Testing new OAuth features
Wessel, Keith
kwessel at illinois.edu
Wed Mar 2 15:36:27 UTC 2022
I suspected that when I read the docs that you linked at the beginning of this thread that stated that metadata resolution still had to be done. I'll be on the look-out for further developments.
Thanks,
Keith
-----Original Message-----
From: dev <dev-bounces at shibboleth.net> On Behalf Of Cantor, Scott
Sent: Wednesday, March 2, 2022 9:10 AM
To: Shib Dev <dev at shibboleth.net>
Subject: Re: Testing new OAuth features
On 3/2/22, 10:01 AM, "dev on behalf of Wessel, Keith" <dev-bounces at shibboleth.net on behalf of kwessel at illinois.edu> wrote:
> Out of curiosity, Scott, is this what you were referring to
> yesterday on the users list when you said " I think it makes much more
> sense to just allow for unregistered clients using client authentication against LDAP or something along those lines"?
Not for OIDC yet. This is the code that will make that work once the original grant logic is refactored to match the client_credentials grant. The code grant still assumes client metadata, but the support for authenticating against LDAP or Kerberos does work for any clients.
-- Scott
--
To unsubscribe from this list send an email to dev-unsubscribe at shibboleth.net
More information about the dev
mailing list