Index
All Classes and Interfaces|All Packages|Constant Field Values|Serialized Form
A
- AbstractAdminApiProfileAction - Class in net.shibboleth.idp.plugin.oidc.op.admin.impl
-
Base class for admin flow actions producing JSON responses.
- AbstractAdminApiProfileAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
- AbstractAuthenticationRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A Abstract function extended by lookups searching fields from authentication request.
- AbstractAuthenticationRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- AbstractAuthenticationRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthenticationRequestLookupFunction
-
Constructor.
- AbstractAuthenticationRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthenticationRequestLookupFunction
-
Deprecated.Constructor.
- AbstractAuthorizationRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
An abstract function extended by lookups searching fields from authorization request.
- AbstractAuthorizationRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- AbstractAuthorizationRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Constructor.
- AbstractAuthorizationRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Deprecated.Constructor.
- AbstractAuthorizationRequestLookupFunction(Class<? extends AuthorizationRequest>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Constructor.
- AbstractAuthorizationRequestLookupFunction(Class<? extends AuthorizationRequest>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Deprecated.Constructor.
- AbstractBuildErrorResponseFromEvent<T extends ErrorResponse> - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
This action is extended by error response actions.
- AbstractBuildErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Constructor.
- AbstractInitializeOutboundResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Deprecated, for removal: This API element is subject to removal in a future version.
- AbstractInitializeOutboundResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
-
Deprecated.Constructor.
- AbstractOAuthAuthorizationRequestAction - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Abstract class for actions performing actions on
AuthorizationRequestfound viaInOutOperationContext.getInboundMessageContext()andMessageContext.getMessage(). - AbstractOAuthAuthorizationRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationRequestAction
- AbstractOAuthAuthorizationResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Abstract class for actions performing actions on
OIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - AbstractOAuthAuthorizationResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
- AbstractOIDCAuthenticationRequestAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Abstract class for actions performing actions on
AuthenticationRequestfound viaInOutOperationContext.getInboundMessageContext()andMessageContext.getMessage(). - AbstractOIDCAuthenticationRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationRequestAction
- AbstractOIDCAuthenticationResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Abstract class for actions performing actions on
OIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - AbstractOIDCAuthenticationResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
- AbstractOIDCBackChannelLogoutPropagationAction - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
An abstract action for OIDC back-channel logout actions dealing with
OIDCBackChannelLogoutPropagationContext. - AbstractOIDCBackChannelLogoutPropagationAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
- AbstractOIDCClientMetadataPopulationAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Abstract action for populating metadata from the
ClientRegistrationRequestmessage to the response message. - AbstractOIDCClientMetadataPopulationAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
Constructor.
- AbstractOIDCLogoutPropagationAction - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
An abstract action for OIDC logout actions dealing with
OIDCLogoutPropagationContext. - AbstractOIDCLogoutPropagationAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
Constructor.
- AbstractOIDCRequestAction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Abstract class for actions performing actions on a oidc request found via
InOutOperationContext.getInboundMessageContext()andMessageContext.getMessage(). - AbstractOIDCRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
- AbstractOIDCResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Abstract class for actions performing actions on
OIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - AbstractOIDCResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
- AbstractOIDCRpInitiatedLogoutAction - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
An abstract action for OIDC logout actions dealing with OIDC RP-initiated logout.
- AbstractOIDCRpInitiatedLogoutAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
Constructor.
- AbstractOIDCSigningResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Abstract action to be extended by oidc response actions requiring signing parameters.
- AbstractOIDCSigningResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
-
Constructor.
- AbstractOIDCTokenRequestAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Abstract class for actions performing actions on
TokenRequestfound viaInOutOperationContext.getInboundMessageContext()andMessageContext.getMessage(). - AbstractOIDCTokenRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenRequestAction
- AbstractOIDCTokenResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Abstract class for actions performing actions on
OIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - AbstractOIDCTokenResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
- AbstractOIDCUserInfoRequestAction - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
Abstract class for actions performing actions on
UserInfoRequestfound viaInOutOperationContext.getInboundMessageContext()andMessageContext.getMessage(). - AbstractOIDCUserInfoRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoRequestAction
- AbstractOIDCUserInfoResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
Abstract class for actions performing actions on
OIDCMetadataContextlocated underInOutOperationContext.getInboundMessageContext(). - AbstractOIDCUserInfoResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
- AbstractOIDCUserInfoValidationResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
Abstract class for actions performing actions on
OIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - AbstractOIDCUserInfoValidationResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
- AbstractProcessTokenAction<T> - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that processes a token by validating it and populating the resulting
JWTClaimsSetinto anOAuth2TokenMgmtResponseContextplaced beneath the outboundMessageContext. - AbstractProcessTokenAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Constructor.
- AbstractPushedAuthorizationRequestComponent - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Base component for the pushed authorization request URI serializer and deserializer functions.
- AbstractPushedAuthorizationRequestComponent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.AbstractPushedAuthorizationRequestComponent
- AbstractTokenClaimsLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A Abstract function extended by lookups searching fields from tokens (Authorization Code, Access Token).
- AbstractTokenClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenClaimsLookupFunction
- AbstractTokenRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A Abstract function extended by lookups searching fields from token request.
- AbstractTokenRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- AbstractTokenRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractTokenRequestLookupFunction
- AbstractTokenRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenRequestLookupFunction
-
Deprecated.
- accept(JWT, MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.JWTAccessTokenUpdateStrategy
- accept(JWT, MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProcessedTokenUpdateStrategy
- accept(ProfileRequestContext, JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProcessedIdTokenHintUpdateStrategy
- accept(ProfileRequestContext, JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.RequestObjectUpdateStrategy
- accessControlService - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Access control service.
- accessToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Access token.
- accessToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
-
access token for response.
- accessToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
The registration access token to be validated.
- accessTokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
The access token claim set.
- AccessTokenClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
Class wrapping claims set for access token.
- AccessTokenClaimsSet(JWTClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
-
Direct constructor.
- AccessTokenClaimsSet.Builder - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
Builder to create instance of AccessTokenClaimsSet.
- AccessTokenClaimsSetLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns the access token claims set from response context.
- AccessTokenClaimsSetLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AccessTokenClaimsSetLookupFunction
- AccessTokenContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying information used to produce access tokens.
- AccessTokenContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
- accessTokenContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Strategy used to create the subcontext to hold the token.
- accessTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
-
Strategy used to locate the subcontext with the token.
- accessTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
-
Strategy used to locate the subcontext with the token.
- accessTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
-
Strategy used to locate the subcontext with the token.
- accessTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.JWTAccessTokenUpdateStrategy
-
Strategy used to locate the subcontext with the token.
- accessTokenCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Access token context.
- accessTokenLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Strategy used to obtain the access token lifetime.
- accessTokenTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Strategy used to obtain the access token type to issue.
- acr - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
the acr used in response.
- acr - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Authentication context class reference value of the authentication.
- ACR - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
The authentication context reference value.
- acrAlwaysEssentialLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
Strategy used to obtain whether all arc claims requests should be treated as Essential.
- acrClaim - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
requested acr claim.
- acrLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
Strategy used to obtain the requested acr values.
- acrValues - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
acr values.
- AddAccessTokenHashToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds access token hash claim to a
IDTokenClaimsSet. - AddAccessTokenHashToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAccessTokenHashToIDToken
- AddAcrToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds acr claim to a
IDTokenClaimsSet. - AddAcrToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAcrToIDToken
- AddApplicationTypeToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Adds the application_type to the
OIDCClientRegistrationResponseContext. - AddApplicationTypeToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddApplicationTypeToClientMetadata
- AddAttributesToClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds claims to a
ClaimsSet. - AddAttributesToClaimsSet() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Constructor.
- addAuthenticationClaims(ProfileRequestContext, RegistrationClaimsSet.Builder) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Decorate the token with authentication-related claims.
- AddAuthorizationCodeHashToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds authorization code hash claim to a
IDTokenClaimsSet. - AddAuthorizationCodeHashToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
- AddAuthTimeToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds auth_time claim to a
IDTokenClaimsSet. - AddAuthTimeToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthTimeToIDToken
- AddClientNameToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Adds client name from the input metadata to the output
OIDCClientMetadata. - AddClientNameToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddClientNameToClientMetadata
- AddContactsToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Adds the contents of the contacts attribute from the input metadata to the output
OIDCClientMetadata. - AddContactsToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddContactsToClientMetadata
- addCustomClaim(String, Object) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Add a custom claim.
- addGrantTypeIfEnabled(Set<GrantType>, GrantType, Predicate<ProfileRequestContext>, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Adds a given grant type to the given set of grant types, if the given predicate is true.
- AddGrantTypeToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that adds the grant_type to the client metadata.
- AddGrantTypeToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Constructor.
- AddIDTokenShell - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that creates a
IDTokenClaimsSetobject shell, and sets it to work contextOIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - AddIDTokenShell() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
Constructor.
- AddJwksToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that adds the jwks or jwks_uri to the client metadata, if one of those were defined in the request.
- AddJwksToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
-
Constructor.
- AddLogoUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
This action adds the logo_uri(s) to the client metadata.
- AddLogoUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoUrisToClientMetadata
- AddLogoutParametersToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Adds the parameters related to OIDC logout to the output
OIDCClientMetadata. - AddLogoutParametersToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoutParametersToClientMetadata
- AddMetadataStatementToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that adds the trusted metadata_statement chain (containing OP's signed key) to the metadata_statement claim in the response metadata.
- AddMetadataStatementToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
-
Constructor.
- AddNonceToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds nonce claim to a
IDTokenClaimsSet. - AddNonceToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
- AddPolicyUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
This action adds the policy_uri(s) to the client metadata.
- AddPolicyUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddPolicyUrisToClientMetadata
- AddRedirectUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Adds the (mandatory) redirect_uris to the output
OIDCClientMetadata. - AddRedirectUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRedirectUrisToClientMetadata
- AddRemainingClaimsToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Adds the remaining recognized claims from the input metadata to the output
OIDCClientMetadata. - AddRemainingClaimsToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
-
Constructor.
- AddRequestObjectSecurityConfigurationToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Verifies and adds the request object configuration details (request_object_signing_alg, request_object_encryption_alg and request_object_encryption_enc) to the client metadata.
- AddRequestObjectSecurityConfigurationToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Constructor.
- AddRequestUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Adds the pre-registered request_uri values to the output
OIDCClientMetadata. - AddRequestUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestUrisToClientMetadata
- addResponseTypeIfEnabled(Set<ResponseType>, ResponseType, Predicate<ProfileRequestContext>, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Adds a given response type to the given set of response types, if the given predicate is true.
- AddResponseTypesToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that adds response_types to the OIDC client metadata.
- AddResponseTypesToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Constructor.
- AddScopeToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Adds the
Scopefrom the input metadata to the outputOIDCClientMetadata. - AddScopeToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
-
Constructor.
- AddSecurityConfigurationToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Verifies and adds the security configuration details (*_response_alg and *_response_enc) to the client metadata.
- AddSecurityConfigurationToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
Constructor.
- AddSubjectTypeToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that adds the subject_type to the client metadata.
- AddSubjectTypeToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
-
Constructor.
- addToIDTokenByDefault - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Whether we can add claims to IDToken by default i.e.
- AddTokenDeliveryAttributesToClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds claims to a
ClaimsSet. - AddTokenDeliveryAttributesToClaimsSet() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
Constructor.
- AddTokenEndpointAuthMethodsToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that adds the token_endpoint_auth_method to the client metadata.
- AddTokenEndpointAuthMethodsToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
-
Constructor.
- AddTosUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
This action adds the tos_uri(s) to the client metadata.
- AddTosUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTosUrisToClientMetadata
- AddUserInfoShell - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
Action that creates a
UserInfoobject shell, and sets it to work contextOIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - AddUserInfoShell() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
Constructor.
- algorithmCandidates - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
-
Algorithm candidates to be verified against the security configuration.
- AlgorithmInfoMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
-
A
MetadataValueResolverfor resolving signing/encryption algorithm information from the currentSecurityConfiguration. - AlgorithmInfoMetadataValueResolver() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
-
Constructor.
- allowedAudienceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Strategy used to obtain the audience allowed for the client.
- allowedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Strategy used to obtain the scope allowed for the client.
- allowNonPrototype - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
-
Flag to signal whether to allow non-prototype beans.
- allowPKCEPlainCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Strategy used to determine whether to allow plaintext PKCE.
- allowPKCEPlainCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Strategy used to determine whether to allow plaintext PKCE.
- allowSignatureNone - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Whether signature algorithm none is allowed regardless of what list of Signature Validation Algs has.
- alwaysIncludedAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Attributes to include in ID token no matter what.
- alwaysIncludedAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Attributes to include in ID token no matter what.
- alwaysIncludedAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Strategy used to obtain the set of attribute IDs to include in the ID token in all cases.
- alwaysIncludedAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Strategy used to obtain the set of attribute IDs to include in the ID token in all cases.
- alwaysIssueBearerAccessTokenCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Condition used to determine whether to always issue bearer access token.
- alwaysIssueBearerAccessTokenCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
-
Condition used to determine whether to always issue bearer access token.
- appendSeparator(StringBuilder) - Method in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
Append the proper parameter separator to the builder.
- applicationContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
-
The application context from where to fetch the custom policy operators.
- apply(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRootTokenIdentifierLookupStrategy
- apply(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
- apply(Map<String, MetadataPolicy>, Map<String, MetadataPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyMergingStrategy
- apply(OIDCMetadataContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoAudienceLookupFunction
- apply(OIDCMetadataContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromIDTokenLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromUserInfoLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromProcessedTokenLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromUserInfoLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AudienceClientIDLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultClientIDLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestClientIDLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultClientIDLookupFunction
-
Deprecated.
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.LogoutRequestClientIDLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRPSessionClientIDLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.PushedAuthorizationRequestClientIDLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestClientIDLookupFunction
-
Deprecated.
- apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.UserInfoRequestClientIDLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationContextReferenceAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClientIdRegistrationAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IsPassiveAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.RevokedTokenAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectTypeAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectValueAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ValidatedRedirectUriAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTTypeHeaderAuditExtractor
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractTokenRequestLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationRequestMetadataLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Deprecated.
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenClaimsLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenRequestLookupFunction
-
Deprecated.
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AccessTokenClaimsSetLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultAuthTimeLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultDPoPProofThumbprintLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCClientRegistrationTokenClaimsContextLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCClientRegistrationTokenMetadataPolicyLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCMetadataContextLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultResponseClaimsSetLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultUserInfoSigningAlgLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidPostLogoutRedirectUrisLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidRedirectUrisLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCAuthenticationResponseContextLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRegistrationResponseContextLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ResponseContextAuthorizationCodeLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.UserInfoResponseClaimsSetLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedAudienceLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedRedirectURILookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedScopeLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAllowedScopeLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyCriteriaLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientResponseTypesLookupFunction
-
Deprecated.
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
- apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
- apply(ProfileRequestContext, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestTokenClaimsSetLookupFunction
- apply(ProfileRequestContext, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
- apply(ProfileRequestContext, URI) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
- apply(ProfileRequestContext, URI) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
- apply(ProfileRequestContext, Map<String, Object>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
- apply(ProfileRequestContext, Map<String, Object>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
- apply(ProfileRequestContext, RefreshTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
- apply(ApplicationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl.ProviderMetadataResolverServiceStrategy
- applyPredicate(ProfileRequestContext, AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
-
Applies the predicate to the given request message.
- ArrayMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
-
An implementation to
MetadataValueResolverthat contains an array of otherMetadataValueResolvers. - ArrayMetadataValueResolver() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
-
Constructor.
- assertedClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get the token claims set.
- AttributeConsentEnabledInTokenClaimsSetPredicate - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A predicate implementation that checks if attribute consent flag is enabled.
- AttributeConsentEnabledInTokenClaimsSetPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeConsentEnabledInTokenClaimsSetPredicate
- attributeContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Strategy used to locate the
AttributeContextassociated with a givenProfileRequestContext. - attributeContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
-
Strategy used to locate the
AttributeContextassociated with a givenProfileRequestContext. - attributeContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Strategy used to locate the
AttributeContextassociated with a givenProfileRequestContext. - attributeContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
-
Strategy used to locate the
AttributeContextassociated with a givenProfileRequestContext. - attributeCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
AttributeContext to use.
- attributeCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
-
AttributeContext to use.
- attributeCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
AttributeContext to use.
- AttributeFilterNamespaceHandler - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl
-
Namespace handler for the oidc specific attribute filter engine functions.
- AttributeFilterNamespaceHandler() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl.AttributeFilterNamespaceHandler
- attributeId - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Attribute ID to resolve.
- AttributeInOIDCRequestedClaimsMatcher - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl
-
Class for matching attribute to requested claims.
- AttributeInOIDCRequestedClaimsMatcher() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
- AttributeInOIDCRequestedClaimsRuleParser - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl
-
Bean definition parser for
AttributeInOIDCRequestedClaimsMatcher. - AttributeInOIDCRequestedClaimsRuleParser() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl.AttributeInOIDCRequestedClaimsRuleParser
- AttributeOIDCScopePolicyRule - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl
-
Compare the scopes of oidc authentication request with the provided value.
- AttributeOIDCScopePolicyRule() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl.AttributeOIDCScopePolicyRule
- AttributeOIDCScopeRuleParser - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl
-
Bean definition parser for
AttributeOIDCScopePolicyRule. - AttributeOIDCScopeRuleParser() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl.AttributeOIDCScopeRuleParser
- AttributeResolutionSubjectLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A function that returns subject identifier from filtered claims.
- AttributeResolutionSubjectLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
-
Constructor.
- attributeResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Attribute Resolver service.
- AttributeTokenRevocationCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A condition that checks for token revocation against a resolved
IdPAttribute. - AttributeTokenRevocationCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Constructor.
- audience - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Audience of token request.
- AUDIENCE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
Token audience.
- AudienceClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
Returns a
ClientIDfrom the first value found inOIDCAuthenticationResponseContext.getAudience(). - AudienceClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AudienceClientIDLookupFunction
- audienceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Strategy to find the audience value from the context.
- audienceRestrictionsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
Strategy used to obtain the audiences to add.
- audiences - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
Audiences to add.
- AuditFields - Class in net.shibboleth.idp.plugin.oidc.op.audit
-
Constants to use for audit logging fields stored in an
AuditContext. - AuditFields() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
Constructor.
- authContext - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Authentication context class reference value of the performed authentication.
- authContext - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
The authentication context class reference value of the performed authentication.
- authenticationContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
Authentication context.
- AuthenticationContextReferenceAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
Looks up the 'acr' value from the OIDC authentication response context.
- AuthenticationContextReferenceAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationContextReferenceAuditExtractor
-
Constructor.
- AuthenticationContextReferenceAuditExtractor(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationContextReferenceAuditExtractor
-
Constructor.
- authenticationRequest - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Authentication request in the case of such.
- AuthenticationRequestClaimsAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
A function that resolves a claim value from the authentication request.
- AuthenticationRequestClaimsAuditExtractor(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationRequestClaimsAuditExtractor
-
Constructor.
- AUTHN_INSTANT - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
auth_time value.
- AUTHORIZATION_CODE - Static variable in class net.shibboleth.idp.plugin.oidc.op.storage.RevocationCacheContexts
-
ID of context for revoking authorization codes (and access/refresh tokens based on the authorization codes).
- authorizationCode - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Authorization code.
- authorizationCodeFlowPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Predicate used to indicate whether authorization code flow is enabled.
- authorizationCodeFlowPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Predicate used to indicate whether authorization code flow is enabled.
- authorizationCodeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
-
Strategy used to locate the raw authorization code value (as
String) to use for calculating the hash. - authorizationGrantClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Authorization grant (authz code, access token) claims.
- authorizationRequest - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationRequestAction
-
The authorization request to operate on.
- authorizationRequestTypeValidationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
-
Strategy used to validate the inbound message (
AuthorizationRequest) type. - AuthorizeCodeClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
Class wrapping claims set for authorize code.
- AuthorizeCodeClaimsSet(JWTClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet
-
Private constructor for the parser.
- AuthorizeCodeClaimsSet.Builder - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
Builder to create instance of AuthorizeCodeClaimsSet.
- authTime - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Authentication time of the end user.
- authTime - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Authentication time of the performed authentication.
- authTime - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
The authentication time of the performed authentication.
- authTime - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Authentication time of the user.
- authTimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
-
Strategy used to obtain the requested claims of request.
- authzCodeLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Authorization code lifetime.
- authzCodeLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Strategy used to obtain the authz code lifetime.
- autocreate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AccessTokenClaimsSetLookupFunction
-
Whether to create the claims set if it is absent.
B
- backChannelLogoutUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
The location for the OIDC back-channel logout endpoint.
- backChannelLogoutURI - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
The back-channel logout URI for which to send the back-channel logout request.
- BaseOAuth2RequestDecoder<T extends Request> - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
-
Base decoder for Nimbus OAuth2 request messages.
- BaseOAuth2RequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
Constructor.
- beanId - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
-
The identifier for the token extension bean.
- build() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Build the
OIDCRPSession. - build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet.Builder
-
Builds AccessTokenClaimsSet.
- build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet.Builder
-
Builds AuthorizeCodeClaimsSet.
- build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
-
Builds RefreshTokenClaimsSet.
- build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Build the claims set object.
- build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Builds claims set.
- BuildAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that creates an Access Token, and stores it to an
AccessTokenContext. - BuildAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Constructor.
- buildAttribute(String, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
-
Builds an
IdPAttributewith given identifier and contents taken from the given scope. - BuildAuthenticationErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
This action reads an event from the configured
EventContextlookup strategy, constructs an OIDC authentication error response message and attaches it as the outbound message. - BuildAuthenticationErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Constructor.
- buildClaimsSet(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
Build the claims set by exploiting the contents of the pushed authorization request form parameters or request object.
- BuildClientInformation - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that uses the information from
OIDCClientRegistrationResponseContextattached to the message context for creating a newClientInformationResponse. - BuildClientInformation() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
-
Constructor.
- Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Constructor.
- Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet.Builder
-
Default constructor.
- Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet.Builder
-
Default constructor.
- Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
-
Default constructor.
- Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Default constructor.
- Builder(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Constructor.
- Builder(TokenClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet.Builder
-
Bases a builder on an existing token claims set.
- Builder(TokenClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
-
Bases a builder on an existing token claims set.
- Builder(TokenClaimsSet, Scope, ClaimsSet, ClaimsSet, Instant, Instant) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet.Builder
-
Constructor for access token claims set when derived from existing claims set.
- Builder(TokenClaimsSet, Instant, Instant) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
-
Constructor for refresh token claims set when derived from existing claims set.
