<div dir="ltr">Thank you Henri.<div><br></div><div>It took me a while to research OpenID Connect to understand all the options (still learning).</div><div><br></div><div>To support OpenID backchannel transactions, for profiles where it is required, do the IDP nodes have to be clustered? We run 4 IDP nodes behind a sticky session load balancer (the IDP servers are standalone -- in the backend on the same DB, AD etc).</div><div><br></div><div><br></div></div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">On Mon, 31 May 2021 at 22:17, Henri Mikkonen <<a href="mailto:henri.mikkonen@csc.fi">henri.mikkonen@csc.fi</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">Hi Joshua,<br>
<br>
> On 31. May 2021, at 0.17, Joshua Brodie <<a href="mailto:josbrodie@gmail.com" target="_blank">josbrodie@gmail.com</a>> wrote:<br>
> <br>
> Does the OIDC plugin for IdP4.1 support both ‘Implicit’ and ‘Authentication/Basic’ flows?<br>
> <br>
> On my super preliminary dipping toe in water, appears to be ‘Implicit’ only - which happens to be what we require.<br>
<br>
The OIDC OP plugin supports all the OIDC conformance profiles defined in section 2.1 of [1].<br>
<br>
BR,<br>
Henri.<br>
<br>
[1] <a href="https://openid.net/wordpress-content/uploads/2018/06/OpenID-Connect-Conformance-Profiles.pdf" rel="noreferrer" target="_blank">https://openid.net/wordpress-content/uploads/2018/06/OpenID-Connect-Conformance-Profiles.pdf</a><br>
-- <br>
For Consortium Member technical support, see <a href="https://wiki.shibboleth.net/confluence/x/coFAAg" rel="noreferrer" target="_blank">https://wiki.shibboleth.net/confluence/x/coFAAg</a><br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net" target="_blank">users-unsubscribe@shibboleth.net</a><br>
</blockquote></div>