 -04:00
Michael Jett
a44dee1fd6
Fixing IE compatibility with saving and editing clients
2012-05-22 15:06:06 -04:00
Michael Jett
e5312b4c99
Client secret now editable and dynamically generated if not present
2012-05-22 14:36:40 -04:00
Michael Jett
bd054bfd58
Client delete now requires confirmation
2012-05-22 12:28:48 -04:00
Michael Jett
6c8aeba041
Default scope is "openid"
2012-05-22 12:25:29 -04:00
Michael Jett
e4f2446569
- no restraints on client name and description (neither of them required)
...
- URI regex updated
2012-05-22 12:23:05 -04:00
Michael Jett
51fe98b383
ClientAPI now sets owner for clients
2012-05-18 14:23:19 -04:00
Michael Jett
f7a0b8de32
Client scope now supported
2012-05-18 14:09:23 -04:00
Michael Jett
a1234a4fcd
Timeout form fields now supported. Backbone.JS Validation error handling updates.
2012-05-17 17:15:37 -04:00
Michael Jett
2d980a4d8f
Refactoring of routing. Client updates
2012-05-17 16:33:22 -04:00
Michael Joseph Walsh
6f43040587
slight sequence diagrams tweaks, mods to account-chooser and openid-connect-client
2012-05-16 21:12:58 -04:00
Michael Jett
b06640c921
First stages of client-side validation worked into application
2012-05-16 17:22:25 -04:00
Michael Jett
c45991b561
Adding backbone.js validations framework
2012-05-16 16:04:30 -04:00
Michael Jett
3402a3e463
ClientAPI now fully supports RESTful DELETE
2012-05-16 14:32:40 -04:00
Michael Jett
7f5b9e2c82
ClientAPI now supports DELETE method
2012-05-16 14:03:49 -04:00
Michael Jett
abf3f0ec33
Merge remote branch 'origin/master'
2012-05-16 13:28:24 -04:00
Michael Jett
af6e043239
Client Entity now initialized with non-null values so JPA won't flip. Added unified method for saving. Sync'd class member names to allow proper binding.
2012-05-16 13:27:53 -04:00
Michael Joseph Walsh
7e3ce2d583
mods to reflect client <-> account chooser protocol, and refactoring...
2012-05-15 18:43:45 -04:00
Michael Jett
0c7ea88323
Client updates.
2012-05-15 17:03:17 -04:00
Michael Jett
0f9b828066
ClientAPI admin requirement now global
2012-05-15 14:10:12 -04:00
Michael Jett
32e67730d8
ClientAPI maps to individual clients by IDs
2012-05-15 13:41:27 -04:00
Michael Jett
6b481cd3bb
ClientAPI header updates
2012-05-15 13:09:16 -04:00
Michael Jett
a4fc4e939e
ClientAPI cleanup
2012-05-15 12:41:41 -04:00
Michael Jett
f91071c350
New clients now attempt to POST to client API
2012-05-14 15:33:27 -04:00
Justin Richer
5e81ed6346
added some content to the architecture file
2012-05-14 15:00:06 -04:00
Justin Richer
7375d00e88
added taglib hack
2012-05-11 16:10:06 -04:00
Justin Richer
e00bba7ede
factored out one more piece of the security config
2012-05-11 13:43:29 -04:00
Stephen Moore
fd91c884bb
Made interfaces... deleted a thing.
2012-05-10 17:45:10 -04:00
Justin Richer
ffe31e6049
merged config from bean config config bean bean
2012-05-09 15:32:13 -04:00
Justin Richer
e158ef6fc2
added config bean
2012-05-09 15:20:15 -04:00
Amanda Anganes
95fc66de31
Merge branch 'master' of github.com:jricher/OpenID-Connect-Java-Spring-Server
2012-05-09 15:17:53 -04:00
Amanda Anganes
e33f277bbe
Updated classes to track newest version of SECOAUTH. This update closes issues #3 , #4 , #8 , and #36 (infinite redirects). This revision changes the authorization and token endpoints to be /openidconnect/auth and /openidconnect/token, respectively.