- Builder(TokenClaimsSet, Instant, Instant, Instant) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
-
Constructor for refresh token claims set when derived from existing claims set.
- buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildIntrospectionErrorResponseFromEvent
- buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildPushedAuthorizationErrorResponseFromEvent
- buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildRevokeTokenErrorResponseFromEvent
- buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Method implemented by the extending class to create ErrorResponse.
- buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Method implemented by the extending class to create ErrorResponse.
- buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildRegistrationErrorResponseFromEvent
-
Method implemented by the extending class to create ErrorResponse.
- buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildTokenErrorResponseFromEvent
-
Method implemented by the extending class to create ErrorResponse.
- buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
-
Method implemented by the extending class to create ErrorResponse.
- buildHttpContext(HttpUriRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
Build the
HttpClientContextinstance to be used by the HttpClient. - buildHttpContext(ClassicHttpRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Build the
HttpClientContextinstance to be used by the HttpClient. - buildIntersectedScope(IdPAttribute, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
- buildIntersectedScope(ScriptedIdPAttribute, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
- BuildIntrospectionErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
This action reads an event from the configured
EventContextlookup strategy, constructs an OAuth2 Token Introspection error response message and attaches it as the outbound message. - BuildIntrospectionErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildIntrospectionErrorResponseFromEvent
- buildJWTClaimsSet(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Produce the underlying JWT to pass into the constructor methods.
- BuildPushedAuthorizationErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
This action reads an event from the configured
EventContextlookup strategy, constructs an OAuth2 Token PAR error response message and attaches it as the outbound message. - BuildPushedAuthorizationErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildPushedAuthorizationErrorResponseFromEvent
- BuildRegistrationErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
This action reads an event from the configured
EventContextlookup strategy, constructs an OIDC client registration error response message and attaches it as the outbound message. - BuildRegistrationErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildRegistrationErrorResponseFromEvent
- buildResolutionContext(ProfileRequestContext, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Build an
AttributeResolutionContextto use. - BuildRevokeTokenErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
This action reads an event from the configured
EventContextlookup strategy, constructs an OAuth2 Token Revocation error response message and attaches it as the outbound message. - BuildRevokeTokenErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildRevokeTokenErrorResponseFromEvent
- buildScope(IdPAttribute) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
-
Builds
Scopefrom the given attribute contents. - buildScope(ScriptedIdPAttribute) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
-
Builds
Scopefrom the givenScriptedIdPAttribute. - BuildTokenErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
This action reads an event from the configured
EventContextlookup strategy, constructs an OIDC token error response message and attaches it as the outbound message. - BuildTokenErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildTokenErrorResponseFromEvent
- BuildUserInfoErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
This action reads an event from the configured
EventContextlookup strategy, constructs an OIDC user info error response message and attaches it as the outbound message. - BuildUserInfoErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
C
- cacheControl - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
-
Deprecated.cache control value.
- cacheControl - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
-
Deprecated.cache control value.
- calculateChainExp(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Calculates the chain expiration time by taking the closest from the existing item in the claims set (if exists) and the value calculated via current profile configuration.
- calculateHash(DPoPAccessToken) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
-
Calculates the SHA-256 hash of the given DPoP access token.
- candidates - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.RequestedGrantTypesCondition
-
Candidate grant types.
- ChainExpiryClaimsValidator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
-
Iff a chain expiration time (c_exp) claim is present, verifies that it is ahead of the current time, else the JWT claims set is rejected.
- ChainExpiryClaimsValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.ChainExpiryClaimsValidator
-
Constructor.
- chainRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
-
Lookup function to supply chain revocation lifetime.
- chainRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Lookup function to supply chain revocation lifetime.
- chainRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Lookup function to supply chain revocation lifetime.
- checkAccess(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Check access policies.
- checkForbiddenHostname(Set<URI>, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
Checks whether a given hostname is found from the given set of URIs.
- checkForbiddenScheme(Set<URI>, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
Checks whether a given scheme is found from the given set of URIs.
- CheckRedirectURIs - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
The action that verifies the redirect_uris from the request.
- CheckRedirectURIs() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
Constructor.
- checkRequestObject(AuthorizationRequest, boolean, String, T, T) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Check if the given
AuthorizationRequestand parameter should only be set in the request object. - checkScheme(Set<URI>, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
Checks whether a given scheme is used by every item in the given set of URIs.
- claims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
-
Claims for id token and userinfo endpoint.
- ClaimsAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
Functionthat returns the released claims for the endpoint. - ClaimsAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
-
Constructor.
- ClaimsAuditExtractor(Function<ProfileRequestContext, ClaimsSet>, Function<ProfileRequestContext, ClaimsSet>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
-
Constructor.
- claimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationTokenClaimsContext
-
The claims set in the initial access token.
- claimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
The claims set to operate on.
- claimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Claims Set to use.
- claimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
Claims Set to use.
- claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
-
The claims validator to be applied for validating the ID tokem hint.
- claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
The claims validator to use.
- claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
-
The claims validator to be applied for validating the DPoP proof.
- claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
The claims validator to use for validating the JWT refresh token.
- claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
-
The claims validator to use.
- claimsValidatorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Strategy used to obtain
ClaimsValidator. - claimsValidatorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Lookup strategy for claims validator.
- claimsValidatorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
-
Lookup for the claims validator to be applied for validating the DPoP proof.
- claimsValidatorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
-
Lookup strategy for claims validator.
- classRefLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
-
Strategy used to determine the AuthnContextClassRef.
- CLIENT_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
-
Flow variable indicating ID of storage key.
- CLIENT_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
OIDC client ID.
- clientAuthContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
-
Strategy that will return
OAuth2ClientAuthenticationContext. - clientAuthContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTTypeHeaderAuditExtractor
-
Strategy that will return
OAuth2ClientAuthenticationContext. - clientAuthContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Strategy that will return
OAuth2ClientAuthenticationContext. - clientAuthentication - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
The extracted client authentication information.
- ClientAuthenticationJWTPayloadClaimsAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.authn.audit.impl
-
Functionthat returns the desired claim from the client authentication JWT payload. - ClientAuthenticationJWTPayloadClaimsAuditExtractor(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
-
Constructor.
- ClientAuthenticationJWTPayloadClaimsAuditExtractor(String, Function<ProfileRequestContext, OAuth2ClientAuthenticationContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
-
Constructor.
- ClientAuthenticationJWTTypeHeaderAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.authn.audit.impl
-
Functionthat returns the type header from the client authentication JWT payload. - ClientAuthenticationJWTTypeHeaderAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTTypeHeaderAuditExtractor
-
Constructor.
- ClientAuthenticationJWTTypeHeaderAuditExtractor(Function<ProfileRequestContext, OAuth2ClientAuthenticationContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTTypeHeaderAuditExtractor
-
Constructor.
- clientAuthMethodsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
-
Lookup strategy for enabled client authentication methods.
- clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
-
Client ID to operate on.
- clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
The client identifier.
- clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
-
EntityID.
- clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
Requested client identifier for the access token to be issued.
- clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Mandatory Unique Client Identifier.
- clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
OAuth2 client id.
- clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
OIDC client id.
- clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Client identifier.
- clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Client identifier.
- clientIdIssuedAt - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Optional time at which the client identifier was issued.
- clientIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Lookup function for the client identifier.
- clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
-
Strategy used to obtain the client id value for authorize/token request.
- clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Strategy used to obtain the original client ID.
- clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
Strategy used to obtain the client id value for authorize/token request.
- clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
-
Strategy used to obtain the client id value used in endpoint authentication.
- clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Strategy used to obtain the client id value for authorize/token request.
- clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
-
Strategy used to obtain the client id value for authorize/token request.
- clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Lookup strategy used to obtain the client id value.
- clientIdPolicyName - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Name of access control policy governing clientId acceptance.
- ClientIdRegistrationAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
Looks up the client ID value from the OIDC client registration response context.
- ClientIdRegistrationAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClientIdRegistrationAuditExtractor
-
Constructor.
- ClientIdRegistrationAuditExtractor(Function<ProfileRequestContext, OIDCClientRegistrationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClientIdRegistrationAuditExtractor
-
Constructor.
- ClientInfoAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns
OIDCMetadataContext. - ClientInfoAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoAudienceLookupFunction
- clientInformation - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
-
The RP metadata where the front-channel logout related data is fetched.
- clientInformation - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
-
The OIDC client information found from
OIDCMetadataContext. - clientInformationManager - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
The client information manager used for storing the information.
- ClientInfoScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns
OIDCMetadataContext. - ClientInfoScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
- ClientManagementArguments - Class in net.shibboleth.idp.plugin.oidc.op.cli
-
Command line processing for OIDC client mgmt flow.
- ClientManagementArguments() - Constructor for class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
- clientMetadata - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
The metadata for the client: the attributes supported by the OP must be included.
- clientResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
-
Resolver used to look up OIDC client information.
- clientSecret - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Optional client secret.
- clientSecretExpiresAt - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Time at which the client secret will expire or 0 if it will not expire.
- clockSkew - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
-
Positive clock skew adjustment to consider when calculating revocation lifetime.
- clockSkew - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
-
Positive clock skew adjustment to consider when calculating revocation lifetime.
- clockSkew - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.ChainExpiryClaimsValidator
-
Positive clock skew adjustment to consider when checking JWT expiration (Default value: 60 seconds).
- codeChallenge - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Code challenge and the code challenge method stored to authz code.
- codeChallenge - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
PKCE code challenge.
- codeChallenge - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
PKCE code challenge.
- codeChallenge - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Code challenge.
- codeChallengeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Strategy used to locate the code challenge.
- codeChallengeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Strategy used to locate the code challenge.
- codeChallengeMethod - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
PKCE code challenge method.
- codeChallengeMethodLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Strategy used to locate the code challenge method.
- codeChallengeMethodLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Strategy used to locate the code challenge method.
- codeHashCalculationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
-
The strategy used for calculating the authorization code hash value.
- codeVerifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
PKCE code verifier.
- codeVerifierLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Strategy used to locate the PKCE Code Verifier value.
- compareTo(ServiceableProviderMetadataProvider) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
- consentContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Strategy used to locate the
OIDCAuthenticationResponseConsentContext. - consentContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Strategy used to locate the
OIDCAuthenticationResponseConsentContext. - consentContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Strategy used to locate the
OIDCAuthenticationResponseConsentContext. - consentedAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseConsentContext
-
Attributes having consent.
- consentedAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentFromTokenToResponseContext
-
Strategy used to obtain the consented attributes.
- consentedClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
consented claims.
- consentEnabled - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Has consent been asked from the end-user.
- consentEnabledPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Predicate used to check if consent is enabled with a given
ProfileRequestContext. - consentEnabledPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Predicate used to check if consent is enabled with a given
ProfileRequestContext. - consentEnabledPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
-
Predicate used to check if consent is enabled.
- constructJWT(RefreshTokenClaimsSet, String, SignatureSigningParameters, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Construct a
SignedJWTwith the given input claims and signing parameters. - containsKeys(JWKSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
-
Checks that the given JWK set contains at least one key.
- content - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
-
Deprecated.JSON content.
- context - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
-
Context in revocation cache.
- contextType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
-
Deprecated.Type of subcontext to create.
- contextType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
-
Type of subcontext to create.
- creationInstant - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
The time when this session was created.
- creationInstant(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Set the time when this session was created.
- CredentialMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
-
An implementation of
MetadataValueResolverthat converts public parts of the attachedCredentialto the value. - CredentialMetadataValueResolver() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
-
Constructor.
- credentialResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Source of signing keys.
- credentialResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Source of signing keys used for validating the signature of the JWT refresh token.
- credentialResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
-
Source of signing keys.
- cspDigester - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
CSP digester for generating CSP hashes.
- cspNonceGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
CSP nonce generator.
- ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationContextReferenceAuditExtractor
-
Lookup strategy for the context to find the subject value from.
- ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClientIdRegistrationAuditExtractor
-
Lookup strategy for the context to find the subject value from.
- ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectTypeAuditExtractor
-
Lookup strategy for the context to find the subject type from.
- ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectValueAuditExtractor
-
Lookup strategy for the context to find the subject value from.
- ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ValidatedRedirectUriAuditExtractor
-
Lookup strategy for the context to find the subject value from.
- CUSTOM_RESOURCE_PARAM_NAME - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestAudienceLookupFunction
-
Deprecated.Custom name for the resource parameter that allows non-uri values.
- CUSTOM_RESOURCE_PARAM_PREFIX - Static variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestAudienceLookupFunction
-
Custom prefix for the resource parameter values to allow non-uri values.
- customClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Extends the token with custom claims.
- CustomNimbusRequestParser<T extends Request> - Interface in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
-
An interface for custom parsers for transforming
HttpServletRequestinto a Nimbus request object. - customRedirectUriValidationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Strategy to obtain custom redirect URI validation strategy.
- customRequestParser - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
A custom extension for parsing Nimbus object out of the servlet request.
- CustomResourceHttpServletRequestWrapper - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
-
A custom extension to
HttpServletRequestWrapperoverriding the resource parameter values with a custom prefix in the query string (for GET) and parameter map (for POST). - CustomResourceHttpServletRequestWrapper(HttpServletRequest) - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.CustomResourceHttpServletRequestWrapper
-
Constructor.
D
- dataEncryptionAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Strategy to obtain list of supported data encryption algorithms.
- dataEncryptionAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
Strategy to obtain list of supported data encryption algorithms.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Data sealer for handling access token.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Data sealer for unwrapping token.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Sealer to use for opaque tokens.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Data sealer for handling authorization code.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Data sealer for handling access token.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Data sealer for unwrapping authorization code.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Data sealer for unwrapping authorization code.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Data sealer for decrypting the private parts of the refresh token.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Data sealer for sealing private parts of the refresh token.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
Data sealer for decrypting the contents of the claims set.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Data sealer for encrypting the claims set.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Data sealer for wrapping the JSON into opaque nonce value.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
-
Data sealer for unwrapping opaque nonce value.
- dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
-
Data sealer for unwrapping authorization code.
- decodeAttribute(ProfileRequestContext, Collection<TranscodingRule>, JSONObject, Multimap<String, IdPAttribute>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
-
Access the registry of transcoding rules to decode the input object.
- decryptSealedClaimsSet(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Decrypt the sealed claims from 'for_op' claim and build
RefreshTokenClaimsSetout of its contents. - DEFAULT_ERROR_CODE - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Default value for the error code in the error response messages.
- DEFAULT_HTTP_STATUS_CODE - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Default value for the HTTP response status code in the HTTP responses.
- DEFAULT_TEMPLATE_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Default template ID for using FORM POST response mode.
- DefaultAllowedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default function for looking up the allowed scope.
- DefaultAllowedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAllowedScopeLookupFunction
-
Constructor.
- defaultAudience - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoAudienceLookupFunction
-
Default audience in the absence of metadata.
- DefaultAuthorizationRequestTypeValidationStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Validation strategy for the inbound message.
- DefaultAuthorizationRequestTypeValidationStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
-
Constructor.
- DefaultAuthTimeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns auth time via a lookup function.
- DefaultAuthTimeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultAuthTimeLookupFunction
- DefaultChainRevocationLifetimeLookupStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default lookup function for fetching the chain revocation lifetime.
- DefaultChainRevocationLifetimeLookupStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
-
Constructor.
- DefaultClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns client id of the authentication request via a lookup function.
- DefaultClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultClientIDLookupFunction
- DefaultClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultClientIDLookupFunction
-
Deprecated.
- defaultCode - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
The code for unmapped events.
- defaultCode - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
-
The status code for unmapped events.
- DefaultComputeAuthorizationCodeHashFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that computes a hash value for the authorization code via required configurable lookup function.
- DefaultComputeAuthorizationCodeHashFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
- DefaultDPoPProofNonceGenerator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
-
Default implementation for the function used for generating new DPoP Proof nonces.
- DefaultDPoPProofNonceGenerator(DataSealer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Constructor.
- DefaultDPoPProofThumbprintLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns validated DPoP proof JWK thumbprint if stored in
OAuth2DPoPProofContext. - DefaultDPoPProofThumbprintLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultDPoPProofThumbprintLookupFunction
- DefaultEnforceSelfAudienceCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A predicate that returns true if all the following conditions are met:
DefaultEnforceSelfAudienceCondition.limitInitialAccessTokenToSelfPredicatereturns true The inbound message is aTokenRequestThe token request grant_type is authorization_code - DefaultEnforceSelfAudienceCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultEnforceSelfAudienceCondition
-
Constructor.
- DefaultEnforceSelfAudienceCondition(Predicate<ProfileRequestContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultEnforceSelfAudienceCondition
-
Constructor.
- DefaultJwtRefreshTokenDeserializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default implementation for deserializing an incoming JWT refresh token into the refresh token claims set.
- DefaultJwtRefreshTokenDeserializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Constructor.
- DefaultJwtRefreshTokenSerializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default implementation for serializing the refresh token claims set into a JWT refresh token.
- DefaultJwtRefreshTokenSerializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Constructor.
- defaultLanguage - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
The default language when it has not been defined in the metadata.
- DefaultLogoutHintMatchingPredicate - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default validation strategy for logout hints.
- DefaultLogoutHintMatchingPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultLogoutHintMatchingPredicate
- DefaultMetadataPolicyCriteriaLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A function returning a
CriteriaSetwhich contains the metadata policy document location asResourceLocationCriterion. - DefaultMetadataPolicyCriteriaLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyCriteriaLookupFunction
- DefaultMetadataPolicyMergingStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A function that merges two maps of metadata policies according to the rules specified in the OIDC federation spec (draft 17), section 5.1.3.1:
- DefaultMetadataPolicyMergingStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyMergingStrategy
- DefaultOIDCClientRegistrationTokenClaimsContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns a
OIDCClientRegistrationTokenClaimsContextfrom the inbound message context, located as a subcontext for the profile request context. - DefaultOIDCClientRegistrationTokenClaimsContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCClientRegistrationTokenClaimsContextLookupFunction
- DefaultOIDCClientRegistrationTokenMetadataPolicyLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns a map of metadata policies from the
RegistrationClaimsSet. - DefaultOIDCClientRegistrationTokenMetadataPolicyLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCClientRegistrationTokenMetadataPolicyLookupFunction
- DefaultOIDCMetadataContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns
OIDCMetadataContext. - DefaultOIDCMetadataContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCMetadataContextLookupFunction
-
Constructor.
- DefaultPostLogoutRedirectURIValidationPredicate - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default validation strategy for post logout redirection URIs.
- DefaultPostLogoutRedirectURIValidationPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPostLogoutRedirectURIValidationPredicate
-
Constructor.
- DefaultPushedAuthorizationRequestUriDeserializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default deserialization function for decoding the request URI into claims set within OAuth2 PAR.
- DefaultPushedAuthorizationRequestUriDeserializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
Constructor.
- DefaultPushedAuthorizationRequestUriSerializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default serialization function for the request URI claims set within OAuth2 PAR.
- DefaultPushedAuthorizationRequestUriSerializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Constructor.
- DefaultRequestAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns resource value of the authorization request.
- DefaultRequestAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestAudienceLookupFunction
- DefaultRequestAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestAudienceLookupFunction
-
Deprecated.
- DefaultRequestCodeChallengeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns code challenge value of the authorization request via a lookup function.
- DefaultRequestCodeChallengeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestCodeChallengeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeLookupFunction
- DefaultRequestCodeChallengeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeLookupFunction
-
Deprecated.
- DefaultRequestCodeChallengeMethodLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns code challenge method value of the authorization request via a lookup function.
- DefaultRequestCodeChallengeMethodLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestCodeChallengeMethodLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
- DefaultRequestCodeChallengeMethodLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
-
Deprecated.
- DefaultRequestCodeVerifierLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
For Token endpoint.
- DefaultRequestCodeVerifierLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestCodeVerifierLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeVerifierLookupFunction
- DefaultRequestCodeVerifierLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeVerifierLookupFunction
-
Deprecated.
- DefaultRequestDPoPJktLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns dpop_jkt value of the authorization request via a lookup function.
- DefaultRequestDPoPJktLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestDPoPJktLookupFunction
- DefaultRequestedAcrLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns copy of requested acr values via a lookup function.
- DefaultRequestedAcrLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestedAcrLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedAcrLookupFunction
- DefaultRequestedAcrLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedAcrLookupFunction
-
Deprecated.
- DefaultRequestedClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns copy of requested claims via a lookup function.
- DefaultRequestedClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestedClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedClaimsLookupFunction
- DefaultRequestedClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedClaimsLookupFunction
-
Deprecated.
- DefaultRequestedPromptLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns copy of requested prompt via a lookup function.
- DefaultRequestedPromptLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestedPromptLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedPromptLookupFunction
- DefaultRequestedPromptLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedPromptLookupFunction
-
Deprecated.
- DefaultRequestedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns copy of requested scopes via a lookup function.
- DefaultRequestedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedScopeLookupFunction
- DefaultRequestedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedScopeLookupFunction
-
Deprecated.
- DefaultRequestLoginHintLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns request login hint via a lookup function.
- DefaultRequestLoginHintLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestLoginHintLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestLoginHintLookupFunction
- DefaultRequestLoginHintLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestLoginHintLookupFunction
-
Deprecated.
- DefaultRequestMaxAgeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns authentication max age parameter the request via a lookup function.
- DefaultRequestMaxAgeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestMaxAgeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestMaxAgeLookupFunction
- DefaultRequestMaxAgeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestMaxAgeLookupFunction
-
Deprecated.
- DefaultRequestNonceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns copy of Nonce via a lookup function.
- DefaultRequestNonceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestNonceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestNonceLookupFunction
- DefaultRequestNonceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestNonceLookupFunction
-
Deprecated.
- DefaultRequestRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns redirect uri of the authentication request via a lookup function.
- DefaultRequestRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestRedirectURILookupFunction
- DefaultRequestRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestRedirectURILookupFunction
-
Deprecated.
- DefaultRequestResponseModeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns copy of the response mode of the request via a lookup function.
- DefaultRequestResponseModeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestResponseModeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseModeLookupFunction
- DefaultRequestResponseModeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseModeLookupFunction
-
Deprecated.
- DefaultRequestResponseTypeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns copy of response type via a lookup function.
- DefaultRequestResponseTypeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestResponseTypeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseTypeLookupFunction
- DefaultRequestResponseTypeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseTypeLookupFunction
-
Deprecated.
- DefaultRequestStateLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns copy of the state the request via a lookup function.
- DefaultRequestStateLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultRequestStateLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestStateLookupFunction
- DefaultRequestStateLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestStateLookupFunction
-
Deprecated.
- defaultResponder - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
-
Default responder value, usually entity id.
- DefaultResponseClaimsSetLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns id token claims set from response context.
- DefaultResponseClaimsSetLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultResponseClaimsSetLookupFunction
- DefaultRevokeConsentPredicate - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default predicate to decide if the pre-existing consent should be revoked.
- DefaultRevokeConsentPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Constructor.
- DefaultRootTokenIdentifierLookupStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default lookup function for fetching the root token identifier from the given claims set.
- DefaultRootTokenIdentifierLookupStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRootTokenIdentifierLookupStrategy
- defaultScope - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
-
Default to use if no metadata exists.
- defaultScope - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
-
The default
Scopeif it was not defined in the request. - defaultStatusCode - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
The status code for unmapped events.
- defaultSubjectType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
-
The default
SubjectTypeif it was not defined in the request. - DefaultSubjectTypeStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Function to decide on subject type.
- DefaultSubjectTypeStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
-
Constructor.
- defaultTokenLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
The token lifetime.
- DefaultTokenRevocationLifetimeLookupStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default lookup function for fetching the token revocation lifetime from the given claims set.
- DefaultTokenRevocationLifetimeLookupStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
-
Constructor.
- DefaultUnregisteredClientAllowedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default lookup function for fetching the allowed scope from the unregistered client policy.
- DefaultUnregisteredClientAllowedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
-
Constructor.
- DefaultUnregisteredClientPolicyValidator - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default validator for the unregistered client policies.
- DefaultUnregisteredClientPolicyValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
-
Constructor.
- DefaultUnregisteredClientResponseTypesLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Deprecated, for removal: This API element is subject to removal in a future version.The response type validation is handled against the policy in the SWF action
- DefaultUnregisteredClientResponseTypesLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientResponseTypesLookupFunction
-
Deprecated.Constructor.
- DefaultUseOnlyRequestObjectPredicate - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
Default predicate for using only request object parameters if the authorization request (1) contains request object and (2) is not OIDC authentication request or is provided by the PAR endpoint.
- DefaultUseOnlyRequestObjectPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultUseOnlyRequestObjectPredicate
- DefaultUserInfoSigningAlgLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns registered userinfo signing algorithm from metadata.
- DefaultUserInfoSigningAlgLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultUserInfoSigningAlgLookupFunction
- DefaultValidPostLogoutRedirectUrisLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns registered post logout redirection uris from metadata.
- DefaultValidPostLogoutRedirectUrisLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidPostLogoutRedirectUrisLookupFunction
- DefaultValidRedirectUrisLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns registered redirection uris from metadata.
- DefaultValidRedirectUrisLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidRedirectUrisLookupFunction
- DefaultValidResponseTypesLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns a set of valid response type for the authorization request.
- DefaultValidResponseTypesLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- DefaultValidResponseTypesLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultValidResponseTypesLookupFunction
- DefaultValidResponseTypesLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidResponseTypesLookupFunction
-
Deprecated.
- defaultValue - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
-
The value used for matching if metadata value was null.
- deliveryClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
-
Strategy used to obtain the delivery claims.
- deniedUserInfoAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Attributes to omit from UserInfo token.
- deniedUserInfoAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Attributes to omit from UserInfo token.
- deniedUserInfoAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Strategy used to obtain the set of attribute IDs to omit from the UserInfo token.
- deniedUserInfoAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Strategy used to obtain the set of attribute IDs to omit from the UserInfo token.
- deserializeRefreshToken(ProfileRequestContext, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Attempt to deseriaalize a (serialized) refresh token value via configured deserializers.
- digester - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
-
Digester for SHA-1.
- dlClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Token delivery claims delivered both for id token and userinfo response.
- dlClaimsID - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Token delivery claims delivered for id token.
- dlClaimsUI - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Token delivery claims delivered for userinfo response.
- doBuildURL(StringBuilder) - Method in class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
- doBuildURL(StringBuilder) - Method in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
- DoClientManagementOperation - Class in net.shibboleth.idp.plugin.oidc.op.admin.impl
-
Action that implements a JSON REST API for querying and deleting OIDC client information.
- DoClientManagementOperation() - Constructor for class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
- doDecode() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
- doDeserialize(JsonObject, String, Instant, Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionSerializer
- doEncode() - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.SetFrontChannelLogoutSuccess
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundIntrospectionResponseMessage
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundRevokeTokenResponseMessage
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
-
Deprecated.
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAccessTokenHashToIDToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAcrToIDToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddApplicationTypeToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthTimeToIDToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddClientNameToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddContactsToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoUrisToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoutParametersToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddPolicyUrisToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRedirectUrisToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestUrisToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTosUrisToClientMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeSubjectContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentFromTokenToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.VerifyRequestedSubjectIdentifier
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.FormOutboundUserInfoResponseMessage
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
- doExecute(ProfileRequestContext, AuthenticationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
- doExecute(ProfileRequestContext, AuthenticationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
- doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
- doInvoke(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
- doInvoke(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
- doInvoke(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthenticationRequestLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestAudienceLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedPromptLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedScopeLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestRedirectURILookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseModeLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseTypeLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestStateLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidResponseTypesLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthenticationRequestLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestAudienceLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestDPoPJktLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedPromptLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedScopeLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestRedirectURILookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseModeLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseTypeLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestStateLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultValidResponseTypesLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractTokenRequestLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeVerifierLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestAudienceLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestRedirectURILookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestScopeLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenRequestLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeVerifierLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAudienceLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAuthorizationCodeLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRedirectURILookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestScopeLookupFunction
-
Deprecated.Implemented to perform the actual lookup.
- doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthenticationRequestLookupFunction
-
Deprecated.Implemented to perform the actual lookup from OIDC authentication request.
- doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedAcrLookupFunction
-
Deprecated.Implemented to perform the actual lookup from OIDC authentication request.
- doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedClaimsLookupFunction
-
Deprecated.Implemented to perform the actual lookup from OIDC authentication request.
- doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestLoginHintLookupFunction
-
Deprecated.Implemented to perform the actual lookup from OIDC authentication request.
- doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestMaxAgeLookupFunction
-
Deprecated.Implemented to perform the actual lookup from OIDC authentication request.
- doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestNonceLookupFunction
-
Deprecated.Implemented to perform the actual lookup from OIDC authentication request.
- doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationRequestClaimsAuditExtractor
-
Implemented to perform the actual lookup.
- doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthenticationRequestLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedAcrLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedClaimsLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestLoginHintLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestMaxAgeLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestNonceLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenClaimsLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAuthTimeLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestConsentedAttributesLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestDeliveryClaimsLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestIDTokenDeliveryClaimsLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestNonceLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRequestedClaimsLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestSessionIdLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestSubjectLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestUserInfoDeliveryClaimsLookupFunction
-
Implemented to perform the actual lookup.
- doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestValidRequestURIsLookupFunction
-
Implemented to perform the actual lookup.
- doNativeParse(Element, ParserContext, BeanDefinitionBuilder) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl.AttributeInOIDCRequestedClaimsRuleParser
- doPostEncode(AuthorizationResponse) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Set response message to FORM POST velocity context.
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationRequestAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeSubjectContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
- doPreExecute(ProfileRequestContext, AuthenticationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
- doPreExecute(ProfileRequestContext, AuthenticationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
- doProtocolLog(ProfileRequestContext, JWT, String) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
-
Create a protocol message containing the pretty-printed contents of the given JWT.
- doProtocolLog(ProfileRequestContext, JWT, String) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Create a protocol message containing the pretty-printed contents of the given JWT.
- doProtocolLog(ProfileRequestContext, IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
Create a protocol message containing the pretty-printed contents of the given claims set.
- doSerializeAdditional(SPSession, JsonGenerator) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionSerializer
- doValidate(JWTClaimsSet, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.ChainExpiryClaimsValidator
- doValidate(JWTClaimsSet, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
- doValidate(JWTClaimsSet, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
- doValidate(JWTClaimsSet, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.TokenRevocationConditionValidator
- doValidate(ProfileRequestContext, AuthenticationContext, UsernamePasswordContext, CredentialValidator.WarningHandler, CredentialValidator.ErrorHandler) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
- doValidate(ProfileRequestContext, AuthenticationContext, CredentialValidator.WarningHandler, CredentialValidator.ErrorHandler) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
- doValidate(ProfileRequestContext, AuthenticationContext, CredentialValidator.WarningHandler, CredentialValidator.ErrorHandler) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
- dpopAccessTokenCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
-
Predicate for deciding to refer to DPoP in error responses.
- DPoPAccessTokenHashFromRequestLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A function that calculates a hash of the DPoP access token from the
HttpServletRequestif found. - DPoPAccessTokenHashFromRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
- DPoPAccessTokenInRequestCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A predicate returning true it detects a DPoP access token from the
HttpServletRequest. - DPoPAccessTokenInRequestCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
- dpopProof - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
-
DPoP Proof JWT.
- dpopProofJwkThumbprint - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
DPoP Proof JWK thumbprint.
- dpopProofJwkThumbprint - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
DPoP Proof JWK thumbprint.
- DPoPProofNonceClaimsValidator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
-
A
ClaimsValidatorfor validating if nonce included in the DPoP Proof JWT is valid. - DPoPProofNonceClaimsValidator(DataSealer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
-
Constructor.
- DPoPProofNonceJWTValidationException - Exception in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
-
A DPoP Proof nonce-specific extension to
JWTValidationException. - DPoPProofNonceJWTValidationException(String) - Constructor for exception net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceJWTValidationException
-
Constructor.
- dPopProofThumbprint - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
-
Validated DPoP Proof JWT JWK thumbprint.
- dpopProofThumbprintLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
Strategy used to locate thumbprint of validated DPoP Proof JWT.
- dpopProofThumbprintLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Strategy used to locate thumbprint of validated DPoP Proof JWT.
- dpopProofThumbprintLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
-
Strategy used to locate thumbprint of validated DPoP Proof JWT.
- DynamicFilesystemProviderMetadataResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
-
An extension to
FilesystemProviderMetadataResolverthat enables some of the claims to be dynamically updated outside the file. - DynamicFilesystemProviderMetadataResolver(Timer, Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
-
Constructor.
- DynamicFilesystemProviderMetadataResolver(Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
-
Constructor.
- dynamicResolvers - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
-
The map of dynamic metadata value resolvers, key corresponding to the name of the metadata field.
E
- embeddedResolvers - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
-
The list of resolvers whose value is added to the result of this resolver.
- enable(ModuleContext) - Method in class net.shibboleth.idp.plugin.oidc.op.OIDCOPModule
- enabledMethods - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
Enabled client authn methods.
- enabledTypes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
-
Enabled grant types.
- encodeAttribute(AttributeTranscoderRegistry, ProfileRequestContext, IdPAttribute) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Access the registry of transcoding rules to transform the input attribute into claims.
- encodeAttribute(AttributeTranscoderRegistry, ProfileRequestContext, IdPAttribute, Collection<JSONObject>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Access the registry of transcoding rules to transform the input attribute into claims.
- encodeConsentPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
-
Predicate used to check if consent should be embedded in tokens.
- encodedAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Attributes to encode for recovery.
- encodedAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Strategy used to obtain the set of attribute IDs to encode for back-channel recovery.
- ENCRYPTED_ID_TOKEN - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
The flag whether the id_token is encrypted.
- enforcedMetadata - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
-
The policy-enforced requested client metadata.
- enforceRefreshTokenRotationCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Strategy used to determine whether to revoke refresh tokens once they're used.
- enforceSelfAudienceCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Whether to enforce solely the OP as audience.
- entityContextClass - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
-
The context class representing the SAML entity for whom data is to be attached.
- equals(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
- equals(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
.
- error - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
-
Deprecated.Error object.
- errorObject - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
-
Error Object.
- eventContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Strategy function for access to
EventContextto check. - eventContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
-
Strategy function for access to
EventContextto check. - ExecuteBackChannelLogoutRequest - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
An action that executes the OIDC back-channel logout request and sets the result via
LogoutPropagationContext.setResult(net.shibboleth.idp.session.context.LogoutPropagationContext.Result). - ExecuteBackChannelLogoutRequest() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
Constructor.
- exp - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Expiration time of the claims set.
- expiration - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Expiration time of the token.
- expiration - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Expiration time of the token.
- expirationInstant - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
The time when this session expires.
- expirationInstant(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Set the time when this session expires.
- extensionType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
-
The token extension type.
- ExtractClientAuthenticationFromRequest - Class in net.shibboleth.idp.plugin.oidc.op.authn.impl
-
Extracts OAuth 2 client authentication details from a request and stores them in an
OAuth2ClientAuthenticationContextbeneath theAuthenticationContextfor subsequent validation. - ExtractClientAuthenticationFromRequest() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
-
Constructor.
F
- FilesystemMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
-
An implementation to
RefreshableMetadataValueResolverthat fetches the information from a file. - FilesystemMetadataValueResolver(Timer, Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
-
Constructor.
- FilesystemMetadataValueResolver(Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
-
Constructor.
- FilesystemProviderMetadataResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
-
Based on
FilesystemMetadataResolver. - FilesystemProviderMetadataResolver(Timer, Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
-
Constructor.
- FilesystemProviderMetadataResolver(Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
-
Constructor.
- FORCE_AUTHN - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
prompt=login requested field.
- forceAuthnPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Extracts forceAuthn property from profile config.
- forcePKCE - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Whether PKCE is mandatory.
- forcePKCE - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Whether PKCE is mandatory.
- forcePKCECondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Strategy used to determine whether to require PKCE.
- forcePKCECondition - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Strategy used to determine whether to require PKCE.
- FormOutboundAuthenticationResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that forms outbound message based on request and response context.
- FormOutboundAuthenticationResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Constructor.
- FormOutboundDiscoveryResponse - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
This action builds a response for the OP configuration discovery request.
- FormOutboundDiscoveryResponse() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
- FormOutboundIntrospectionResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that forms outbound token introspection success message.
- FormOutboundIntrospectionResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundIntrospectionResponseMessage
- FormOutboundLogoutRequestMessage - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
Action that forms outbound message based on request and response context.
- FormOutboundLogoutRequestMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
-
Constructor.
- FormOutboundRevokeTokenResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that forms outbound token revocation success message.
- FormOutboundRevokeTokenResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundRevokeTokenResponseMessage
- FormOutboundTokenResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that forms outbound message based on token request and response context.
- FormOutboundTokenResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
- FormOutboundUserInfoResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
Action that forms outbound message based on response context.
- FormOutboundUserInfoResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.FormOutboundUserInfoResponseMessage
- FormOutbounPushedAuthorizationResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that forms outbound pushed authorization response message.
- FormOutbounPushedAuthorizationResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
Constructor.
- FormRpInitiatedLogoutResponse - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
Action that forms outbound message based on request and response context.
- FormRpInitiatedLogoutResponse() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
- fromPredicate(Predicate<Scope>) - Static method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
-
Workaround for Spring type conversion ambiguities.
- fromValue(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
-
Workaround for Spring type conversion ambiguities.
- fromValues(Collection<String>) - Static method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
-
Workaround for Spring type conversion ambiguities.
- FrontChannelLogoutPropagationResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging.impl
-
A Nimbus
Responseimplementation representing a front-channel logout propagation message that is sent to the RP's front-channel logout URI endpoint. - FrontChannelLogoutPropagationResponse(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
-
Constructor.
- FrontChannelLogoutPropagationResponse(String, String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
-
Constructor.
- frontChannelLogoutUri - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
-
The front-channel logout endpoint.
- frontChannelLogoutUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
The location for the OIDC front-channel logout endpoint.
- frontChannelLogoutUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
-
The front-channel logout endpoint.
- FunctionMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
-
An implementation of
MetadataValueResolverthat resolves the value via attachedFunction. - FunctionMetadataValueResolver() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
-
Constructor.
G
- GenerateClientID - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Creates the client ID for the registration.
- GenerateClientID() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Constructor.
- GenerateClientSecret - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Creates a new client secret with the
IdentifierGenerationStrategyattached to this action. - GenerateClientSecret() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
Constructor.
- getAccessToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get access token.
- getAccessTokenClaimSet() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the access token claims set (used when prepping OAuth-only access tokens).
- getAccessTokenLog(AccessToken) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
-
Helper method for getting protocol log message for access token object.
- getAcr() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Returns the acr meant for response.
- getACR() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get acr of the performed authentication.
- getAudience() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get modifiable collection of token audience values.
- getAudience() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get audience of the token.
- getAuthContext() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the authentication context class reference value of the performed authentication.
- getAuthenticationRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationRequestAction
-
Returns OIDC authentication request.
- getAuthenticationTime() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get auth time of the user.
- getAuthorizationCode() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get authorization code.
- getAuthorizationCodeFlowEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Get predicate used to indicate whether authorization code flow is enabled.
- getAuthorizationCodeFlowEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Get predicate used to indicate whether authorization code flow is enabled.
- getAuthorizationGrantClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the claims representing the authorization grant, which may be derived from an authorization code, refresh token, or assertion.
- getAuthorizationGrantLog(AuthorizationGrant) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
-
Helper method for getting protocol log message for authorization grant object.
- getAuthorizationRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationRequestAction
-
Returns OAuth authorization request.
- getAuthTime() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Authentication time of the end user.
- getAuthTime() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the authentication time of the performed authentication.
- getBackChannelLogoutUri() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
Get the location for the OIDC back-channel logout endpoint.
- getBean() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
-
Get the token extension bean by using constraints from the class variables.
- getChainExp() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
-
Get expiration time of the token.
- getClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
-
Get claims for id token and userinfo endpoint.
- getClaimsRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get claims request of the authentication request.
- getClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationTokenClaimsContext
-
Get the claims set in the initial access token.
- getClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get the token claims set.
- getClientAuthenticationLog(ClientAuthentication) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
-
Helper method for getting protocol log message for client authentication object.
- getClientId() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Get the client identifier.
- getClientId() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the client identifier.
- getClientID() - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
Parses the client ID from OIDC metadata or client authentication, if exists.
- getClientID() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get Client ID of the token.
- getClientIdFromJwt(SignedJWT) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.LogoutRequestClientIDLookupFunction
-
Gets the first audience value of the given
SignedJWT. - getClientIdIssuedAt() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Get the time at which the client identifier was issued.
- getClientIDValue(ClientID) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
Get the client ID value as string if the object is non-null.
- getClientInformationManager() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
Get the client information manager used for storing the information.
- getClientMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Get the metadata for the client: the attributes supported by the OP must be included.
- getClientSecret() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Get the client secret.
- getClientSecretExpiresAt() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Get the time at which the client secret will expire.
- getCodeChallenge() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get code challenge of the authentication request.
- getComponent() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
- getConsentedAttributes() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseConsentContext
-
Get consented attributes.
- getConsentedClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get consented claims.
- getContent() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
-
Deprecated.Error content as json.
- getDefaultScope() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
-
Get the default
Scopeto be used if it was not defined in the request. - getDeliveryClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get token delivery claims.
- getDpopProof() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
-
Get the DPoP proof JWT.
- getDpopProofJwkThumbprint() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the DPoP Proof JWK thumbprint.
- getDpopProofJwkThumbprint() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get the DPoP Proof JWK thumbprint.
- getEmbeddedResolver() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
Return what we are build around.
- getEndpointURI(Request) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
Returns the endpoint URI either from servlet request or from the given message, depending on the flag for removing IP address from the endpoint URI.
- getErrorObject() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
-
Deprecated.
- getErrorObject() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
- getExistingChainExp(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Get the possibly existing chain expiration instant from the claims set.
- getExp() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get expiration time of the token.
- getExpiration() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the expiration time of the token.
- getExpirationEpoch() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the expiration time of the token using epoch seconds.
- getFrontChannelLogoutUri() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
Get the location for the OIDC front-channel logout endpoint.
- getID() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get the id of the token.
- getIDToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the
IDTokenClaimsSetobject that will source the ID token. - getIdtokenClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
-
Get claims for id token only.
- getIDTokenDeliveryClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get id token token delivery claims.
- getIdTokenProtocolMessage(IDTokenClaimsSet, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for ID token payload.
- getImplicitFlowEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Get predicate used to indicate whether hybrid flow is enabled.
- getImplicitFlowEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Get predicate used to indicate whether hybrid flow is enabled.
- getInputMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
Get the OIDCClientMetadata to populate metadata from.
- getIssuedAt() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the issuance time of the token.
- getIssuedAt() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get issuance time of the token.
- getIssuedAtEpoch() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the issuance time of the token using epoch seconds.
- getIssuer() - Method in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
-
Gets the issuer.
- getIssuer() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
Get the issuer value to interact with the service.
- getIssuer() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the issuer of the token.
- getIssuer() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get the issuer.
- getIssuer(TokenClaimsSet, IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Get issuer from the given token claims set if found, and from the given ID token claims set if not.
- getIssuer(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
- getJti() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the identifier for the token.
- getJWT() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
-
Get the JWT in the case of a token in that form.
- getJwtProtocolMessage(JWTClaimsSet, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for JWT payload.
- getJwtProtocolMessage(JWT, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for JWT payload.
- getKey(OIDCProviderMetadata) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
- getKey(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
- getKeyType() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the type of the token.
- getLastRefresh() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableMetadataValueResolver
-
Gets the time the last refresh cycle occurred.
- getLastRefresh() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableProviderMetadataResolver
-
Gets the time the last refresh cycle occurred.
- getLastRefresh() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
Gets the time the last refresh cycle occurred.
- getLastUpdate() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableMetadataValueResolver
-
Get the time that the currently available client information was last updated.
- getLastUpdate() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableProviderMetadataResolver
-
Get the time that the currently available metadata was last updated.
- getLastUpdate() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
Get the time that the currently available metadata was last updated.
- getLifetime() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
-
Get the token lifetime.
- getLog() - Method in class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
- getLog() - Method in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
- getLogoutHint() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Get the logout hint.
- getLogoutPropagationContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
Get the protocol-independent logout propagation context.
- getLogoutRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
Returns OIDC RP-initiated logout request.
- getLogoutTokenClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCBackChannelLogoutPropagationContext
-
Get the claims set related to the back-channel logout.
- getLogoutTokenProtocolMessage(LogoutTokenClaimsSet, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for logout token payload.
- getLogPrefix() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Return a string which is to be prepended to all log messages.
- getMappedIdTokenRequestedClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the requested claims for the ID Token after they've been reverse-mapped by the registry.
- getMappedUserinfoRequestedClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the requested claims for the Userinfo endpoint after they've been reverse-mapped by the registry.
- getMatchingValues(IdPAttribute, AttributeFilterContext) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
- getMatchIRequestedClaimsSilent() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Gets whether to matched if the request contains no requested claims.
- getMatchOnlyIDToken() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Gets whether to match only id token part of the requested claims.
- getMatchOnlyUserInfo() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Gets whether to match only user info part of the requested claims.
