Testing new OAuth features

Cantor, Scott cantor.2 at osu.edu
Wed Mar 2 15:10:24 UTC 2022


On 3/2/22, 10:01 AM, "dev on behalf of Wessel, Keith" <dev-bounces at shibboleth.net on behalf of kwessel at illinois.edu> wrote:

>    Out of curiosity, Scott, is this what you were referring to yesterday on the users list when you said " I think it
> makes much more sense to just allow for unregistered clients using client authentication against LDAP or
> something along those lines"?

Not for OIDC yet. This is the code that will make that work once the original grant logic is refactored to match the client_credentials grant. The code grant still assumes client metadata, but the support for authenticating against LDAP or Kerberos does work for any clients.

-- Scott




More information about the dev mailing list