2012-05-09 15:16:56 -04:00
Michael Jett
9abb15a559
Approval page style upgraded to bootstrap 2 classes
2012-05-09 14:20:44 -04:00
Justin Richer
e6f77fd061
Merge branch 'master' of github.com:jricher/OpenID-Connect-Java-Spring-Server
2012-05-08 16:58:37 -04:00
Justin Richer
c003bbf2c6
extracted user information from spring servlet config
2012-05-08 16:58:04 -04:00
Michael Jett
4f0ffd872b
Removing older version of bootstrap
2012-05-08 14:31:24 -04:00
Michael Jett
c8e3f70115
Now requiring homepage login
2012-05-08 14:09:24 -04:00
Michael Jett
7dd81ac2de
Server-side dynamics
2012-05-08 13:53:21 -04:00
Michael Jett
eb9f2617ba
New look
2012-05-08 12:11:39 -04:00
Michael Jett
23fd7b1b21
Renaming Client View class
2012-05-08 11:20:40 -04:00
Michael Jett
eda7505b7b
Client API now renders JSON for all Clients
2012-05-08 11:16:45 -04:00
Michael Jett
ba56c00318
Backbone JS support for creating a new client.
2012-05-07 18:20:40 -04:00
Michael Jett
c02bac8c38
New client actions rendered as buttons rather than anchors
2012-05-07 14:41:39 -04:00
Michael Jett
4c503a7f40
Client table now fully rendered client-side with JS templates.
2012-05-07 14:39:32 -04:00
Michael Jett
e9954f4439
Bootstrap spelling correction
2012-05-07 13:18:04 -04:00
Michael Jett
df174a1695
Test Client JS now valid. App.JS updates
2012-05-04 15:56:12 -04:00
Michael Jett
e2e2dfca43
TD now rendered dynamically
2012-05-03 18:00:50 -04:00
Michael Jett
9f979cb742
Views now load after fetching templates
2012-05-03 12:57:09 -04:00
Michael Jett
784fd14917
Client manager now renders views in bootstrap.
2012-05-01 15:50:24 -04:00
Michael Jett
3859429ed6
Client javascript test updates
2012-04-30 17:04:22 -04:00
Michael Jett
5622ccbf41
Removing Javascript CDN. This will fix cross domain issue when requesting JSON objects.
2012-04-30 11:45:37 -04:00
Michael Jett
0134c4ea96
Merge remote branch 'origin/master'
2012-04-30 11:32:05 -04:00
Michael Jett
df67c23dba
Removing Resig templating. Backbone.js provides template support.
2012-04-30 11:31:52 -04:00
Justin Richer
97dffb6414
added copyright to all java files. closes #11
2012-04-27 17:55:58 -04:00
Justin Richer
6724866099
moved jwt components, utilities, and various interfaces to -common from -server
2012-04-27 15:20:49 -04:00
Justin Richer
59ecb03548
added getter/setter for userinforepository, closes #40
2012-04-27 15:11:25 -04:00
Michael Jett
37452f4bb5
Client side JS updates
2012-04-26 16:30:03 -04:00
Michael Jett
c98204e705
Renamed mockup directory
2012-04-26 16:29:46 -04:00
Michael Jett
d1a773d512
Client backbone.js Model initial commit
2012-04-24 16:37:25 -04:00
Michael Jett
181b0ce605
Removing unneeded div el
2012-04-24 13:02:20 -04:00
Michael Jett
703a8abab5
client management now bootstrap 2 compatible
2012-04-20 12:14:06 -04:00
Michael Jett
57ebb7d287
Adding global JS to template
2012-04-20 12:13:29 -04:00
Michael Jett
897e6e85d3
Removing inline client editing popup
2012-04-20 11:35:15 -04:00
Michael Jett
2573c98c2d
Re-write of base template using bootstrap 2
2012-04-19 16:27:25 -04:00
Michael Jett
b38c8c18d6
Edit form mock-up updates. Organized forms and input.
2012-04-19 15:51:38 -04:00
Michael Jett
51b8650327
Bootstrap 2 html test updates - removing compile javascript
2012-04-19 12:37:40 -04:00
Amanda Anganes
2e4f312f79
Fixed tests - they were pointing to the wrong context file.
2012-04-18 10:55:28 -04:00
Amanda Anganes
a9088b4999
Merge branch 'Single_Spring_Context_file'
2012-04-18 10:33:57 -04:00
Amanda Anganes
07a305b8b7
Refactored code to use a single spring context file. This uses the default oauth/authorize and oauth/token URLs, but it seems to be free of the infinite redirect issue. Next up: try putting in our custom URLs.
2012-04-17 15:32:07 -04:00
Michael Jett
8ab1fc1b60
Bootstrap 2 html tests
2012-04-16 16:44:31 -04:00
Michael Jett
9c86a23ee1
Bootstrap 2
2012-04-16 16:14:25 -04:00
Michael Jett
ed304fa391
Edit client mock-up.