- getMessageToLog(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2AuthorizationRequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMessageToLog(PushedAuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2PushedAuthorizationRequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMessageToLog(TokenIntrospectionRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2IntrospectionRequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMessageToLog(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMessageToLog(TokenRevocationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2RevocationRequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMessageToLog(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCAuthenticationRequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMessageToLog(LogoutRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCLogoutRequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMessageToLog(OIDCClientRegistrationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMessageToLog(UserInfoRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCUserInfoRequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMessageToLog(T) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
Get the string representation of what will be logged as the protocol message.
- getMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the allowed metadata values to be issued with the token.
- getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
Returns the OIDC Metadata context.
- getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
-
Returns the OIDC Metadata context.
- getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
-
Returns the OIDC Metadata context.
- getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
-
Returns the OIDC Metadata context.
- getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
-
Returns the OIDC Metadata context.
- getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
-
Returns the OIDC Metadata context.
- getMetadataPolicy() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
-
Get the metadata policy related to dynamic client registration.
- getMetadataUpdateTime() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
- getNativeBeanClass() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl.AttributeInOIDCRequestedClaimsRuleParser
- getNativeBeanClass() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl.AttributeOIDCScopeRuleParser
- getNonce() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get nonce of the authentication request.
- getNotBefore() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get not before time of the token, if any.
- getObjectMapper() - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
-
Get the JSON
ObjectMapperto use for serialization. - getOidcBackChannelLogoutContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
-
Get the OIDC back-channel logout context.
- getOidcLogoutContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
Get the OIDC logout propagation context.
- getOIDCMetadataContextLookupStrategy() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Get the mechanism to lookup the
OIDCMetadataContextfrom theProfileRequestContext. - getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
-
Returns oidc response context.
- getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
-
Returns oidc response context.
- getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
-
Returns oidc response context.
- getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
-
Returns oidc response context.
- getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
-
Returns oidc response context.
- getOidcRPSession() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
Get the OIDC RP session.
- getOnlyIfEssential() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Gets whether to drop non essential claims.
- getOpaque() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
-
Get the token string in the case of an opaque token.
- getOutputMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
Get the OIDCClientMetadata to populate metadata to.
- getParameterMap() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder.RemoveScopeWhenCodeGrantHttpServletRequestWrapper
- getParameterMap() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.CustomResourceHttpServletRequestWrapper
- getPolicyEnforcedMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
-
Get the policy-enforced requested client metadata.
- getPostLogoutRedirectUri() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Get the location for the post logout redirect URI.
- getPrincipal() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the principal who issued the token.
- getPrincipal() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get principal of the user.
- getProcessedIdTokenHint() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Get the processed ID token hint.
- getProcessedToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the signed/encrypted ID token / UserInfo response JWT.
- getProtocol() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
- getProtocolMessage(Response) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for a Nimbus response object.
- getProtocolMessageForAuthenticationResponse(AuthenticationResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for OIDC authentication response.
- getProtocolMessageForAuthorizationResponse(AuthorizationResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for OAuth authorization response.
- getProtocolMessageForClientInformation(ClientInformation) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for client information object.
- getProtocolMessageForErrorObject(ErrorObject) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for error object.
- getProtocolMessageForIntrospectionResponse(TokenIntrospectionResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for introspection response.
- getProtocolMessageForJSONSuccessResponse(Response) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for JSON success response.
- getProtocolMessageForRegistrationResponse(OIDCClientInformationResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for OIDC registration response.
- getProtocolMessageForRevocationResponse(Response) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for revocation response.
- getProtocolMessageForTokenResponse(TokenResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for token response.
- getProtocolMessageForTokens(Tokens) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for tokens object.
- getProtocolMessageForUserInfoResponse(UserInfoResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method for getting protocol message for OIDC user info response.
- getQueryString() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.CustomResourceHttpServletRequestWrapper
- getRedirectURI() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Returns a validated redirect uri for the response.
- getRedirectURI() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get redirect uri of the request.
- getRefreshToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get refresh token.
- getRefreshTokenLog(RefreshToken) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
-
Helper method for getting protocol log message for refresh token object.
- getRefreshTokensEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Get predicate used to indicate whether refresh tokens are enabled.
- getRegAccessToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Get the registration access token.
- getRegClientUri() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Get the location of the client configuration endpoint.
- getRelyingPartyContextLookupStrategy() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Get the mechanism to lookup the
RelyingPartyContextfrom theProfileRequestContext. - getRelyingPartyId() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the relying party identifier.
- getRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
-
Returns request.
- getRequestedClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get requested claims.
- getRequestedClientId() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Get the requested client ID.
- getRequestedIdTokenHint() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Get the requested ID token hint.
- getRequestedSubject() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Gets requested sub value.
- getRequestObject() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the request object.
- getRequestObject() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Deprecated.Gets the request object.
- getRootTokenIdentifier() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
Get the root token identifier.
- getRootTokenIdentifier() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get the root token identifier.
- getRpInitiatedLogoutContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
Get the RP-initiated OIDC logout context.
- getSAMLMetadataContextLookupStrategy() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Get the mechanism to lookup the
SAMLMetadataContextfrom theProfileRequestContext. - getScope() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get validated scope values.
- getScope() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get scope of the token.
- getSessionId() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the session identifier.
- getSessionIdentifier() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
Get the session identifier.
- getSessionIdentifier() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get the session identifier.
- getSessionIdentifier(TokenClaimsSet, IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Get session identifier from the given token claims set if found, and from the given ID token claims set if not.
- getSignatureSigningParameters() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
-
Get the signing parameters to apply.
- getSingleValueOrNull(Enumeration<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
-
Returns the value from given enumeration if only single value exists, null otherwise.
- getSPSessionKey() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
- getState() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Get the state.
- getSubject() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Gets Name ID generated for response.
- getSubject() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
Get the subject value.
- getSubject() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get subject claim.
- getSubject(TokenClaimsSet, IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Get subject from the given token claims set if found, and from the given ID token claims set if not.
- getSubjectType() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Gets subject type.
- getSubjectTypeLookupStrategy() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
-
Get the strategy used to locate subject type.
- getSupportedResponseTypes() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Get map of supported response types and their corresponding predicates.
- getToken(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Get the token to process.
- getToken(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ProcessTokenForIntrospection
-
Get the token to process.
- getToken(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ProcessTokenForRevocation
-
Get the token to process.
- getTokenClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2TokenMgmtResponseContext
-
Get the token claims set.
- getTokenRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenRequestAction
-
Returns OIDC token request.
- getType() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get type of the claims set.
- getUserInfo() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get the
UserInfoclaims set that will source the UserInfo response. - getUserinfoClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
-
Get claims for userinfo only.
- getUserinfoDeliveryClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get user info response token delivery claims.
- getUserInfoRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoRequestAction
-
Returns OIDC user info request.
- getValidatedDpopProofThumbprint() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
-
Get the validated DPoP Proof JWT JWK thumbprint.
- grantTypesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
-
Strategy to obtain enabled grant types.
H
- handleNonceValidationFailure(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
-
Attach a new nonce to the HTTP servlet response or builds the corresponding event ID to the given PRC if the nonce cannot be generated or attached.
- handleNullRequestedURI(ProfileRequestContext, Set<URI>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Handles the missing requested redirect URI case: it may be missing if it's not required to exist and the registered and valid records contain only single matching value.
- hashCode() - Method in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
- hashCode() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
- hasRevocationError() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
Get the flag indicating if an error has occured during revocation of tokens related to the session.
- httpClient - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
HTTP Client used to post the data.
- httpClient - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
HTTP Client used to post the data.
- httpClient - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
-
The
HttpClientto use. - httpClient - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
The
HttpClientto use. - httpClientSecurityParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
HTTP client security parameters.
- httpClientSecurityParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
HTTP client security parameters.
- httpClientSecurityParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
-
HTTP client security parameters.
- httpClientSecurityParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
HTTP client security parameters.
- httpServletRequestSupplier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
-
Supplier for the
HttpServletRequest. - httpServletRequestSupplier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
-
Supplier for the
HttpServletRequest.
I
- iat - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Issue time of the claims set.
- ID_TOKEN_ISSUE_INSTANT - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
id_token issue instant.
- idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
The identifier generator to use.
- idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
The generator to use.
- idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
The generator to use.
- idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
The generator to use.
- idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
The client ID generator to use.
- idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
The client secret generator to use.
- idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
The generator to use.
- idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Strategy used to locate the
IdentifierGenerationStrategyto use. - idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
Strategy used to locate the
IdentifierGenerationStrategyto use. - idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Strategy used to locate the
IdentifierGenerationStrategyto use. - idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Strategy used to locate the
IdentifierGenerationStrategyto use. - idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Strategy used to locate the
IdentifierGenerationStrategyto use. - idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
Strategy used to locate the
IdentifierGenerationStrategyto use. - idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Strategy used to locate the
IdentifierGenerationStrategyto use. - idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Strategy used to locate the
IdentifierGenerationStrategyto use. - idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Strategy used to locate the
IdentifierGenerationStrategyto use. - idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Lookup function to supply identifier generation strategy to use.
- idToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
The id token formed.
- idToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
-
ID token for response.
- idToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
The id_token to operate on.
- idtokenClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
-
Claims for id token only.
- idTokenClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
-
id token claims in requested claims.
- IdTokenClaimsAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
A function that resolves a claim value from the id_token claims set.
- IdTokenClaimsAuditExtractor(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
-
Constructor.
- idTokenClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
-
Lookup strategy for id token claims to read from.
- idTokenClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
-
Lookup strategy for id token claims to read from.
- idTokenDeliveryClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
-
Strategy used to obtain the id token delivery claims.
- idTokenHint - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
-
ID token hint.
- idTokenHint - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
-
id token hint.
- idTokenHintEnforcedPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
-
Predicate for enforcing the use of ID token hints.
- idTokenLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
Strategy used to obtain the ID token lifetime.
- idTokenManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
Lookup function to supply strategy bi-function for manipulating id_token claims.
- ignoringUnencodableAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Whether attributes that result in an
AttributeEncodingExceptionwhen being encoded should be ignored or result in anIdPEventIds.UNABLE_ENCODE_ATTRIBUTEtransition. - ignoringUnencodableAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Whether attributes that result in an
AttributeEncodingExceptionwhen being encoded should be ignored or result in anIdPEventIds.UNABLE_ENCODE_ATTRIBUTEtransition. - implicitFlowPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Predicate used to indicate whether implicit flow is enabled.
- implicitFlowPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Predicate used to indicate whether implicit flow is enabled.
- impliesFormPost(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Whether we should use FORM POST response encoding.
- inbound - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCMetadataContextLookupFunction
-
Use the inbound message context.
- inbound - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Use the inbound message tree?
- INBOUND_MESSAGE_CLASS - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
The inbound (Nimbus) message class.
- includeIssuerInResponsePredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Predicate to signal whether or not to include iss-parameter to the response.
- includeIssuerInResponsePredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Predicate to signal whether or not to include iss-parameter to the response.
- indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
- indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
- indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
-
Deprecated.
- indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
-
Deprecated.
- indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
- indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationSuccessResponse
- init() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl.AttributeFilterNamespaceHandler
- InitializeAuthenticationContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that creates an
AuthenticationContextand attaches it to the currentProfileRequestContext. - InitializeAuthenticationContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Constructor.
- InitializeDPoPProofContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that stores DPoP proof JWT to
OAuth2DPoPProofContext. - InitializeDPoPProofContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
- InitializeOutboundAuthenticationResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds an outbound
MessageContextand related OIDC contexts to theProfileRequestContextbased on the identity of a relying party accessed via a lookup strategy, by default an immediate child of the profile request context. - InitializeOutboundAuthenticationResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Constructor.
- InitializeOutboundRegistrationResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds an outbound
MessageContextand related OIDC context to theProfileRequestContext. - InitializeOutboundRegistrationResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
-
Constructor.
- InitializeOutboundResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
- InitializeOutboundResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
-
Constructor.
- InitializeOutboundRpInitiatedLogoutResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
Action that adds an outbound
MessageContextand related contexts to theProfileRequestContext. - InitializeOutboundRpInitiatedLogoutResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.InitializeOutboundRpInitiatedLogoutResponseMessageContext
-
Constructor.
- InitializeOutboundTokenMgmtResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that adds an outbound
MessageContextand related contexts to theProfileRequestContext. - InitializeOutboundTokenMgmtResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeOutboundTokenMgmtResponseMessageContext
-
Constructor.
- InitializeOutboundTokenResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Deprecated, for removal: This API element is subject to removal in a future version.
- InitializeOutboundTokenResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundTokenResponseMessageContext
-
Deprecated.
- InitializeOutboundUserInfoResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
Deprecated, for removal: This API element is subject to removal in a future version.
- InitializeOutboundUserInfoResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.InitializeOutboundUserInfoResponseMessageContext
-
Deprecated.
- InitializeRegistrationMetadataPolicyContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Initializes the
OIDCClientRegistrationMetadataPolicyContextand attaches it as a subcontext for the incomingMessageContext. - InitializeRegistrationMetadataPolicyContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
Constructor.
- InitializeRelyingPartyContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds a
RelyingPartyContextto the currentProfileRequestContexttree via a creation function. - InitializeRelyingPartyContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Constructor.
- InitializeSubjectContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that creates an
SubjectContextand attaches it to the currentProfileRequestContext. - InitializeSubjectContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeSubjectContext
- InitializeUnverifiedRelyingPartyContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that adds a
RelyingPartyContextto the currentProfileRequestContexttree via a creation function. - InitializeUnverifiedRelyingPartyContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
-
Constructor.
- inputMetadata - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
The OIDCClientMetadata to populate metadata from.
- IS_PASSIVE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
prompt=none requested field.
- isConsentEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Get whether consent has been enabled.
- IsPassiveAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
Functionthat returns true is prompt contains 'none' inAuthenticationRequest. - IsPassiveAuditExtractor(Function<ProfileRequestContext, AuthenticationRequest>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.IsPassiveAuditExtractor
-
Constructor.
- isPublicClient() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Checks if the client is a public client.
- isReplacement() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Get the flag to signal replacement is allowed.
- isRequestObjectFailure() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get whether request object validation has failed.
- isRequestObjectFromPar() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Get whether request object has been provided from the PAR endooint.
- isRevoked(String, JWTClaimsSet, Collection<Instant>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Check the revocation records' timestamps for applicability.
- iss - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
OP issuer value.
- issuedAt - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Issuance time of the token.
- issuedAt - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Issuance time of the token.
- IssueIDTokenCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Activation condition returning true if validated scope contains 'openid' scope.
- IssueIDTokenCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.IssueIDTokenCondition
-
Constructor.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
The token issuer.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
-
The issuer.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
-
Issuer value to included in the response message, if configured to be included.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
-
The optional issuer (iss-parameter) value.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Issuer value to included in the response message, if configured to be included.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Issuer value to included in the response message, if configured to be included.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
The issuer value to interact with the service.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
The issuer value to interact with the service.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Issuer of the token.
- issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
OP issuer.
- issuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Set the issuer value to interact with the service.
- ISSUER - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
OIDC issuer.
- IssuerCriterion - Class in net.shibboleth.idp.plugin.oidc.op.criterion
-
A
Criterionrepresenting an OIDC (provider) issuer. - IssuerCriterion(Issuer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
-
Constructor.
- IssueRegistrationAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.admin.impl
-
Action that issues access token to be used for the OIDC dynamic registration endpoint.
- IssueRegistrationAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Constructor.
- IssueRegistrationAccessTokenArguments - Class in net.shibboleth.idp.plugin.oidc.op.cli
-
Command line processing for issue-registration-access-token flow.
- IssueRegistrationAccessTokenArguments() - Constructor for class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
- IssueRegistrationTokenFlowDescriptor - Class in net.shibboleth.idp.plugin.oidc.op.admin
-
Descriptor for flow that issues access tokens for client registration.
- IssueRegistrationTokenFlowDescriptor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
-
Constructor.
- issuerId - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
EntityID to populate into Issuer element.
- issuerId - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
OP ID to populate into Issuer element.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Lookup function for the token issuer.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
-
Lookup function to override issuer value.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
-
Strategy used to obtain the response issuer value.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Lookup function for issuer.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Strategy used to obtain the response issuer value.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Strategy used to obtain the response issuer value.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
Strategy used to obtain the response issuer value.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Strategy used to obtain the response issuer value.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Strategy used to obtain the response issuer value.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Strategy used to locate the identity of the issuer associated with the attribute resolution.
- issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
Strategy used to obtain the response issuer value.
- isSupportsLogoutPropagation(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Check if the
OIDCClientMetadataattached to the given PRC contains a front- or back-channel logout URI. - isTimeValid() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Check if the token is valid with respect to expiration and not before limits.
J
- jktLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
Strategy used to locate the dpop_jkt value.
- JSONErrorResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging
-
Deprecated, for removal: This API element is subject to removal in a future version.
- JSONErrorResponse(ErrorObject) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
-
Deprecated.Constructor.
- JSONErrorResponse(ErrorObject, String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
-
Deprecated.Constructor.
- JSONSuccessResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging
-
Deprecated, for removal: This API element is subject to removal in a future version.
- JSONSuccessResponse(JSONObject) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
-
Deprecated.Constructor.
- JSONSuccessResponse(JSONObject, String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
-
Deprecated.Constructor.
- jti - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Identifier for the token.
- jti - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Identifier for the token.
- JWK_JAR_FILENAME - Variable in class net.shibboleth.idp.plugin.oidc.op.OIDCOPModule
-
The JWK generator JAR file that will be deleted from its old location if exists there.
- jwkThumbprint - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
The JWK thumbprint.
- jwt - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
-
The signed/encrypted token in the case of JWT format.
- JWTAccessTokenUpdateStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Add the
JWTback to theAccessTokenContext. - JWTAccessTokenUpdateStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.JWTAccessTokenUpdateStrategy
-
Constructor.
- JWTClaimsSetFromIDTokenLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Extract the
JWTClaimsSetfrom the id_token inOIDCAuthenticationResponseContext. - JWTClaimsSetFromIDTokenLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromIDTokenLookupFunction
- JWTClaimsSetFromJWTAccessTokenLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Extract the
JWTClaimsSetfrom the JWT inAccessTokenContext. - JWTClaimsSetFromJWTAccessTokenLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
-
Constructor.
- JWTClaimsSetFromLogoutContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Extract the
JWTClaimsSetfrom the JWT inOIDCBackChannelLogoutPropagationContext. - JWTClaimsSetFromLogoutContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
-
Constructor.
- JWTClaimsSetFromUserInfoLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Extract the
Payloadfrom the user info inOIDCAuthenticationResponseContext. - JWTClaimsSetFromUserInfoLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromUserInfoLookupFunction
- JWTCredentialValidator - Class in net.shibboleth.idp.plugin.oidc.op.authn.impl
-
A validator that handles authentication via signed JWT.
- JWTCredentialValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Constructor.
- jwtid - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Token ID.
- jwtTokenType - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Use a JWT for the token.
K
- key - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationRequestClaimsAuditExtractor
-
The claim whose value is to be extracted.
- key - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
-
The claim whose value is to be extracted.
- key - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
-
The claim whose value is to be extracted.
- KEY_AC_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Identifier for the token.
- KEY_ACR - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Authentication context class reference value of the performed authentication.
- KEY_AUDIENCE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Audiences of the token request.
- KEY_AUTH_TIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Authentication time of the performed authentication.
- KEY_CHAIN_EXPIRATION_TIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
-
Expiration time of the refresh token chain.
- KEY_CLAIMS - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Claims request of the original authentication request.
- KEY_CLIENTID - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Client id of the rp the token is generated for.
- KEY_CODE_CHALLENGE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Code Challenge.
- KEY_CONFIRMATION - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Identifier for the confirmation claim.
- KEY_CONSENT_ENABLED - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Whether consent has been enabled.
- KEY_CONSENTED_CLAIMS - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Claims/Attributes having consent.
- KEY_DELIVERY_CLAIMS - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Claims set for token delivery.
- KEY_DELIVERY_CLAIMS_IDTOKEN - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Claims set for token delivery, id token only.
- KEY_DELIVERY_CLAIMS_USERINFO - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Claims set for token delivery, user info only.
- KEY_DPOP_PROOF_JWK_THUMBPRINT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Identifier for the DPoP Proof JWK thumbprint under confirmation claim.
- KEY_EXPIRATION_TIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Expiration time of the token.
- KEY_ISSUED_AT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Issue time of the token.
- KEY_ISSUER - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
OP issuer.
- KEY_LEGACY_CLIENTID - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Client id of the rp the token is generated for (old constant).
- KEY_NONCE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Nonce of the original authentication request.
- KEY_NOTBEFORE_TIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Not before time of the token.
- KEY_REDIRECT_URI - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Redirect uri of the original authentication request.
- KEY_ROOT_JTI - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Identifier for the root token in the chain.
- KEY_SCOPE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Scope of the token request.
- KEY_SEALED_FOR_OP - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Custom claim name for sealed claims embedded inside JWT.
- KEY_SESSION_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Identifier for the session id.
- KEY_SUBJECT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Subject of the user.
- KEY_TYPE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Type of the token.
- KEY_USER_PRINCIPAL - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
User principal representing authenticated user.
- keyTransportEncryptionAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Strategy to obtain list of supported key transport encryption algorithms.
- keyTransportEncryptionAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
Strategy to obtain list of supported key transport encryption algorithms.
- keyType - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Type of the token.
- keyType - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Type of the token.
L
- lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
Lifetime for the access token to be issued.
- lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
-
Lifetime of the token.
- lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
ID token lifetime.
- lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
The lifetime for replay cache record.
- lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
The lifetime for the sealed object.
- lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
The lifetime for the storage record.
- limitInitialAccessTokenToSelfPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultEnforceSelfAudienceCondition
-
Whether the initial access token audience is solely to self (i.e.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl.AttributeOIDCScopePolicyRule
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationRequestClaimsAuditExtractor
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
-
Logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
Logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCAuthenticationRequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCLogoutRequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCUserInfoRequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
-
Class logger.
- log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
-
Class logger.
- log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
Class logger.
- log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
-
Class logger.
- log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
-
Class logger.
- log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
-
Ckass logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.SetFrontChannelLogoutSuccess
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromIDTokenLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromUserInfoLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestAudienceLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestDPoPJktLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedAcrLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedClaimsLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedPromptLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedScopeLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestLoginHintLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestMaxAgeLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestNonceLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestRedirectURILookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseModeLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseTypeLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestStateLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationRequestMetadataLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestRedirectURILookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
Class logger.
