OIDC Client Secret Resolution with Hashed Secret
Nathan C Lewan
nlewan at umd.edu
Tue May 9 17:57:35 UTC 2023
I will look into it if that is the better way to go, appreciate the advice,
thanks.
On Tue, May 9, 2023 at 1:22 PM Cantor, Scott <cantor.2 at osu.edu> wrote:
> I suggest you just rethink all this. The simplest way to achieve what
> you're after is already built-in, just set up client authn to leverage LDAP
> in the same way the IdP supports it for users. The LDAP bind will take care
> of keeping the password out of plain text.
>
> -- Scott
>
>
>
>
>
>
--
**
Nathan Lewan
IT Engineer - Identity and Access Management
Division of Information Technology
University of Maryland
nlewan at umd.edu
301-405-8019
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20230509/74a5aea7/attachment.htm>
More information about the users
mailing list