2012-04-16 15:09:06 -04:00
Michael Jett
c4edd7111e
Breadcrumb tag renders "crumb" attribute
2012-04-16 13:13:41 -04:00
Michael Jett
dc42eb7789
Client management page now renders test JSON
2012-04-16 13:13:41 -04:00
Justin Richer
59078cc68d
eclipse updates from maven
2012-04-16 12:56:08 -04:00
Amanda Anganes
6899a16c2f
Merge branch 'Really_fixing_redirects'
2012-04-16 12:39:06 -04:00
Amanda Anganes
5d78bc4e0a
Infinite redirect issue fully fixed, with our custom urls for the authorization and token endpoints. See issue #8 .
2012-04-16 12:37:14 -04:00
Amanda Anganes
67edc1c191
Seems to be fixed! Added the "security:" prefix to the first http block in application-context. The compiler should have been catching that there was no matching for http w/o it, but it was just letting it through.
2012-04-16 12:23:23 -04:00
Justin Richer
05b2cf8fff
removed vestigial user details code
2012-04-16 12:02:24 -04:00
Amanda Anganes
f0f339d45f
current state
2012-04-16 11:05:36 -04:00
nemonik
6eb8284695
version needed to be modified to 0.1-SNAPSHOT in order to deploy snapshot to nexus
2012-04-13 13:43:39 -04:00
Amanda Anganes
69dc1fe361
Removing our custom authorization endpoint and token endpoint urls, as well as the filter required by those custom urls (in web.xml), fixes the infinite redirect problem. This has been submitted as an issue to the SECOAUTH team.
2012-04-11 17:08:15 -04:00
Amanda Anganes
2fc4ce177c
This commit fixes the infinite redirect, somewhat. See updated issue #8 .
2012-04-11 15:55:19 -04:00
Amanda Anganes
17f6e2a2fb
Removed tables.sql.
2012-04-10 14:05:39 -04:00
Amanda Anganes
486b7723d3
Merge branch 'master' of github.com:jricher/OpenID-Connect-Java-Spring-Server
2012-04-10 13:45:26 -04:00
Amanda Anganes
269a354f8c
Added tables.sql, which is just a concatenation of all the other sql files. Added redirect_uris.sql, which is a NEW table needed to support clients registering multiple redirect uris.
...
This updates us to the HEAD revision of SECOAUTH, where the redirect uri field on ClientDetails has been updated to be a Set<String> instead of a single string. I updated the UI code so that it will still work, but it will need to be updated to allow users to register multiple uris.
This also closes issue #2 from the issue tracker.
2012-04-10 13:44:10 -04:00
nemonik
d056079fea
Support for ECDSA JWT signer was removed as it would require the system-wide installation and configuration of the Bouncy Castle Security Provider in order for the server to work when deployed to Tomcat. See issue ticket #20
2012-04-10 13:41:18 -04:00
Amanda Anganes
14f6eca026
Merge branch 'fixing_redirects'
2012-04-09 10:53:39 -04:00
Amanda Anganes
5b09c93024
Cleaned up the context files a bit, no big changes yet.
2012-04-09 10:53:02 -04:00
Justin Richer
eabc49cb01
fixed documentation, included python source to generate signature
2012-04-09 10:52:17 -04:00
Justin Richer
c21607dcbe
fixed hmac unit test after signature base string was fixed in underlying code
2012-04-09 10:48:02 -04:00
nemonik
6c8661f3ad
the signature base created in the verify method of the AbstractJwtSigner did not match how the Jwt.getSignatureBase creates the signature base. also, modified the testGenerateHmacSignature to exercise
2012-04-02 22:12:03 -04:00
nemonik
267f1b2de3
bas64 decoded signature prior to verifying, modified unit rsa unit test, and fixed ecdsa signer verify
2012-04-02 21:32:42 -04:00
Justin Richer
985a4619fa
abstracted keystore loader to new function
2012-04-02 15:06:58 -04:00
Justin Richer
3dfe6df410
refactored algorithms out to their own separate Enum
2012-04-02 13:13:13 -04:00
Justin Richer
fec6a3a876
removed definition parsers, may be picked up again later
2012-04-02 12:40:53 -04:00
Amanda Anganes
b986b30695
Fixed unit tests - they were broken due to an error in application-context.xml; not because of the refactor. App context was trying to instantiate an Hmac signer with name "HMACSHA256", which should have been "HS256". I updated the exceptions thrown by the signer impls so that if an Algorithm name mismatch occurs it will tell you what it is trying to match against.