- log - Static variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2AuthorizationRequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2IntrospectionRequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2PushedAuthorizationRequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2RevocationRequestDecoder
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundIntrospectionResponseMessage
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.OIDCOPModule
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestAudienceLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedAcrLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedClaimsLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedPromptLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedScopeLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestLoginHintLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestMaxAgeLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestNonceLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestRedirectURILookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseModeLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseTypeLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestStateLookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.LogoutRequestClientIDLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRPSessionClientIDLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRedirectURILookupFunction
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
-
Deprecated.Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAccessTokenHashToIDToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAcrToIDToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddApplicationTypeToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthTimeToIDToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddClientNameToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddContactsToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoUrisToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddPolicyUrisToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTosUrisToClientMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeSubjectContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
-
Logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.VerifyRequestedSubjectIdentifier
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyCriteriaLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyMergingStrategy
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRootTokenIdentifierLookupStrategy
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Class logger.
- log - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.FormOutboundUserInfoResponseMessage
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
-
Class logger.
- log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
-
Class logger.
- loginHintLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Strategy used to obtain the request login hint value.
- LOGOUT_PROP_FIELD - Static variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionSerializer
-
Field name of logout propagation indicator.
- logoutContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Creation/lookup function for LogoutContext.
- logoutContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
-
Strategy used to locate the subcontext with the token.
- logoutHint - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
The logout hint.
- logoutHintMatchingStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Lookup function for the RP-initiated logout's logout_hint parameter matching against SPSession.
- logoutPropagationContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
The logout propagation context to operate on.
- logoutPropagationContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
The lookup strategy for the logout propagation context.
- LogoutRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns client id of the OIDC logout request.
- LogoutRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.LogoutRequestClientIDLookupFunction
- logoutToken - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
The back-channel logout token.
- logoutTokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCBackChannelLogoutPropagationContext
-
The claims set related to the back-channel logout.
- logPrefix - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
The String used to prefix log message.
M
- manager - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
-
ClientInformationManagerto operate on. - mandatoryScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Strategy used to obtain the mandatory scope value value.
- ManipulateClaimsForIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that can be used for manipulating id_token claims via configurable strategy (bi-function).
- ManipulateClaimsForIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
Constructor.
- manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
The strategy used for manipulating the token claims set.
- manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
The strategy used for manipulating the request URI claims set.
- manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
The strategy used for manipulating the token claims set.
- manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
The strategy used for manipulating the id_token.
- manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
The strategy used for manipulating the token claims set.
- mappedErrors - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Map of eventIds to pre-configured error objects.
- mappedErrors - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
-
Map of eventIds to status codes.
- mappedIdTokenRequestedClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Mapped requested claims from the ID Token set.
- mappedUserinfoRequestedClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Mapped requested claims from the Userinfo set.
- matches(AttributeFilterContext) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl.AttributeOIDCScopePolicyRule
-
Compare the authentication request scopes with the provided string.
- matchIfRequestedClaimsSilent - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Whether to return a match if the request contains no requested claims.
- matchOnlyIDToken - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Whether to look for a match only in id token part.
- matchOnlyUserInfo - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Whether to look for a match only in user info part.
- maxAgeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Strategy used to obtain the request max_age value.
- messageClass - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
-
The request message class to verify that the actual request is an instance of.
- messageClass - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Deprecated.The request message class to verify that the actual request is an instance of.
- messageContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
-
The
MessageContextto operate on. - messageEncoder - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
-
The message encoder to be returned by this factory.
- metadata - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
-
metadata to publish.
- metadata - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Allowed metadata values to be issued with the token.
- metadata - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Allowed metadata values to be issued with the token.
- metadataKey - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
-
The metadata key whose value is used for matching.
- metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
The resolved metadata policy.
- metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
-
The metadata policy related to dynamic client registration.
- metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
-
The metadata policy used for finding out remaining claims.
- metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
-
The metadata policy used for validation.
- metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
-
The metadata policy used for the enforcer function for validating the redirect URI.
- metadataPolicyContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
The metadata policy context to operate on.
- metadataPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
-
Function used for enforcing the metadata policy.
- metadataPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
-
The metadata policy enforcer function used against the
URIgiven as input. - metadataPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Lookup function for the metadata policy.
- metadataPolicyMergingStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
The strategy used for merging profile and token based metadata policies.
- MetadataPolicyRedirectUriValidator - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A custom bi-predicate for redirect URI validation exploiting metadata policy.
- MetadataPolicyRedirectUriValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
- metadataPolicyValidationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
The strategy used for validating token and merged metadata policies.
- metadataPolicyValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
-
The metadata policy validator for verifying the given metadata policy.
- metadataResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
-
The resolver for the metadata that is being distributed.
- MetadataStatementsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns metadata_statements (oidcfed) obtained via a lookup function.
- MetadataStatementsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
-
Constructor.
- metadataValue - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
-
The metadata value to be matched.
- MetadataValueEqualsCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A predicate for matching if the OIDC metadata value with a configurable key is equal to a configurable value.
- MetadataValueEqualsCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
-
Constructor.
- MetadataValueResolver - Interface in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
-
A resolver that is capable of resolving dynamic metadata values (as
Objects) which meet certain supplied criteria.
N
- NAMESPACE - Static variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl.AttributeFilterNamespaceHandler
-
oidc namespace.
- nbt - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Not Before time of the claims set.
- net.shibboleth.idp.plugin.oidc.op - package net.shibboleth.idp.plugin.oidc.op
-
Top level OIDC OP plugin classes.
- net.shibboleth.idp.plugin.oidc.op.admin - package net.shibboleth.idp.plugin.oidc.op.admin
-
Classes related to OP administrative features.
- net.shibboleth.idp.plugin.oidc.op.admin.impl - package net.shibboleth.idp.plugin.oidc.op.admin.impl
-
Classes implementing administrative functionality.
- net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl
-
This is package for all OIDC matchers.
- net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl
-
Package for OIDC attribute filter policy rule implementations.
- net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl
-
Package for OIDC attribute filter name handlers.
- net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl
-
Package for OIDC attribute filter matcher parsers.
- net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl
-
Package for OIDC attribute filter policy rule parsers.
- net.shibboleth.idp.plugin.oidc.op.audit - package net.shibboleth.idp.plugin.oidc.op.audit
-
Support classes for (OIDC-specific) auditing.
- net.shibboleth.idp.plugin.oidc.op.audit.impl - package net.shibboleth.idp.plugin.oidc.op.audit.impl
-
Package for audit extractors related to OIDC.
- net.shibboleth.idp.plugin.oidc.op.authn.audit.impl - package net.shibboleth.idp.plugin.oidc.op.authn.audit.impl
-
Package for audit extractors related to client authentication.
- net.shibboleth.idp.plugin.oidc.op.authn.impl - package net.shibboleth.idp.plugin.oidc.op.authn.impl
-
Implementation classes supporting OIDC/OAuth client authentication.
- net.shibboleth.idp.plugin.oidc.op.cli - package net.shibboleth.idp.plugin.oidc.op.cli
-
Classes related to the CLI tool for the registration access token issuance.
- net.shibboleth.idp.plugin.oidc.op.criterion - package net.shibboleth.idp.plugin.oidc.op.criterion
-
Criteria related to OIDC entity resolution.
- net.shibboleth.idp.plugin.oidc.op.decoding.impl - package net.shibboleth.idp.plugin.oidc.op.decoding.impl
-
Message decoders related to OIDC messaging.
- net.shibboleth.idp.plugin.oidc.op.encoding.impl - package net.shibboleth.idp.plugin.oidc.op.encoding.impl
-
Message encoders related to OIDC messaging.
- net.shibboleth.idp.plugin.oidc.op.logout.profile.impl - package net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
- net.shibboleth.idp.plugin.oidc.op.messaging - package net.shibboleth.idp.plugin.oidc.op.messaging
-
OIDC messaging interfaces and classes.
- net.shibboleth.idp.plugin.oidc.op.messaging.context - package net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Contexts related to OIDC messaging.
- net.shibboleth.idp.plugin.oidc.op.messaging.context.logic - package net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Conditions related to OIDC messaging.
- net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate - package net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
Lookup functions.
- net.shibboleth.idp.plugin.oidc.op.messaging.impl - package net.shibboleth.idp.plugin.oidc.op.messaging.impl
-
OIDC message implementations.
- net.shibboleth.idp.plugin.oidc.op.metadata.impl - package net.shibboleth.idp.plugin.oidc.op.metadata.impl
-
Implementation classes related to resolution of OIDC metadata (or client information).
- net.shibboleth.idp.plugin.oidc.op.metadata.resolver - package net.shibboleth.idp.plugin.oidc.op.metadata.resolver
-
Interfaces and common classes related to resolution of OIDC metadata (or client information).
- net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl - package net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
-
Message decoders related to OAuth2 messaging.
- net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context - package net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context
-
Context classes supporting OAuth2 profiles.
- net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl - package net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
-
OAuth2 message implementations.
- net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl - package net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Profile action implementations related to OAuth2.
- net.shibboleth.idp.plugin.oidc.op.profile - package net.shibboleth.idp.plugin.oidc.op.profile
-
Common utility classes related to OIDC profile actions.
- net.shibboleth.idp.plugin.oidc.op.profile.context.navigate - package net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Lookup functions.
- net.shibboleth.idp.plugin.oidc.op.profile.impl - package net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Profile action implementations related to OIDC.
- net.shibboleth.idp.plugin.oidc.op.profile.logic - package net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Functions and predicates supporting common oidc profile behavior.
- net.shibboleth.idp.plugin.oidc.op.profile.spring - package net.shibboleth.idp.plugin.oidc.op.profile.spring
-
Spring-related tools.
- net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl - package net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl
-
Spring-aware tools for resolving OIDC entities.
- net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl - package net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
-
Validation functions for JWT claims.
- net.shibboleth.idp.plugin.oidc.op.session - package net.shibboleth.idp.plugin.oidc.op.session
-
Extensions related to the construction and management of sessions.
- net.shibboleth.idp.plugin.oidc.op.session.impl - package net.shibboleth.idp.plugin.oidc.op.session.impl
-
Extensions related to the construction and management of sessions.
- net.shibboleth.idp.plugin.oidc.op.storage - package net.shibboleth.idp.plugin.oidc.op.storage
-
Utilities exploiting storage services.
- net.shibboleth.idp.plugin.oidc.op.token.support - package net.shibboleth.idp.plugin.oidc.op.token.support
-
Support classes for dealing with claims sets in authorization code, access/refresh tokens.
- net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl - package net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
Classes supporting the implementation of the UserInfo endpoint.
- NimbusResponseEncoder - Class in net.shibboleth.idp.plugin.oidc.op.encoding.impl
-
A message encodes that encodes the Nimbus
Responsein the message context inside the attachedHttpServletResponse. - NimbusResponseEncoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Constructor.
- nonce - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Nonce of the authentication request.
- NONCE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
id_token nonce.
- nonceGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
-
Lookup for the nonce generator used for generating nonces.
- nonceGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
-
Lookup for the nonce generator: if non-null value is returned, nonces are required.
- nonceLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Nonce lifetime.
O
- OAuth2AuthorizationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
-
Message decoder decoding OAuth2
AuthorizationRequests. - OAuth2AuthorizationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2AuthorizationRequestDecoder
- OAuth2DPoPProofContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context
-
Subcontext carrying information for an OAuth2 DPoP Proof JWT.
- OAuth2DPoPProofContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
- OAuth2IntrospectionRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
-
Message decoder decoding OpenID Connect
TokenIntrospectionRequests. - OAuth2IntrospectionRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2IntrospectionRequestDecoder
- OAuth2PushedAuthorizationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
-
Message decoder decoding OAuth2
PushedAuthorizationRequests. - OAuth2PushedAuthorizationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2PushedAuthorizationRequestDecoder
- OAuth2RevocationErrorResponse - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
-
OAuth2 Token Revocation Error message class.
- OAuth2RevocationErrorResponse(ErrorObject) - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
-
Constructor.
- OAuth2RevocationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
-
Message decoder decoding OpenID Connect
TokenRevocationRequests. - OAuth2RevocationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2RevocationRequestDecoder
- OAuth2RevocationSuccessResponse - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
-
OAuth2 Token Revocation Success message class.
- OAuth2RevocationSuccessResponse() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationSuccessResponse
- OAuth2TokenMgmtResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context
-
Subcontext carrying information for an OAuth token management responses such as introspection or revocation.
- OAuth2TokenMgmtResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2TokenMgmtResponseContext
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
-
JSON object mapper.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
-
Object mapper used for pretty-printing JSON in the request.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Object mapper used for pretty-printing JSON response.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
Object mapper used for pretty-printing logout token contents.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Object mapper used for pretty-printing JWT contents.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
-
Object mapper used for pretty-printing JWT contents.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Object mapper used for pretty-printing JWT contents.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
JSON object mapper.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
Object mapper used for pretty-printing JWT contents.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
JSON object mapper.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Object mapper used for pretty-printing JWT contents.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
Object mapper used for deserializing the claims set.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Object mapper used for serializing the claims set.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
-
Object mapper used for deserializing the claims set.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Object mapper used for serializing the claims set.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
JSON object mapper for encoding map into JSON.
- objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
-
JSON object mapper used for decoding JSON into Map.
- objectName - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
-
The name of the JSON object, can be null to return only values of embedded resolvers.
- OfflineAccessScopeCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A predicate returning true if validated scope contains 'offline_access' value.
- OfflineAccessScopeCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.OfflineAccessScopeCondition
-
Constructor.
- OIDCAuthenticationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
-
Message decoder decoding OpenID Connect
AuthenticationRequests. - OIDCAuthenticationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCAuthenticationRequestDecoder
- OIDCAuthenticationResponseConsentContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying user consent information in a form suitable for OIDC processing.
- OIDCAuthenticationResponseConsentContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseConsentContext
-
Constructor.
- OIDCAuthenticationResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying information to form authentication, token and userinfo responses for relying party.
- OIDCAuthenticationResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Constructor.
- OIDCAuthenticationResponseContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A
ContextDataLookupFunctionthat returns the outboundOIDCAuthenticationResponseContextfor aProfileRequestContext. - OIDCAuthenticationResponseContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCAuthenticationResponseContextLookupFunction
- OIDCAuthenticationResponseTokenClaimsContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying information to form token and userinfo responses for relying party.
- OIDCAuthenticationResponseTokenClaimsContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
-
Constructor.
- oidcBackChannelLogoutContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
-
OIDC back-channel logout context.
- OIDCBackChannelLogoutPropagationContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying information about OIDC back-channel logout.
- OIDCBackChannelLogoutPropagationContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCBackChannelLogoutPropagationContext
-
Constructor.
- oidcBackChannelLogoutURILookupFunction - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
The lookup strategy for back-channel logout endpoint.
- OIDCClientInfoCredentialValidator - Class in net.shibboleth.idp.plugin.oidc.op.authn.impl
-
A password validator that authenticates against OIDC client metadata (which may itself be emulated via SAML metadata).
- OIDCClientInfoCredentialValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
-
Constructor.
- OIDCClientRegistrationMetadataPolicyContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying information on the metadata policy related to the dynamic client registration.
- OIDCClientRegistrationMetadataPolicyContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
-
Constructor.
- OIDCClientRegistrationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
-
Message decoder decoding OpenID Connect
ClientRegistrationRequests. - OIDCClientRegistrationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
- OIDCClientRegistrationRequestMetadataLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns
OIDCClientMetadataif such is available in the message from aMessageContextobtained viaInOutOperationContext.getInboundMessageContext(). - OIDCClientRegistrationRequestMetadataLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationRequestMetadataLookupFunction
- OIDCClientRegistrationResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying information on OIDC client registration response.
- OIDCClientRegistrationResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
- OIDCClientRegistrationResponseMetadataLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns
OIDCClientMetadataif such is available in the message from aOIDCClientRegistrationResponseContext. - OIDCClientRegistrationResponseMetadataLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
-
Constructor.
- OIDCClientRegistrationTokenClaimsContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying information on the claims included in the initial access token used for accessing the dynamic client registration endpoint.
- OIDCClientRegistrationTokenClaimsContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationTokenClaimsContext
- oidcInputMetadataLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
Strategy used to locate the
OIDCClientMetadataassociated with the request (input). - oidcLogoutContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
OIDC logout propagation context.
- oidcLogoutContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
-
The strategy used for creating
OIDCLogoutPropagationContext. - OIDCLogoutPropagationContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying information about OIDC logout propagation (both front- and back-channel).
- OIDCLogoutPropagationContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
Constructor.
- OIDCLogoutRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
-
Message decoder decoding OpenID Connect
LogoutRequests. - OIDCLogoutRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCLogoutRequestDecoder
- oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
The attached OIDC metadata context.
- oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
OIDC metadata context.
- oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
-
OIDC Metadata context.
- oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
-
OIDC Metadata context.
- oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
-
OIDC Metadata context.
- oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
-
OIDC Metadata context.
- oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
-
OIDC Metadata context.
- oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
-
Strategy that will return
OIDCMetadataContext. - oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
Strategy that will return
OIDCMetadataContext. - oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
-
The strategy used for looking up
OIDCMetadataContext. - oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
-
Strategy function to lookup OIDC metadata context .
- oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Strategy that will return
OIDCMetadataContext. - oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
-
Strategy function to lookup OIDC metadata context .
- oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
-
The lookup strategy for OIDCMetadataContext.
- oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Lookup strategy for OIDC metadata context.
- oidcMetadataCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
The OIDC metadata context used as a source for the SAML metadata context.
- oidcMetadataCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
Strategy function to lookup the
OIDCMetadataContext. - oidcMetadataCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Strategy function to lookup the
OIDCMetadataContext. - OIDCMetadataLookupHandler - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Handler for inbound OIDC protocol messages that attempts to locate OIDC metadata for a rp, and attaches it with a
OIDCMetadataContextas a child of a pre-existing instance ofMessageContext. - OIDCMetadataLookupHandler() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
-
Constructor.
- oidcMetadataLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
-
Strategy function to lookup OIDC metadata context .
- OIDCOPModule - Class in net.shibboleth.idp.plugin.oidc.op
-
IdPModuleimplementation. - OIDCOPModule() - Constructor for class net.shibboleth.idp.plugin.oidc.op.OIDCOPModule
-
Constructor.
- OIDCOPPlugin - Class in net.shibboleth.idp.plugin.oidc.op
-
Details about the OIDC OP plugin.
- OIDCOPPlugin() - Constructor for class net.shibboleth.idp.plugin.oidc.op.OIDCOPPlugin
-
Constructor.
- oidcOutputMetadataLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
Strategy used to locate the
OIDCClientMetadataassociated with the response (output). - OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A lookup function for fetching policy-enforced client metadata related to the dynamic client registration request.
- OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction
-
Constructor.
- OIDCRegistrationResponseContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A
ContextDataLookupFunctionthat returns the outboundOIDCClientRegistrationResponseContextfor aProfileRequestContext. - OIDCRegistrationResponseContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRegistrationResponseContextLookupFunction
- oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
-
oidc response context.
- oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
-
oidc response context.
- oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
-
oidc response context.
- oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
-
oidc response context.
- oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
-
The
OIDCClientRegistrationResponseContextto operate on. - oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
-
oidc response context.
- oidcResponseContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
-
Strategy that will return or create a
OIDCClientRegistrationResponseContext. - oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
-
Strategy used to locate the
OIDCClientRegistrationResponseContextassociated with a givenMessageContext. - oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
-
Strategy used to locate the
OIDCClientRegistrationResponseContextassociated with a givenMessageContext. - oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Strategy used to locate the
OIDCClientRegistrationResponseContextassociated with a given request. - oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
Strategy used to locate the
OIDCClientRegistrationResponseContextassociated with a givenMessageContext. - oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Lookup strategy for OIDC authentication response context.
- oidcResponseCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
The OIDCClientRegistrationResponseContext to create the client ID to.
- oidcResponseCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
The OIDCClientRegistrationResponseContext to create the client secret to.
- OIDCResponseEncoderFactory - Class in net.shibboleth.idp.plugin.oidc.op.encoding.impl
-
A source of encoders that first verifies a message being an instance of Nimbus
Responseand then returns the attachedMessageEncoder. - OIDCResponseEncoderFactory() - Constructor for class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
- oidcRpInitatedLogoutCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
Strategy function to lookup the
OIDCRpInitiatedLogoutContext. - OIDCRpInitiatedLogoutContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
-
Subcontext carrying information about OIDC RP-initiated logout.
- OIDCRpInitiatedLogoutContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
- oidcRPSession - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
The OIDC RP session containing the data for logout propagation.
- OIDCRPSession - Class in net.shibboleth.idp.plugin.oidc.op.session
-
A concrete
SPSessionimplementation for OIDC relying parties. - OIDCRPSession(String, Instant, Instant, String, String, String, String, boolean) - Constructor for class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
Constructor.
- OIDCRPSession.Builder - Class in net.shibboleth.idp.plugin.oidc.op.session
-
Builder class for building
OIDCRPSession. - OIDCRPSessionClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A lookup function that fetches
ClientIDvalue from theOIDCRPSessionfound from the session stored in theLogoutPropagationContext. - OIDCRPSessionClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRPSessionClientIDLookupFunction
- OIDCRPSessionCreationStrategy - Class in net.shibboleth.idp.plugin.oidc.op.session.impl
-
A function to create a
OIDCRPSessionbased on profile execution state. - OIDCRPSessionCreationStrategy(Duration) - Constructor for class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Constructor.
- OIDCRPSessionSerializer - Class in net.shibboleth.idp.plugin.oidc.op.session.impl
-
A serializer for
OIDCRPSessionobjects. - OIDCRPSessionSerializer(Duration) - Constructor for class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionSerializer
-
Constructor.
- OIDCTokenRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
-
Message decoder decoding OpenID Connect
TokenRequests. - OIDCTokenRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder
- OIDCTokenRequestDecoder.RemoveScopeWhenCodeGrantHttpServletRequestWrapper - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
-
Custom servlet wrapper that ignores scope parameter with authorization_code grant.
- OIDCUserInfoRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
-
Message decoder decoding OpenID Connect
UserInfoRequests. - OIDCUserInfoRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCUserInfoRequestDecoder
- onlyIfEssential - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Whether to drop non essential claims.
- opaque - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
-
Opaque token value if JWT format is not used.
- OpenIDConfigurationSuccessResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging.impl
-
OpenID Configuration success message class.
- OpenIDConfigurationSuccessResponse(JSONObject) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.OpenIDConfigurationSuccessResponse
-
Constructor.
- OpenIDConfigurationSuccessResponse(JSONObject, String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.OpenIDConfigurationSuccessResponse
-
Constructor.
- OUTBOUND_MESSAGE_CLASS - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
The outbound (Nimbus) message class.
- outputMetadata - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
The OIDCClientMetadata to populate metadata to.
P
- PairwiseSubjectActivationCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Activation condition returning true if pairwise subject is requested.
- PairwiseSubjectActivationCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.PairwiseSubjectActivationCondition
- PAR_REQUEST_URI_DESERIALIZER - Enum constant in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
-
Refresh token deserializer.
- PAR_REQUEST_URI_PREFIX - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AbstractPushedAuthorizationRequestComponent
-
The prefix value used with the request_uri values built via PAR.
- PAR_REQUEST_URI_SERIALIZER - Enum constant in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
-
Refresh token serializer.
- PAR_REQUEST_URI_STORAGE_PREFIX - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AbstractPushedAuthorizationRequestComponent
-
The prefix value used with the request_uri values buikt via PAR with storage service serializer.
- parEndpointLogic - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
-
The flag to control whether to use the PAR-endpoint logic for the validation.
- parse(byte[]) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
- parse(byte[]) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
- parse(JWT, DataSealer) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
-
Parses access token from sealed access token.
- parse(HttpServletRequest) - Method in interface net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.CustomNimbusRequestParser
-
Parse the Nimbus request object from the given servlet request.
- parse(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
-
Parses access token from string (JSON).
- parse(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet
-
Parses authz code from string (JSON).
- parse(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
-
Parses refresh token from string (JSON).
- parse(String, DataSealer) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
-
Parses access token from sealed access token.
- parse(String, DataSealer) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet
-
Parses authz code from sealed authorization code.
- parse(String, DataSealer) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
-
Parses refresh token from sealed refresh token.
- parseAccessToken(AccessToken) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
-
Attempt to parse token.
- parseAccessToken(Token) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Attempt to parse token.
- ParseAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
Action that parses an access token and initially populates the claims for later validation.
- ParseAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
- parseJwkCredential(Credential) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
-
Set the credential to be resolved as JSON.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCAuthenticationRequestDecoder
-
Parses the message into the exact type of the request message.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
-
Parses the message into the exact type of the request message.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCLogoutRequestDecoder
-
Parses the message into the exact type of the request message.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder
-
Parses the message into the exact type of the request message.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCUserInfoRequestDecoder
-
Parses the message into the exact type of the request message.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
Parses the message into the exact type of the request message.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2AuthorizationRequestDecoder
-
Parses the message into the exact type of the request message.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2IntrospectionRequestDecoder
-
Parses the message into the exact type of the request message.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2PushedAuthorizationRequestDecoder
-
Parses the message into the exact type of the request message.
- parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2RevocationRequestDecoder
-
Parses the message into the exact type of the request message.
- parseRefreshToken(ProfileRequestContext, Token) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Attempt to parse refresh token.
- PayloadFromJWTAccessTokenLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Extract the
Payloadfrom the JWT inAccessTokenContext. - PayloadFromJWTAccessTokenLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
-
Constructor.
- PayloadFromProcessedTokenLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Extract the
Payloadfrom the processed token inOIDCAuthenticationResponseContext. - PayloadFromProcessedTokenLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromProcessedTokenLookupFunction
- PayloadFromUserInfoLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Extract the
Payloadfrom the user info inOIDCAuthenticationResponseContext. - PayloadFromUserInfoLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromUserInfoLookupFunction
- plainClaimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
-
The claims validator to be applied for validating the plain/unsigned request object.
- plainPKCE - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Whether plain PKCE is allowed.
- plainPKCE - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Whether plain PKCE is allowed.
- policies - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
The policies used for validating client id.
- policyId - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
The policy identifier.
- policyId - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
Metadata policy identifier for the access token to be issued.
- policyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Lookup function for the policy identifier.
- policyIdPolicyName - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Name of access control policy governing policyId acceptance.
- policyLocation - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
The policy location.
- policyLocation - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
Metadata policy to embed in the token.
- policyLocationLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Lookup function for the policy location.
- policyLocationPolicyName - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Name of access control policy governing policyLocation acceptance.
- populateAlgorithmsAgainstPolicy(List<String>, List<String>, AlgorithmPolicyConfiguration) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
-
Verifies the candidates against given policy (inclusion/exclusion) and adds the passed ones to the given list.
- populateEntityDescriptor(EntityDescriptor, SPSSODescriptor, OIDCClientInformation) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Populates the corresponding elements at the given descriptors from the data from the given client information.
- PopulateLogoutContext - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
This action creates
OIDCLogoutPropagationContextand populates it with the front- and back-channel URIs if found from the RP metadata. - PopulateLogoutContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
-
Constructor.
- PopulateOIDCMetadataContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
-
A message handler that attempts to locate OIDC client information from the SAML entity descriptor containing role descriptor of type
SPSSODescriptor. - PopulateOIDCMetadataContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
-
Constructor.
- PopulateRpInitiatedLogoutContext - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
Populates the
OIDCRpInitiatedLogoutContextwith the values found from the incoming logout request. - PopulateRpInitiatedLogoutContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
-
Constructor.
- populateScriptedAttribute(ScriptedIdPAttribute, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
-
Adds values from the given scope to the
ScriptedIdPAttribute. - populateScriptedAttribute(ScriptedIdPAttribute, ScriptedIdPAttribute) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
-
Adds values from the given
ScriptedIdPAttributeto anotherScriptedIdPAttribute. - populateSubject(ClientID, SignedJWT) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Builds a subject with "standard" content from the validation.
- postLogoutRedirectionUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
-
The post front-channel logout redirection endpoint.
- postLogoutRedirectUri - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
-
The post logout redirection endpoint.
- postLogoutRedirectUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
The location for the post logout redirect URI.
- pragma - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
-
Deprecated.pragma value.
- pragma - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
-
Deprecated.pragma value.
- preChecksForMandatoryKey(MetadataPolicy, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
-
Verifies that the policy is not containing forbidden content.
- PrepareBackChannelLogoutRequest - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
An action that constructs
LogoutTokenClaimsSetand attaches it to theOIDCBackChannelLogoutPropagationContext. - PrepareBackChannelLogoutRequest() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
Constructor.
- principal - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
The principal who issued the token.
- principal - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
The principal who issued the token.
- principal - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
User Principal of the authenticated user.
- principalNameLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Lookup strategy for principal name.
- processedIdTokenHint - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
The processed ID token hint.
- ProcessedIdTokenHintUpdateStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Add the
JWTback to the processed ID token hint in theOIDCRpInitiatedLogoutContext. - ProcessedIdTokenHintUpdateStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProcessedIdTokenHintUpdateStrategy
- processedToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
The signed/encrypted id token / user info response formed.
- ProcessedTokenUpdateStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Add the
JWTback to the processed token in theOIDCAuthenticationResponseContext. - ProcessedTokenUpdateStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProcessedTokenUpdateStrategy
- processHeaders(Map<String, List<String>>, HttpServletResponse) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Adds all the other given headers to the given
HttpServletResponseexcept the location header, whose first value is returned by this method if any value exists. - ProcessRequestedAuthnContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that creates an
RequestedPrincipalContextorPreferredPrincipalContextand attaches it to the currentAuthenticationContext. - ProcessRequestedAuthnContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
Constructor.
- ProcessRpInitiatedLogoutRequest - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
Profile action that processes
LogoutRequestandOIDCRpInitiatedLogoutContextby resolving matching sessions and populating the associatedSPSessionobjects into aLogoutContext. - ProcessRpInitiatedLogoutRequest() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Constructor.
- ProcessTokenForIntrospection - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that processes a token for introspection.
- ProcessTokenForIntrospection() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ProcessTokenForIntrospection
- ProcessTokenForRevocation - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that processes a token for revocation.
- ProcessTokenForRevocation() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ProcessTokenForRevocation
- PROFILE_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
-
Profile ID.
- profileMetadataPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
The strategy used to locate the request metadata policy configured for the profile.
- ProfileResponderIdLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns responder id based on profile.
- ProfileResponderIdLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
- profileResponders - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
-
Mapping from profile id to responder value.
- promptLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Strategy used to obtain the requested prompt value.
- promptLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Strategy used to obtain the requested prompt value.
- protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
Used to log protocol messages.
- protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Used to log protocol messages.
- protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
-
Used to log protocol messages.
- protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Used to log protocol messages.
- protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
Used to log protocol messages.
- protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Used to log protocol messages.
- ProviderMetadataResolver - Interface in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
-
A resolver that is capable of resolving
OIDCProviderMetadatainstances which meet certain supplied criteria. - ProviderMetadataResolverServiceStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl
-
Strategy for summoning up a
ProviderMetadataResolverfrom a populatedApplicationContext. - ProviderMetadataResolverServiceStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl.ProviderMetadataResolverServiceStrategy
- proxiedRequesterContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Strategy used for locating/creating the proxy context.
- PublicSubjectActivationCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Activation condition returning true if public subject is requested.
- PublicSubjectActivationCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
-
Constructor.
- PushedAuthorizationRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns client id of the PAR request.
- PushedAuthorizationRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.PushedAuthorizationRequestClientIDLookupFunction
- pushedAuthorizationRequestEnforcedPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Predicate for enforcing the use of pushed authorization requests.
- pushedAuthorizationRequestUriDeserializers - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
List of deserializers for OP-issued request_uri values.
R
- recipientLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Strategy used to locate the identity of the recipient associated with the attribute resolution.
- redirect - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Validated redirect URI of the authentication request.
- redirectURI - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
validated redirect uri.
- redirectURILookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Strategy used to obtain the redirect uri value in request.
- redirectURIValidationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
-
Strategy used to validate the post logout redirect URIs.
- refresh() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableMetadataValueResolver
-
Refresh the data exposed by the resolver.
- refresh() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableProviderMetadataResolver
-
Refresh the data exposed by the resolver.
- refresh() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
Refresh the data exposed by the resolver.
- REFRESH_TOKEN_DESERIALIZER - Enum constant in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
-
Refresh token deserializer.
- REFRESH_TOKEN_SERIALIZER - Enum constant in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
-
Refresh token serializer.
- RefreshableMetadataValueResolver - Interface in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
-
A resolver that is capable of resolving dynamic metadata values (as
Objects) which meet certain supplied criteria. - RefreshableProviderMetadataResolver - Interface in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
-
Specialization of
ProviderMetadataResolverthat supports on-demand refresh. - refreshToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Refresh token.
- refreshTokenChainLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Refresh Token chain lifetime.
- refreshTokenChainLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Refresh Token lifetime.
- refreshTokenChainLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Strategy used to obtain the refresh token chain lifetime.
- refreshTokenChainLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Strategy used to obtain the refresh token lifetime.
- RefreshTokenClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
Class wrapping claims set for refresh token.
- RefreshTokenClaimsSet(JWTClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
-
Private constructor for the parser.
- RefreshTokenClaimsSet.Builder - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
Builder to create instance of RefreshTokenClaimsSet.
- refreshTokenDeserializers - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
List of deserializer bi-functions for refresh tokens to be used in addition to unsealing opaque value.
- refreshTokenDeserializers - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
List of deserializer bi-functions for refresh tokens to be used in addition to unsealing opaque value.
- refreshTokensEnabledPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Predicate used to indicate whether refresh tokens are enabled.
- refreshTokenSerializationStrategies - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
The strategies used for serializing refresh token claims set, key referring to the refresh token type.
- refreshTokensPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Predicate used to indicate whether refresh tokens are enabled.
- refreshTokenTimeout - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Refresh Token timeout.
- refreshTokenTimeoutLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Strategy used to obtain the refresh token timeout.
- refreshTokenType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Refresh Token type.
- refreshTokenTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Strategy used to obtain the refresh token type to issue.
- regAccessToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Optional registration access token.
- regClientUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Optional location of the client configuration endpoint.
- registeredRedirectURIsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Strategy used to obtain registered redirect uris to compare if request had no redirect uri value.
- REGISTRATION_ACCESS_TOKEN - Static variable in class net.shibboleth.idp.plugin.oidc.op.storage.RevocationCacheContexts
-
ID of context for revoking access tokens issued for the dynamic client registration.
- registrationClaimsContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Strategy to create or return a
OIDCClientRegistrationTokenClaimsContext. - RegistrationClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
Class wrapping claims for the initial registration access token.
- RegistrationClaimsSet() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Constructor.
- RegistrationClaimsSet.Builder - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
The builder for
RegistrationClaimsSet. - registrationMetadataPolicyContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
-
The metadata policy context to operate on.
- registrationMetadataPolicyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction
-
Strategy that will return
OIDCClientRegistrationMetadataPolicyContext. - registrationMetadataPolicyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
-
Strategy that will return
OIDCClientRegistrationMetadataPolicyContext. - registrationMetadataPolicyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
-
Strategy that will return
OIDCClientRegistrationMetadataPolicyContext. - registrationPolicyContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
The strategy used to create or locate the metadata policy context.
- registrationTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Strategy used to locate the
OIDCClientRegistrationTokenClaimsContextassociated with the request. - registrationTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
Strategy used to locate the
OIDCClientRegistrationTokenClaimsContextassociated with the request. - registrationTokenCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
The OIDCClientRegistrationTokenClaimsContext from which to optionally obtain client ID.
- registrationTokenCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
The OIDCClientRegistrationTokenClaimsContext from which to optionally obtain client ID.
- registrationValidityPeriodStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
Strategy to obtain registration validity period policy.
- relyingPartyContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
The relying party context to operate on.
- relyingPartyContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Strategy that will return or create a
RelyingPartyContext. - relyingPartyContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
-
Strategy that will return or create a
RelyingPartyContext. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
-
Strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
-
Strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
-
Strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
Strategy used to look up a
RelyingPartyContextfor configuration options. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Strategy that will return a
RelyingPartyContext. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
Strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - relyingPartyCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
The relying party context used for storing the SAML metadata context.
- relyingPartyCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - relyingPartyId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Relying party identifier.
- relyingPartyId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Relying party identifier.
- relyingPartyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Strategy used to obtain the relying party ID.
- relyingPartyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Strategy used to obtain the relying party ID.
- relyingPartyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Strategy used to obtain the relying party ID.
- relyingPartyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
-
Strategy used to obtain the relying party ID.
- removeIpAddressFromEndpointUri - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
A flag to remove the IP address from the endpoint URI.
- RemoveScopeWhenCodeGrantHttpServletRequestWrapper(HttpServletRequest) - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder.RemoveScopeWhenCodeGrantHttpServletRequestWrapper
-
Constructor.
- removeValue(Scope, String) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
-
Removes a single value from the given
Scope. - replacement - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
Flag to signal one-time use of the token.
- replacement - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Flag to signal replacement use of the token.
- replacement - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Flag to signal replacement is allowed.
- replacementLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Lookup function for the flag signaling replacement use of the token.
- replayCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Message replay cache instance to use.
- replayCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
Message replay cache instance to use.
- reqClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Claims request of the authentication request.
- reqScope - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Scope of the token request.
- request - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
-
Message to extract credentials from.
- request - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
-
OIDC request.
- request - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
The OIDCClientRegistrationRequest to check redirect URIs from.
- request - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
-
The OIDCClientRegistrationRequest to validate.
- requestedAudienceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Strategy used to obtain the requested audience.
- requestedClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Requested claims.
- requestedClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
-
Strategy used to obtain the requested claims of request.
- requestedClientId - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
The request client ID.
- RequestedGrantTypesCondition - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Checks whether a
TokenRequestwas for one of a set of candidate grant_type values. - RequestedGrantTypesCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.RequestedGrantTypesCondition
-
Constructor.
- requestedIdTokenHint - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
The requested ID token hint.
- requestedRedirectURI - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
-
The redirect URI to be validated.
- requestedResponseModeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
-
Lookup strategy for fetching the requested response mode.
- requestedResponseModeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Lookup strategy for fetching the requested response mode.
- requestedResponseModeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Lookup strategy for fetching the requested response mode.
- requestedResponseTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Lookup strategy for fetching the requested response type.
- requestedResponseTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Lookup strategy for fetching the requested response type.
- requestedResponseTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Lookup strategy for fetching the requested response type.
- requestedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Strategy used to obtain the requested scope value.
- requestedStateLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Lookup strategy for fetching the requested state.
- requestedStateLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Lookup strategy for fetching the requested state.
- requestedSubject - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Requested sub value.
- requestLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IsPassiveAuditExtractor
-
Lookup strategy for message to read from.
- requestLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.RevokedTokenAuditExtractor
-
Lookup strategy for message to read from.
- requestMessage - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
The request message to operate on.
- requestNonceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Strategy used to obtain the request nonce.
- requestNonceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
-
Strategy used to obtain the request nonce.
- requestObject - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
The request object.
- requestObject - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
-
Request Object.
- requestObject - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Deprecated.Request.
- requestObjectEnforcedPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Predicate for enforcing the use of request objects.
- requestObjectFailure - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Whether request object validation has failed.
- requestObjectFromPar - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Whether request object has been provided from the PAR endooint.
- RequestObjectUpdateStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Add the
JWTback to the request object in theOIDCAuthenticationResponseContext. - RequestObjectUpdateStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.RequestObjectUpdateStrategy
- requestUriClaimsSetManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
Lookup function to supply strategy bi-function for manipulating request URI claims set.
- requestUriClaimsSetSerializationStrategies - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
The strategies used for serializing request URI claims set, key referring to the refresh token type.
- requestUriLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
The request URI lifetime to use.
- requestUriLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
Strategy used to obtain the request URI lifetime.
- requestUriType - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
The request URI type to use.
- requestUriTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
Strategy used to obtain the request URI type to issue.
- RequestUtil - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
-
Request logging helper class.
- RequestUtil() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
-
Private constructor.
- requireAuthenticationRequest - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
-
Predicate used to indicate if the incoming message is required to be an OIDC authentication request.
- requiredJwtTypeHeaderLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Strategy used to fetch required JWT type header value.
- requireDpopJktCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
Strategy used to determine whether to require dpop_jkt parameter.
- requireDpopProofCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
-
Predicate for enforcing the use of DPoP proofs.
- requireJkt - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
Whether dpop_jkt parameter is mandatory.
- requirePushedAuthorization - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Whether to require pushed authorization request to be used.
- requireRequestedValue - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Whether to require redirect uri value in the request also when only single value is registered.
- reservedClaimNames - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
List of claim names that will not be added.
- resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
- resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
- resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
- resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
- resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
-
Returns all the resolved objects.
- resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
- resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
- resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
- resolveEncryptionAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
-
Whether to resolve data and key transport encryption algorithms.
- resolveKeyTransportEncAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
-
Whether to resolve key transport encryption algorithms.
- resolver - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
-
ClientInformationResolverto operate on. - resolver - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
The embedded resolver.
- resolverFunction - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
-
The function used for resolving the value.
- resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
- resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
- resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
- resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
-
Returns a single resolved object.
- resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
- resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
- resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
- response - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
The response message.
- responseClaimsSetLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Strategy used to locate the response
ClaimsSetassociated with a givenProfileRequestContext. - responseClaimsSetLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
Strategy used to locate the response
ClaimsSetassociated with a givenProfileRequestContext. - ResponseContextAuthorizationCodeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns raw authorization code value from the
OIDCAuthenticationResponseContext. - ResponseContextAuthorizationCodeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ResponseContextAuthorizationCodeLookupFunction
- ResponseUtil - Class in net.shibboleth.idp.plugin.oidc.op.encoding.impl
-
Response logging helper class.
- ResponseUtil() - Constructor for class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Private constructor.
- revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
-
Token revocation cache instance to use.
- revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Message revocation cache instance to use.
- revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Message revocation cache instance to use.
- revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Message revocation cache instance to use.
- revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Message revocation cache instance to use.
- revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
-
Message revocation cache instance to use.
- RevocationCacheContexts - Class in net.shibboleth.idp.plugin.oidc.op.storage
-
Revocation cache contexts shared across actions.
- RevocationCacheContexts() - Constructor for class net.shibboleth.idp.plugin.oidc.op.storage.RevocationCacheContexts
-
Private constructor.
- revocationError - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
A flag indicating if an error has occured during revocation of tokens related to the session.
- revocationLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
-
Revocation lifetime to use.
- revocationLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Revocation lifetime to use.
- revocationMethod - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Revocation method used when revoking a token.
- revocationMethodLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Which revocation method should be used when revoking a token.
- revokeChain(String, Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Revokes the token chain with the given id, optionally with a given lifetime.
- RevokeConsent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that revokes consent if the configurable predicate returns true.
- RevokeConsent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
- REVOKED_TOKEN - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
Revoked Token.
- RevokedTokenAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
Functionthat returns token to be revoked byTokenRevocationRequest. - RevokedTokenAuditExtractor(Function<ProfileRequestContext, TokenRevocationRequest>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.RevokedTokenAuditExtractor
-
Constructor.
- revokePredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
-
Predicate used to decide if pre-existing consent is to be revoked.
- RevokeToken - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that revokes a single token or the full chain of tokens, depending on the result of the configured lookup strategy for the revocation method.
- RevokeToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Constructor.
- RevokeTokenChain - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
An action that revokes the token chain related to the logout propagation.
- RevokeTokenChain() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
-
Constructor.
- revokeWithConsentPromptPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Predicate used to determine if consent should be revoked with consent prompt.
- revokeWithOfflineAccessScopePredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Predicate used to determine if consent should be revoked with offline_access scope.
- rootTokenId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Root token identifier.
- rootTokenIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
-
Root token identifier to be revoked.
- rootTokenIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
The root token identifier.
- rootTokenIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
The root token identifier.
- rootTokenIdentifier(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Set the root token identifier.
- rootTokenIdentifierLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Lookup function to supply root token identifier.
- RootTokenIdRevocationValidator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
-
Verifies the root identifier (
TokenClaimsSet.KEY_ROOT_JTIfrom the JWT against revocation via configurableRevocationCache. - RootTokenIdRevocationValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
- rpCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
The RelyingPartyContext to operate on.
- rpCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
The RelyingPartyContext to operate on.
- rpCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
The RelyingPartyContext to operate on.
- rpId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Client Id of the rp.
- rpInitiatedLogoutContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
RP-initiated OIDC logout context.
- RpInitiatedLogoutResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging.impl
-
A Nimbus
Responseimplementation representing a post front-channel logout redirection message that is sent to the RP's post front-channel logout URI endpoint. - RpInitiatedLogoutResponse(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
-
Constructor.
- RpInitiatedLogoutResponse(String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
-
Constructor.
S
- samlMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
-
Set the strategy used to look up the
SAMLMetadataContextto draw from. - samlMetadataCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Strategy used to locate the
SAMLMetadataContextassociated with a givenProfileRequestContext. - saveTokenToCredentialSet - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Whether to save the JWT in the Java Subject's public credentials.
- SCHEMA_TYPE_AFP - Static variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl.AttributeInOIDCRequestedClaimsRuleParser
-
Schema type - afp.
- SCHEMA_TYPE_AFP - Static variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl.AttributeOIDCScopeRuleParser
-
Schema type.
- SCOPE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
Token scope.
- scopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Strategy used to obtain the validated scope value.
- ScopeUtil - Class in net.shibboleth.idp.plugin.oidc.op.profile
-
Static helper methods for handling
Scopeobjects, especially with IdP attributes. - ScopeUtil() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
-
Private constructor.
- sealClaims(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Rewrites a plaintext claimsset to hide custom claims used solely by the OP.
- secretExpirationPeriodStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
Strategy to obtain client secret validity period policy.
- SectorIdentifierLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns sector identifier obtained via a lookup function.
- SectorIdentifierLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
-
Constructor.
- sectorIdentifierLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
-
Strategy used to obtain sector identifier.
- securityParametersContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Strategy used to look up the
SecurityParametersContextto set the parameters for. - securityParametersContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
-
Strategy used to look up the
SecurityParametersContext. - securityParametersLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Strategy used to locate the
SecurityParametersContextto use for verification. - securityParametersLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
-
Strategy used to locate the
SecurityParametersContextto use for calculating the code hash. - securityParametersLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
-
Strategy used to locate the
SecurityParametersContextto use for signing. - selfAudienceCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Whether the request includes the OP as an audience.
- sendError(int, String, String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
-
Output an error object.
- serialize() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Serialize the token as JSON String.
- serialize(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Serialize the token as JSON String wrapped with sealer.
- serializeMessageForLogging(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
- serializeMessageForLogging(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
- serializeParameters(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
-
URL-encode the iss and sid -parameters to the given prefix if parameter values have been set.
- serializeParameters(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
-
URL-encode the iss and sid -parameters to the given prefix if parameter values have been set.
- serialVersionUID - Static variable in exception net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceJWTValidationException
-
Serial version UID.
- ServiceableProviderMetadataProvider - Class in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
-
A serviceable implementation of
ProviderMetadataResolver. - ServiceableProviderMetadataProvider() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
Constructor.
- serviceId - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
The unique identifier of the service.
- serviceId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Set the unique identifier of the service.
- sessionContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Creation/lookup function for SessionContext.
- sessionId - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Session identifier.
- sessionId - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
-
The optional sessionId (sid-parameter) value.
- sessionId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Session identifier.
- sessionIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
The session identifier.
- sessionIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
The session identifier.
- sessionIdentifier(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Set the session identifier.
- sessionIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
-
Strategy used to obtain the session identifier.
- sessionLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Lifetime of sessions to create.
- sessionMatches(ProfileRequestContext, IdPSession) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Check if the session contains a
OIDCRPSessionwith the appropriate service ID and SessionIndex. - sessionMatches(ProfileRequestContext, SPSession) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Check if the
OIDCRPSessionhas the appropriate service ID and SessionIndex. - sessionResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Session resolver.
- sessionResolverCriteriaStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Function to return
CriteriaSetto give to session resolver. - setAccessControlService(AccessControlService) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set the
AccessControlServiceto use. - setAccessToken(AccessToken) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set access token.
- setAccessToken(String, Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set access token.
- setAccessToken(String, Duration, Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set access token.
- setAccessTokenClaimsSet(ClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the access token claims set (used when prepping OAuth-only access tokens).
- setAccessTokenContextCreationStrategy(Function<MessageContext, AccessTokenContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
-
Set the strategy used to lookup the
AccessTokenContextto use. - setAccessTokenContextCreationStrategy(Function<MessageContext, AccessTokenContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
-
Set the strategy used to lookup the
AccessTokenContextto use. - setAccessTokenContextCreationStrategy(Function<ProfileRequestContext, AccessTokenContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the strategy used to create the
AccessTokenContextto use. - setAccessTokenContextLookupStrategy(Function<ProfileRequestContext, AccessTokenContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
-
Set the strategy used to lookup the
AccessTokenContextto use. - setAccessTokenLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the strategy used to obtain the access token lifetime.
- SetAccessTokenToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that creates a Access Token, and sets it to work context
OIDCAuthenticationResponseContext.getAccessToken()located underInOutOperationContext.getOutboundMessageContext(). - SetAccessTokenToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
-
Constructor.
- setAccessTokenTypeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the strategy used to obtain the access token type.
- setAcr(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set acr for response.
- setACR(ACR) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set authentication context class reference value of the authentication.
- setAcrAlwaysEssentialLookupStrategy(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
Set the strategy used to obtain whether all arc claims requests should be treated as Essential.
- setAcrLookupStrategy(Function<ProfileRequestContext, List<ACR>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
Set the strategy used to locate the requested acr values.
- setAlgorithmCandidates(Collection<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
-
Set algorithm candidates to be verified against the security configuration.
- setAllowedAudienceLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Set the strategy used to locate the allowed audience for the client.
- setAllowedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Set the strategy used to locate the allowed scope for the client.
- setAllowPKCEPlainCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Set the condition used to determine whether to allow plaintext PKCE.
- setAllowPKCEPlainCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Set the condition used to determine whether to allow plaintext PKCE.
- setAllowSignatureNone(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Set whether signature algorithm none is allowed regardless of what list of Signature Validation Algs has.
- setAlwaysIncludedAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Set the strategy used to obtain the set of attribute IDs always included in ID tokens.
- setAlwaysIncludedAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Set the strategy used to obtain the set of attribute IDs always included in ID tokens.
- setAlwaysIssueBearerAccessTokenCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the condition used to determine whether to always issue bearer access token.
- setAlwaysIssueBearerAccessTokenCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
-
Set the condition used to determine whether to always issue bearer access token.
- setApplicationContext(ApplicationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
- setAttributeContextLookupStrategy(Function<ProfileRequestContext, AttributeContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Set the strategy used to locate the
AttributeContextassociated with a givenProfileRequestContext. - setAttributeContextLookupStrategy(Function<ProfileRequestContext, AttributeContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
-
Set the strategy used to locate the
AttributeContextassociated with a givenProfileRequestContext. - setAttributeContextLookupStrategy(Function<ProfileRequestContext, AttributeContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Set the strategy used to locate the
AttributeContextassociated with a givenProfileRequestContext. - setAttributeContextLookupStrategy(Function<ProfileRequestContext, AttributeContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
-
Set the strategy used to locate the
AttributeContextassociated with a givenProfileRequestContext. - setAttributeId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Set the ID of an
IdPAttributeto resolve to obtain revocation records for the principal. - setAttributeResolver(ReloadableService<AttributeResolver>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Set
AttributeResolverto use. - setAttributeValues(IdPAttribute, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
-
Sets the contents for
IdPAttributefrom the given scope. - setAudience(Collection<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set audience.
- setAudienceLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Set the audience lookup strategy.
- setAudienceRestrictionsLookupStrategy(Function<ProfileRequestContext, Collection<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
Set the strategy used to obtain the audience restrictions to apply.
- setAuthContext(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the authentication context class reference value of the performed authentication.
- SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that sets authentication context class reference to work context
OIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext
- SetAuthenticationContextClassReferenceToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that sets authentication context class reference to work context
OIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - SetAuthenticationContextClassReferenceToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
- setAuthenticationTime(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set authentication time.
- SetAuthenticationTimeToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that sets authentication instant to work context
OIDCAuthenticationResponseContextlocated underInOutOperationContext.getOutboundMessageContext(). - SetAuthenticationTimeToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
-
Constructor.
- setAuthorizationCode(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set authorization code.
- setAuthorizationCodeFlowEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Set predicate used to indicate whether authorization code flow is enabled.
- setAuthorizationCodeFlowEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Set predicate used to indicate whether authorization code flow is enabled.
- setAuthorizationCodeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
-
Set the strategy used to locate the authorization code value.
- SetAuthorizationCodeToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that creates a Authorization Code, and sets it to work context
OIDCAuthenticationResponseContext.getAuthorizationCode()located underInOutOperationContext.getOutboundMessageContext(). - SetAuthorizationCodeToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Constructor.
- setAuthorizationGrantClaimsSet(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the claims representing the authorization grant, which may be derived from an authorization code, refresh token, or assertion.
- setAuthorizationRequestTypeValidationStrategy(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
-
Set the strategy used to validate the inbound message (
AuthorizationRequest) type. - setAuthTime(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set authentication time of the end user.
- setAuthTime(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the authentication time of the performed authentication.
- setAuthTimeLookupStrategy(Function<ProfileRequestContext, Instant>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
-
Set the strategy used to locate the authentication time.
- setAuthzCodeLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the strategy used to obtain the authz code lifetime.
- setAutoCreate(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AccessTokenClaimsSetLookupFunction
-
Sets whether to create the
ClaimsSetif absent. - setBackChannelLogoutUri(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
Set the location for the OIDC back-channel logout endpoint.
- setChainExpiresAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
-
Set the chain expiration time.
- setChainRevocationLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
-
Set a lookup strategy for the chain revocation lifetime.
- setChainRevocationLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Set a lookup strategy for the chain revocation lifetime.
- setChainRevocationLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Set a lookup strategy for the chain revocation lifetime.
- setClaimsRequest(OIDCClaimsRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set claims request of the authentication request.
- setClaimsSet(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Set the token claims set.
- setClaimsSet(RegistrationClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationTokenClaimsContext
-
Set the claims set in the initial access token.
- setClaimsValidator(ClaimsValidator) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
-
Set the claims validator used for validating the ID token hint.
- setClaimsValidator(ClaimsValidator) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Set the claims validator lookup strategy.
- setClaimsValidatorLookupStrategy(Function<ProfileRequestContext, ClaimsValidator>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Set the strategy used to locate
ClaimsValidatorused. - setClaimsValidatorLookupStrategy(Function<ProfileRequestContext, ClaimsValidator>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Set the claims validator lookup strategy.
- setClaimsValidatorLookupStrategy(Function<ProfileRequestContext, ClaimsValidator>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
-
Set the lookup strategy for the claims validator used for validating the DPoP proof.
- setClaimsValidatorLookupStrategy(Function<ProfileRequestContext, ClaimsValidator>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
-
Set the claims validator lookup strategy.
- setClassRefLookupStrategy(Function<ProfileRequestContext, AuthenticationContextClassReferencePrincipal>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
-
Set the strategy function to use to obtain the authentication context class reference to use.
- setClientAuthMethodsLookupStrategy(Function<ProfileRequestContext, Set<ClientAuthenticationMethod>>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
-
Set the lookup strategy for enabled client authentication methods.
- setClientId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Set the client identifier.
- setClientId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the client identifier.
- setClientID(ClientID) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set client ID.
- setClientIdIssuedAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Set the time at which the client identifier was issued.
- setClientIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set a lookup strategy for the client identifier.
- setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
-
Set the strategy used to locate the client id of the request.
- setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
Set the strategy used to locate the client id of the request.
- setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
-
Set the strategy used to locate the client id value used in endpoint authentication.
- setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Set the strategy used to locate the client id of the request.
- setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
-
Set the strategy used to locate the client id of the request.
- setClientIDLookupStrategy(Function<ProfileRequestContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the strategy used to locate the original
ClientIDfrom the request. - setClientIDLookupStrategy(Function<ProfileRequestContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Set the lookup strategy used to obtain the client id value.
- setClientIdPolicyName(String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set an explicit policy name to apply governing clientId usage.
- setClientInformationManager(ClientInformationManager) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
-
Set the
ClientInformationManagerto use for deletion. - setClientInformationManager(ClientInformationManager) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
Set the client information manager used for storing the information.
- setClientInformationResolver(ClientInformationResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
-
Set the
ClientInformationResolverto use for retrieval. - setClientInformationResolver(ClientInformationResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
-
Set the
ClientInformationResolverto use. - setClientMetadata(OIDCClientMetadata) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Set the metadata for the client: the attributes supported by the OP must be included.
- setClientSecret(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Set the client secret.
- setClientSecretExpiresAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Set the time at which the client secret will expire.
- setClockSkew(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
-
Set the clock skew.
- setClockSkew(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
-
Set the clock skew.
- setClockSkew(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.ChainExpiryClaimsValidator
-
Set the clock skew.
- setCodeChallenge(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set code challenge.
- setCodeChallengeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the strategy used to locate the Code Challenge of the request.
- setCodeChallengeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Set the strategy used to locate the Code Challenge of the request.
- setCodeChallengeMethodLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the strategy used to locate the Code Challenge Method of the request.
- setCodeChallengeMethodLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Set the strategy used to locate the Code Challenge Method of the request.
- setCodeHashCalculationStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
-
Set the strategy used for calculating the authorization code hash value.
- setCodeVerifierLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Set the strategy used to locate the Code Verifier value.
- setConsentedAttributesLookupStrategy(Function<ProfileRequestContext, List<Object>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentFromTokenToResponseContext
-
Set the strategy used to locate the consented attributes.
- setConsentedClaims(List<Object>) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set consented claims.
- setConsentEnabled(Boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set whether consent has been enabled.
- setConsentEnabledPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the predicate used to check if consent is enabled with a given
ProfileRequestContext. - setConsentEnabledPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the predicate used to check if consent is enabled with a given
ProfileRequestContext. - setConsentEnabledPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
-
Set the predicate used to check if consent is enable.
- SetConsentFromTokenToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that locates consent from authorization code / access token.
- SetConsentFromTokenToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentFromTokenToResponseContext
-
Constructor.
- SetConsentToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that checks for adds the currently existing attributes from
AttributeContextfor token delivery. - SetConsentToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
-
Constructor.
- setContext(String) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
-
Set the revocation cache context that partitions entries.
- setContextType(Class<? extends BaseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
-
Deprecated.Set the type of subcontext to create.
- setContextType(Class<? extends BaseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
-
Set the type of subcontext to create.
- setCredentialResolver(CredentialResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Set the source of signing keys to use for JWT signature verification.
- setCredentialResolver(CredentialResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Set the source of signing keys to use for JWT signature verification.
- setCredentialResolver(CredentialResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
-
Set the source of signing keys to use for JWT signature verification.
- setCSPDigester(StringDigester) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Sets a
StringDigesterto use in computing CSP digests in views. - setCSPNonceGenerator(IdentifierGenerationStrategy) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Sets an
IdentifierGenerationStrategyto use in computing CSP nonces in views. - setCustomClaims(JSONObject) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Sets a batch of custom claim from a
JSONObject. - setCustomRedirectUriValidationStrategyLookupStrategy(Function<ProfileRequestContext, BiPredicate<URI, ProfileRequestContext>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Set the strategy to obtain custom redirect URI validation strategy.
- setCustomRequestParser(CustomNimbusRequestParser<T>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
Set the custom extension for parsing Nimbus object out of the servlet request.
- setDataEncryptionAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Set the strategy used to obtain list of supported signature algorithms.
- setDataEncryptionAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
Set the strategy used to obtain list of supported signature algorithms.
- setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Set the data sealer instance to use.
- setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set
DataSealerto use for opaque tokens. - setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the data sealer instance to use.
- setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Set the data sealer instance to use.
- setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Set the data sealer instance to use.
- setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
Set the data sealer instance to use.
- setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Set the data sealer instance to use.
- setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
-
Set the data sealer instance to use.
- setDefaultAudience(Collection<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoAudienceLookupFunction
-
Set default audience to return in the absence of client metadata.
- setDefaultCode(int) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
-
Set the status code for unmapped events.
- setDefaultCode(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Set the code for unmapped events.
- setDefaultLanguage(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Set the default language when it has not been defined in the metadata.
- setDefaultResponder(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
-
Set default responder value, usually entity id.
- setDefaultScope(Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
-
Set the default
Scopeto return in the absence of client metadata. - setDefaultScope(Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
-
Set the default
Scopeto be used if it was not defined in the request. - setDefaultScope(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
-
Set the default
Scopeto return in the absence of client metadata. - setDefaultStatusCode(int) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Set the status code for unmapped events.
- setDefaultSubjectType(SubjectType) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
-
Set the default
SubjectTypeto be used if it was not defined in the request. - setDefaultTokenLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set the default token lifetime.
- setDefaultValue(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
-
Set the value used for matching if metadata value was null.
- setDeliveryClaimsLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
-
Set the strategy used to locate the delivery claims.
- setDeniedUserInfoAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Set the strategy used to obtain the set of attribute IDs to omit from UserInfo tokens.
- setDeniedUserInfoAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Set the strategy used to obtain the set of attribute IDs to omit from UserInfo tokens.
- setDlClaims(ClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set token delivery claims delivered both for id token and userinfo response.
- setDlClaimsID(ClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set token delivery claims delivered for id token.
- setDlClaimsUI(ClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set token delivery claims delivered for userinfo response.
- setDpopAccessTokenCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
-
Set the predicate for deciding to refer to DPoP in error responses.
- setDpopJktLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
Set the strategy used to locate the dpop_jkt value.
- setDpopProof(SignedJWT) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
-
Set the DPoP proof JWT.
- setDpopProofJwkThumbprint(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the DPoP Proof JWK thumbprint.
- setDpopProofJwkThumbprint(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set DPoP Proof JWK thumbprint.
- setDpopProofNonceGeneratorLookupStrategy(Function<ProfileRequestContext, Function<ProfileRequestContext, String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
-
Set the lookup strategy for the nonce generator to create nonces to be used in DPoP proof.
- setDpopProofNonceGeneratorLookupStrategy(Function<ProfileRequestContext, Function<ProfileRequestContext, String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
-
Set the lookup strategy for the nonce generator: if non-null value is returned, nonces are required.
- setDpopProofThumbprintLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
Set the strategy used to locate the thumbprint of validated DPoP Proof JWT.
- setDpopProofThumbprintLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Set the strategy used to locate the thumbprint of validated DPoP Proof JWT.
- setDpopProofThumbprintLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
-
Set the strategy used to locate the thumbprint of validated DPoP Proof JWT.
- setDynamicValueResolvers(Map<String, ? extends MetadataValueResolver>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
-
Set dynamic metadata value resolvers.
- setEmbeddedResolver(ProviderMetadataResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
Set the
ProviderMetadataResolverto embed. - setEmbeddedResolvers(List<MetadataValueResolver>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
-
Set the list of resolvers whose value is added to the result of this resolver.
- setEncodeConsentPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
-
Set the predicate used to check if consent should be encoded.
- setEncodedAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Set the strategy used to obtain the set of attribute IDs to encode for back-channel recovery.
- setEnforceRefreshTokenRotationCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set the condition used to determine whether to revoke refresh tokens once they're used.
- setEnforceSelfAudienceCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Set whether to enforce solely the OP as audience.
- setEntityContextClass(Class<? extends AbstractSAMLEntityContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
-
Set the class type holding the SAML entity data.
- SetEntityIdToSAMLPeerEntityContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
-
MessageHandlerthat sets the entityID to the givenSAMLPeerEntityContextclass. - SetEntityIdToSAMLPeerEntityContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
-
Constructor.
- setEventContextLookupStrategy(Function<ProfileRequestContext, EventContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Set lookup strategy for
EventContextto check. - setEventContextLookupStrategy(Function<ProfileRequestContext, EventContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
-
Set lookup strategy for
EventContextto check. - setExpiration(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the expiration time of the token.
- setExpirationEpoch(long) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the expiration time of the token using epoch seconds.
- setExpiresAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set expiration time.
- setForceAuthnPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Set the predicate to apply to derive the message-independent forced authn default.
- setForcePKCECondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Set the condition used to determine whether to require PKCE.
- setForcePKCECondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Set the condition used to determine whether to require PKCE.
- SetFrontChannelLogoutSuccess - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
Action that sets the
LogoutPropagationContext.setResult(Result)as 'success'. - SetFrontChannelLogoutSuccess() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.SetFrontChannelLogoutSuccess
- setFrontChannelLogoutUri(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
Set the location for the OIDC front-channel logout endpoint.
- setGrantTypes(Collection<GrantType>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.RequestedGrantTypesCondition
-
Set the candidate grant_type values to check for.
- setHttpClient(HttpClient) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
Set the
HttpClientto use. - setHttpClient(HttpClient) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Set the
HttpClientto use. - setHttpClient(HttpClient) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
-
Set the
HttpClientto use. - setHttpClient(HttpClient) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
Set the
HttpClientto use. - setHttpClientSecurityParameters(HttpClientSecurityParameters) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
-
Set the optional client security parameters.
- setHttpClientSecurityParameters(HttpClientSecurityParameters) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Set the optional client security parameters.
- setHttpClientSecurityParameters(HttpClientSecurityParameters) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
-
Set the optional client security parameters.
- setHttpClientSecurityParameters(HttpClientSecurityParameters) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
Set the optional client security parameters.
- setHttpServletRequestSupplier(Supplier<HttpServletRequest>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
-
Set the supplier for the
HttpServletRequest. - setHttpServletRequestSupplier(Supplier<HttpServletRequest>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
-
Set the supplier for the
HttpServletRequest. - setId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
Sets the ID of this component.
- setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Set the strategy used to locate the
IdentifierGenerationStrategyto use. - setIDToken(IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the
IDTokenClaimsSetobject that will source the ID token. - setIdTokenClaimsLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
-
Set the lookup strategy for id token claims to read from.
- setIDTokenDeliveryClaimsLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
-
Set the strategy used to locate the id token delivery claims.
- setIdTokenHintEnforcedPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
-
Set the predicate for enforcing the use of ID token hints.
- setIDTokenLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
Set the strategy used to obtain the ID token lifetime.
- setIDTokenManipulationStrategyLookupStrategy(Function<ProfileRequestContext, BiFunction<ProfileRequestContext, Map<String, Object>, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
Set the lookup function to supply strategy bi-function for manipulating id_token claims.
- setIgnoringUnencodableAttributes(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Set whether the attributes that result in an
AttributeEncodingExceptionwhen being encoded should be ignored or result in anIdPEventIds.UNABLE_ENCODE_ATTRIBUTEtransition. - setIgnoringUnencodableAttributes(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Set whether the attributes that result in an
AttributeEncodingExceptionwhen being encoded should be ignored or result in anIdPEventIds.UNABLE_ENCODE_ATTRIBUTEtransition. - setImplicitFlowEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Set predicate used to indicate whether hybrid flow is enabled.
- setImplicitFlowEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Set predicate used to indicate whether hybrid flow is enabled.
- setInbound(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCMetadataContextLookupFunction
-
Sets whether to pull the subcontext from the inbound message context.
- setInbound(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Sets which message tree to use in deriving the ClientID and OIDC metadata.
- setIncludeIssuerInResponsePredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Set the predicate to signal whether or not to include iss-parameter to the response.
- setIncludeIssuerInResponsePredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Set the predicate to signal whether or not to include iss-parameter to the response.
- setIssuedAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the issuance time of the token.
- setIssuedAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set issue time.
- setIssuedAtEpoch(long) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the issuance time of the token using epoch seconds.
- setIssuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
-
Set overridden issuer value.
- setIssuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the issuer of the token.
- setIssuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set issuer.