2012-03-30 13:45:04 -04:00
nemonik
0a29eba617
unit test correction, slight refactor of tested classes
2012-03-29 14:02:51 -04:00
nemonik
1209e9a83f
fix to JwtTest unit test
2012-03-29 12:54:03 -04:00
nemonik
f215cfc50c
fix for issue 5, code refactoring across signers
2012-03-29 12:34:51 -04:00
nemonik
4f407a3a11
added rsa1024 key to keystore
2012-03-28 18:02:03 -04:00
Stephen Moore
1a1ae4c5b5
Removed Replacer plugin
2012-03-23 15:55:30 -04:00
Amanda Anganes
c50f968748
Merged to use idToken.setNonce().
2012-03-23 11:11:38 -04:00
Amanda Anganes
268b82e31d
Merge branch 'Branch_master3-23-2012'
2012-03-23 11:09:27 -04:00
Amanda Anganes
8b10b83516
Added setNonce to JwtClaims.
2012-03-23 11:08:49 -04:00
Justin Richer
34f24deb3e
Merge branch 'mitreaccounts'
2012-03-23 10:52:36 -04:00
Justin Richer
4a15e51e12
pass through nonce
2012-03-23 10:52:04 -04:00
Justin Richer
6c3552ebfa
changed mitre account names
2012-03-23 10:37:58 -04:00
U-MITRE\mjwalsh
b4836a0302
mods to auth filter including config comments, http socket time out...
2012-03-22 17:49:30 -04:00
Amanda Anganes
27fe3c9eca
Implemented signing. Works, but validation does not fail if you remove the signature.
2012-03-22 14:49:02 -04:00
Amanda Anganes
68c8d1a9d2
Changed parameter for check id endpoint to access_token instead of auth_token
2012-03-22 14:19:45 -04:00
Justin Richer
826be5a1a1
changed parameter name to match spec change
2012-03-22 14:10:50 -04:00
Justin Richer
5fe036878a
fixed view for idtoken in checkid endpoint
2012-03-22 14:09:25 -04:00
Justin Richer
c51bb72fe5
merged keystore changes
2012-03-22 13:50:47 -04:00
Justin Richer
6c01134095
JWK display support for key maps, still no key ids
2012-03-22 13:48:16 -04:00
Amanda Anganes
776748f908
Merge branch '3-22-2012'
2012-03-22 13:43:59 -04:00
Amanda Anganes
ae9b5e792a
Added a ConfigurationPropertiesBean.java to hold configuration properties. Fixed up CheckIDEndpoint.java a bit - it works, but is outputting the wrong thing.
2012-03-22 13:43:30 -04:00
Justin Richer
d5e7000365
disabled custom namespace parsers for keystores
2012-03-22 13:39:51 -04:00
Justin Richer
524a8e153e
signers turned into a map
2012-03-22 13:37:21 -04:00
Justin Richer
664dd1df46
JWT claims can now have nulls in them without barfing
2012-03-22 11:46:48 -04:00
Justin Richer
c59d3fe963
it spits out JWTs! and id tokens! JWT still needs to handle nulls
2012-03-21 17:59:48 -04:00
Amanda Anganes
ebe72412fe
Authorization Grant flow works up to serializing the returned Access Token. Justin is investigating serialization problems.
2012-03-21 16:44:16 -04:00
Amanda Anganes
d94eb338ee
Auth code flow works through user approval page. Current problem is that it doesn't seem to be matching up auth codes correctly (I keep getting "invalid code" error). But, it looks like it's going through our custom token granter so that is good.
2012-03-20 15:07:18 -04:00
Justin Richer
8263ce0dd5
added external class to persistence context
2012-03-16 17:01:24 -04:00
Justin Richer
b463cabc69
fixed configuration, moved sql file
2012-03-16 16:46:46 -04:00
Justin Richer
2f29cc52b2
Merge branch 'client_refactor'
2012-03-16 16:28:51 -04:00
Justin Richer
baf7c1c166
fixed dependencies and project configurations
2012-03-16 16:18:33 -04:00
Justin Richer
e6e7504213
added files and shuffled things to new packages
2012-03-16 15:46:23 -04:00
Justin Richer
a0cdd8bf2f
moved server to new package location
2012-03-16 15:01:53 -04:00