- setIssuerLookupStrategy(Function<ProfileRequestContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Set the issuer lookup strategy.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set a lookup strategy for the token issuer.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
-
Sets lookup strategy for overridden issuer value.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
-
Set the strategy used to locate the issuer value to use.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the strategy used to locate the issuer value to use.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the strategy used to locate the issuer value to use.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
-
Set the strategy used to locate the issuer value to use.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Set the strategy used to locate the issuer value to use.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Set the strategy used to locate the issuer value to use.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Set the strategy used to lookup the issuer for this attribute resolution.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
Set the strategy used to locate the issuer value to use.
- setJti(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the identifier for the token.
- setJWT(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
-
Set the JWT in the case of a token in that form.
- setJWTID(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set JWT ID.
- setJWTID(IdentifierGenerationStrategy) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set JWT ID via generator.
- setJWTID(IdentifierGenerationStrategy, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set JWT ID via generator.
- setKey(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
-
Set the metadata key whose value is used for matching.
- setKeyTransportAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Set the strategy used to obtain list of supported signature algorithms.
- setKeyTransportAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
Set the strategy used to obtain list of supported signature algorithms.
- setKeyType(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the type of the token.
- setLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
-
Set the token lifetime.
- setLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
Set the lifetime for replay cache record.
- setLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Set the lifetime for the sealed object.
- setLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Set the lifetime for the storage record.
- setLoginHintLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Set the strategy used to locate the request login hint.
- setLogoutContextCreationStrategy(Function<ProfileRequestContext, LogoutContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Set the creation/lookup strategy for the
LogoutContextto populate. - setLogoutContextLookupStrategy(Function<MessageContext, OIDCBackChannelLogoutPropagationContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
-
Set the strategy used to lookup the
OIDCBackChannelLogoutPropagationContextto use. - setLogoutHint(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Set the logout hint.
- setLogoutHintMatchingStrategyLookupStrategy(Function<ProfileRequestContext, BiPredicate<String, SPSession>>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Set the lookup function to the RP-initiated logout's logout_hint parameter matching against SPSession.
- setLogoutPropagationContextLookupStrategy(Function<ProfileRequestContext, LogoutPropagationContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
-
Set the lookup strategy for the logout propagation context.
- setLogoutTokenClaimsSet(LogoutTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCBackChannelLogoutPropagationContext
-
Set the claims set related to the back-channel logout.
- setMandatoryScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Set the strategy used to locate the mandatory scope value.
- setMappedErrors(Map<String, ErrorObject>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
-
Set map of eventIds to pre-configured error objects.
- setMappedErrors(Map<String, Integer>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
-
Set map of eventIds to status codes.
- setMappedIdTokenRequestedClaims(AttributesMapContainer) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the requested claims for the ID Token after they've been reverse-mapped by the registry.
- setMappedUserinfoRequestedClaims(AttributesMapContainer) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the requested claims for the Userinfo endpoint after they've been reverse-mapped by the registry.
- setMatchIfRequestedClaimsSilent(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Sets whether to match if the request contains no requested claims.
- setMatchOnlyIDToken(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Sets whether to match only id token part of the requested claims.
- setMatchOnlyUserInfo(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Sets whether to match only user info part of the requested claims.
- setMaxAgeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Set the strategy used to locate the request max age.
- setMessageEncoder(MessageEncoder) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
-
Set the message encoder to be returned by this factory.
- setMetadata(Map<String, MetadataPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the allowed metadata values to be issued with the token.
- setMetadataLookupStrategy(Function<ProfileRequestContext, OIDCClientMetadata>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
-
Set the lookup strategy to use to locate the
OIDCClientMetadata. - setMetadataPolicy(Map<String, MetadataPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
-
Set the metadata policy related to dynamic client registration.
- setMetadataPolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
-
Set the metadata policy used for the enforcer function for validating the redirect URI.
- setMetadataPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
-
Set the function used for enforcing the metadata policy.
- setMetadataPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
-
Set the metadata policy enforcer function used against the
URIgiven as input. - setMetadataPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set a lookup strategy for the metadata policy.
- setMetadataPolicyMergingStrategy(BiFunction<Map<String, MetadataPolicy>, Map<String, MetadataPolicy>, Pair<Map<String, MetadataPolicy>, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
Set the strategy used for merging profile and token based metadata policies.
- setMetadataPolicyValidationStrategy(Predicate<Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
Set the strategy used for validating token and merged metadata policies.
- setMetadataPolicyValidator(Predicate<Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
-
Set the metadata policy validator function for verifying the given metadata policy.
- setMetadataResolver(ProviderMetadataResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
-
Set the resolver for the metadata that is being distributed.
- setMetadataStatements(Map<String, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
-
Set the map of static metadata_statements, key for FO, value for the statement.
- setNonce(Nonce) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set nonce of the authentication request.
- setNonceLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Set the nonce lifetime.
- setNotBefore(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set not before time.
- setOAuth2ClientAuthenticationLookupStrategy(Function<ProfileRequestContext, OAuth2ClientAuthenticationContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Set the strategy used to return the
OAuth2ClientAuthenticationContext. - setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
-
Set the JSON
ObjectMapperto use for serialization. - setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
-
Set the object mapper used for pretty-printing JSON in the request.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Set the object mapper used for pretty-printing JSON in the request.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
Set the object mapper used for pretty-printing logout token contents.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the object mapper used for pretty-printing JWT contents.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
-
Set the object mapper used for pretty-printing JWT contents.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Set the object mapper used for pretty-printing JWT contents.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
Set the JSON
ObjectMapper. - setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
-
Set the object mapper used for pretty-printing JWT contents.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Set the JSON
ObjectMapper. - setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Set the object mapper used for pretty-printing JWT contents.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
Set the object mapper used for deserializing the claims set.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Set the object mapper used for serializing the claims set.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
-
Set the object mapper used for deserializing the claims set.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Set the object mapper used for serializing the claims set.
- setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Set the JSON
ObjectMapperused for encoding map into JSON. - setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
-
Set the JSON
ObjectMapperused for decoding JSON into Map. - setObjectName(String) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
-
Set the name of the JSON object, can be null to return only values of embedded resolvers.
- setOIDCAuthenticationResponseConsentContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseConsentContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the strategy used to locate the
OIDCAuthenticationResponseConsentContextassociated with a givenProfileRequestContext. - setOIDCAuthenticationResponseConsentContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseConsentContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContextassociated with a givenProfileRequestContext. - setOIDCAuthenticationResponseConsentContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseConsentContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Set the strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContextassociated with a givenProfileRequestContext. - setOIDCAuthenticationResponseTokenClaimsContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContextassociated with a givenProfileRequestContext. - setOIDCAuthenticationResponseTokenClaimsContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContextassociated with a givenProfileRequestContext. - setOIDCAuthenticationResponseTokenClaimsContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Set the strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContextassociated with a givenProfileRequestContext. - setOIDCAuthenticationResponseTokenClaimsContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
Set the strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContextassociated with a givenProfileRequestContext. - setOIDCClientRegistrationResponseContextCreationStrategy(Function<MessageContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
-
Set the strategy used to return or create the
OIDCClientRegistrationResponseContext. - setOidcInputMetadataLookupStrategy(Function<ProfileRequestContext, OIDCClientMetadata>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
Set the strategy used to locate the
OIDCClientMetadataassociated with the request (input). - setOidcLogoutContextCreationStrategy(Function<ProfileRequestContext, OIDCLogoutPropagationContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
-
Set the strategy used for creating
OIDCLogoutPropagationContext. - setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
-
Set the strategy used to return the
OIDCMetadataContext. - setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
-
Set the strategy used for looking up
OIDCMetadataContext. - setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Set the strategy used to return the
OIDCMetadataContext. - setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
-
Set the lookup strategy for OIDCMetadataContext.
- setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Set the lookup strategy for OIDC metadata context.
- setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
Set the strategy used to return the
OIDCMetadataContext. - setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
Set the mechanism to lookup the
OIDCMetadataContextfrom theProfileRequestContext. - setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
-
Set the lookup strategy to use to locate the
OIDCMetadataContext. - setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Set the mechanism to lookup the
OIDCMetadataContextfrom theProfileRequestContext. - setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
-
Set the lookup strategy to use to locate the
OIDCMetadataContext. - setOidcOutputMetadataLookupStrategy(Function<ProfileRequestContext, OIDCClientMetadata>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
-
Set the strategy used to locate the
OIDCClientMetadataassociated with the request (output). - setOidcResponseContextLookupStrategy(Function<MessageContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
-
Set the strategy used to locate the
OIDCClientRegistrationResponseContextassociated with a givenMessageContext. - setOidcResponseContextLookupStrategy(Function<MessageContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
-
Set the strategy used to locate the
OIDCClientRegistrationResponseContextassociated with a givenMessageContext. - setOidcResponseContextLookupStrategy(Function<MessageContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
Set the strategy used to locate the
OIDCClientRegistrationResponseContextassociated with a givenMessageContext. - setOidcResponseContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
-
Set the lookup strategy for OIDC authentication response context.
- setOidcResponseContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Set the strategy used to locate the
OIDCClientRegistrationResponseContextassociated with a givenMessageContext. - setOIDCRpInitatedLogoutCtxLookupStrategy(Function<ProfileRequestContext, OIDCRpInitiatedLogoutContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
-
Set the mechanism to lookup the
OIDCRpInitiatedLogoutContext. - setOnlyIfEssential(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Sets whether to drop non essential claims.
- setOpaque(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
-
Set the token string in the case of an opaque token.
- setParEndpointLogic(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
-
Set the flag to control whether to use the PAR-endpoint logic for the validation.
- setPlainClaimsValidator(ClaimsValidator) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
-
Set the claims validator used for validating the plain/unsigned request object.
- setPolicyEnforcedMetadata(OIDCClientMetadata) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
-
Set the policy-enforced requested client metadata.
- setPolicyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set a lookup strategy for the relying party identifier.
- setPolicyIdPolicyName(String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set an explicit policy name to apply governing policyId usage.
- setPolicyLocationLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set a lookup strategy for the metadata policy location.
- setPolicyLocationPolicyName(String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set an explicit policy name to apply governing policyLocation usage.
- setPostLogoutRedirectUri(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Set the location for the post logout redirect URI.
- setPrincipal(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the principal who issued the token.
- setPrincipal(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set user principal name.
- setPrincipalNameLookupStrategy(BiFunction<ProfileRequestContext, JWTClaimsSet, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Set lookup strategy for principal name.
- setProcessedIdTokenHint(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Set the processed ID token hint.
- setProcessedToken(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the signed/encrypted ID token / UserInfo response JWT.
- setProfileMetadataPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
Set the strategy used to locate the request metadata policy configured for the profile.
- setProfileResponders(Map<ProfileConfiguration, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
-
Set mapping from profile to responder value.
- setPromptLookupStrategy(Function<ProfileRequestContext, Prompt>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
-
Set the strategy used to locate the requested prompt.
- setPromptLookupStrategy(Function<ProfileRequestContext, Prompt>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Set the strategy used to locate the requested prompt.
- setProxiedRequesterContextCreationStrategy(Function<ProfileRequestContext, ProxiedRequesterContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Set the strategy used to locate or create the ProxiedRequesterContext.
- setPushedAuthorizationRequestEnforcedPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Set the predicate for enforcing the use of pushed authorization requests.
- setPushedAuthorizationRequestUriDeserializers(List<BiFunction<ProfileRequestContext, URI, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Set the list of deserializers for OP-issued request_uri values.
- setRecipientLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
-
Set the strategy used to lookup the recipient for this attribute resolution.
- setRedirectURI(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Sets a validated redirect uri for the response.
- setRedirectURI(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set redirect URI.
- setRedirectURILookupStrategy(Function<ProfileRequestContext, URI>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Set the strategy used to locate the redirect uri of the request.
- setRedirectURIValidationStrategy(BiPredicate<ProfileRequestContext, URI>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
-
Set the strategy used to validate the post logout redirect URIs.
- setRefreshToken(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set refresh token.
- setRefreshTokenChainLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set the strategy used to obtain the refresh token chain lifetime.
- setRefreshTokenChainLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Set the strategy used to obtain the refresh token chain lifetime.
- setRefreshTokenDeserializers(List<BiFunction<ProfileRequestContext, String, RefreshTokenClaimsSet>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Set the list of deserializer bi-functions for refresh tokens to be used in addition to unsealing opaque value.
- setRefreshTokenDeserializers(List<BiFunction<ProfileRequestContext, String, RefreshTokenClaimsSet>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Set the list of deserializer bi-functions for refresh tokens to be used in addition to unsealing opaque value.
- setRefreshTokensEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Set predicate used to indicate whether refresh tokens are enabled.
- setRefreshTokensEnabledPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Set the predicate used to indicate whether refresh tokens are enabled.
- setRefreshTokenSerializationStrategies(Map<String, BiFunction<ProfileRequestContext, RefreshTokenClaimsSet, String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set the strategies used for serializing refresh token claims set, key referring to the refresh token type.
- setRefreshTokenTimeoutLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set the strategy used to obtain the refresh token timeout.
- SetRefreshTokenToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that creates a Refresh Token, and sets it to work context
OIDCAuthenticationResponseContext.getRefreshToken()located underInOutOperationContext.getOutboundMessageContext(). - SetRefreshTokenToResponseContext(DataSealer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Constructor.
- setRefreshTokenTypeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set a lookup strategy to obtain the refresh token type to issue.
- setRegAccessToken(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Set the registration access token.
- setRegClientUri(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
-
Set the location of the client configuration endpoint.
- setRegisteredRedirectURIsLookupStrategy(Function<ProfileRequestContext, Set<URI>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Set the strategy used to obtain registered redirect uris to compare if request had no redirect uri value.
- setRegistrationClaimsContextCreationStrategy(Function<ProfileRequestContext, OIDCClientRegistrationTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Set the strategy used to create or return the
OIDCClientRegistrationTokenClaimsContext. - setRegistrationMetadataPolicyContextLookupStrategy(Function<MessageContext, OIDCClientRegistrationMetadataPolicyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
-
Set the strategy that will return
OIDCClientRegistrationMetadataPolicyContext. - setRegistrationMetadataPolicyContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationMetadataPolicyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction
-
Set the strategy that will return
OIDCClientRegistrationMetadataPolicyContext. - setRegistrationMetadataPolicyContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationMetadataPolicyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
-
Set the strategy that will return
OIDCClientRegistrationMetadataPolicyContext. - setRegistrationPolicyContextCreationStrategy(Function<ProfileRequestContext, OIDCClientRegistrationMetadataPolicyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
Set the strategy used to create or return the
OIDCClientRegistrationMetadataPolicyContext. - setRegistrationTokenContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Set the strategy used to locate the
OIDCClientRegistrationTokenClaimsContextassociated with a given request. - setRegistrationTokenContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
Set the strategy used to locate the
OIDCClientRegistrationTokenClaimsContextassociated with a given request. - setRegistrationValidityPeriodStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
Set strategy function to obtain registration validity period.
- setRelyingPartyContextCreationStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
-
Set the strategy used to return or create the
RelyingPartyContext. - setRelyingPartyContextCreationStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
-
Set the strategy used to return or create the
RelyingPartyContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
-
Set the strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
-
Set the strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
-
Set the strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Set the strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Set the strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
-
Set the strategy used to return the
RelyingPartyContextfor configuration options. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Set the strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Set the strategy used to return the
RelyingPartyContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
-
Set the lookup strategy to use to locate the
RelyingPartyContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
Set the strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - setRelyingPartyId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the relying party identifier.
- setRelyingPartyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Set the strategy used to obtain the relying party ID.
- setRelyingPartyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Set the strategy used to obtain the relying party ID.
- setRelyingPartyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
-
Set the strategy used to obtain the relying party ID.
- setRelyingPartyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
-
Set the strategy used to obtain the relying party ID.
- setRemoveIpAddressFromEndpointUri(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
Set the flag to remove the IP address from the endpoint URI.
- setReplacement(Boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Set the flag to signal replacement is allowed.
- setReplacementLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set a lookup strategy for the flag signaling registration replacement is allowed.
- setReplayCache(ReplayCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Set the replay cache instance to use.
- setReplayCache(ReplayCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
-
Set the replay cache instance to use.
- setRequestedAudienceLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Set the strategy used to locate the requested audience to validate.
- setRequestedClaims(OIDCClaimsRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set requested claims.
- setRequestedClaimsLookupStrategy(Function<ProfileRequestContext, OIDCClaimsRequest>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
-
Set the strategy used to locate the requested claims of request.
- SetRequestedClaimsToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that sets requested claims to response context.
- SetRequestedClaimsToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
- setRequestedClientId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Set the requested client ID.
- setRequestedIdTokenHint(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Set the requested ID token hint.
- setRequestedResponseModeLookupStrategy(Function<ProfileRequestContext, ResponseMode>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
-
Set the lookup strategy for fetching the requested response mode.
- setRequestedResponseModeLookupStrategy(Function<ProfileRequestContext, ResponseMode>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Set the lookup strategy for fetching the requested response mode.
- setRequestedResponseModeLookupStrategy(Function<ProfileRequestContext, ResponseMode>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Set the lookup strategy for fetching the requested response mode.
- setRequestedResponseTypeLookupStrategy(Function<ProfileRequestContext, ResponseType>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Set the lookup strategy for fetching the requested response type.
- setRequestedResponseTypeLookupStrategy(Function<ProfileRequestContext, ResponseType>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Set the lookup strategy for fetching the requested response type.
- setRequestedResponseTypeLookupStrategy(Function<ProfileRequestContext, ResponseType>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Set the lookup strategy for fetching the requested response type.
- setRequestedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Set the strategy used to locate the requested scope to validate.
- setRequestedStateLookupStrategy(Function<ProfileRequestContext, State>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
-
Set the lookup strategy for fetching the requested state.
- setRequestedStateLookupStrategy(Function<ProfileRequestContext, State>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
-
Set the lookup strategy for fetching the requested state.
- setRequestedSubject(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set requested sub value.
- SetRequestedSubjectToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that sets requested sub value to response context.
- SetRequestedSubjectToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
- setRequestNonceLookupStrategy(Function<ProfileRequestContext, Nonce>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the strategy used to locate the nonce of authentication request.
- setRequestNonceLookupStrategy(Function<ProfileRequestContext, Nonce>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
-
Set the strategy used to locate the nonce of authentication request.
- setRequestObject(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the request object.
- setRequestObjectEnforcedPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Set the predicate for enforcing the use of request objects.
- setRequestObjectFailure(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set whether request object validation has failed.
- setRequestObjectFromPar(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set whether request object has been provided from the PAR endooint.
- SetRequestObjectToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that stored request object to
OIDCAuthenticationResponseContext. - SetRequestObjectToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
-
Constructor.
- setRequestUriClaimsSetSerializationStrategies(Map<String, BiFunction<ProfileRequestContext, Map<String, Object>, URI>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
-
Set the strategies used for serializing request URI claims set, key referring to the refresh token type.
- setRequireAuthenticationRequestPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
-
Set the predicate used to indicate if the incoming message is required to be an OIDC authentication request.
- setRequiredJwtTypeHeaderLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Set the strategy used to fetch required JWT type header value.
- setRequireDpopJktCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
Set the condition used to determine whether to require dpop_jkt parameter.
- setRequireDpopProofCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
-
Set the predicate for enforcing the use of DPoP proofs.
- setRequireRequestedValue(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Set whether to require redirect uri value in the request also when only single value is registered.
- setReservedClaimNames(List<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Set list of claim names that will not be added.
- setResolveEncryptionAlgs(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
-
Set whether to resolve data encryption algorithms.
- setResolveKeyTransportEncAlgs(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
-
Set whether to resolve key transport algorithms.
- setResolverFunction(Function<ProfileRequestContext, Object>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
-
Set the function used for resolving the value.
- setResponseClaimsSetLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Set the strategy used to locate the response
ClaimsSetassociated with a givenProfileRequestContext. - setResponseClaimsSetLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
Set the strategy used to locate the response
ClaimsSetassociated with a givenProfileRequestContext. - SetResponseStatusCodeFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
This action reads an event from the configured
EventContextlookup strategy and sets the status code forHttpServletResponseaccording to the attached configuration. - SetResponseStatusCodeFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
-
Constructor.
- setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
-
Set the revocation cache instance to use.
- setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Set the revocation cache instance to use.
- setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set the revocation cache instance to use.
- setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Set the revocation cache instance to use.
- setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Set the revocation cache instance to use.
- setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
-
Set the revocation cache instance to use.
- setRevocationError(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
-
Set the flag indicating if an error has occured during revocation of tokens related to the session.
- setRevocationMethodLookupStrategy(Function<ProfileRequestContext, OAuth2TokenRevocationConfiguration.OAuth2TokenRevocationMethod>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Set strategy for looking up which revocation method should be used when revoking a token.
- setRevokeConsentPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
-
Set the predicate used to decide if pre-existing consent is to be revoked.
- setRevokeWithConsentPromptPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Set the predicate used to determine if consent should be revoked with consent prompt.
- setRevokeWithOfflineAccessScopePredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Set the predicate used to determine if consent should be revoked with offline_access scope.
- setRootTokenIdentifier(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set root token identifier.
- setRootTokenIdentifierLookupStrategy(Function<JWTClaimsSet, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Set a lookup strategy for the root token identifier.
- setSAMLMetadataContextLookupStrategy(Function<MessageContext, SAMLMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
-
Set the strategy used to look up the
SAMLMetadataContextto draw from. - setSAMLMetadataContextLookupStrategy(Function<ProfileRequestContext, SAMLMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Set the strategy used to locate the
SAMLMetadataContextassociated with a givenProfileRequestContext. - setSaveTokenToCredentialSet(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Set whether to save the JWT in the Java Subject's public credentials.
- setScope(Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set validated scope values.
- setScope(Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set scope.
- setScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
-
Set the strategy used to locate the validated scope.
- setSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set the data sealer for handling access token.
- setSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Set the data sealer for handling access token.
- setSecretExpirationPeriodStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
Set strategy to obtain client secret expiration period policy.
- SetSectorIdentifierForAttributeResolution - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that sets
AttributeResolutionContext.setAttributeRecipientGroupID(java.lang.String)to sector identifier if pairwise subject is requested. - SetSectorIdentifierForAttributeResolution() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
-
Constructor.
- setSectorIdentifierLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
-
Set the strategy used to locate sector identifier.
- setSecurityParametersContextLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Set the strategy used to look up the
SecurityParametersContextto set the parameters for. - setSecurityParametersContextLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
-
Set the strategy used to look up the
SecurityParametersContextto set the parameters for. - setSecurityParametersLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Set the strategy used to locate the
SecurityParametersContextto use. - setSecurityParametersLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
-
Set the strategy used to locate the
SecurityParametersContextto use. - setSecurityParametersLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
-
Set the strategy used to locate the
SecurityParametersContextto use. - setSelfAudienceCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Set whether the OP is an implied audience for the token request.
- setSessionContextCreationStrategy(Function<ProfileRequestContext, SessionContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Set the creation/lookup strategy for the
SessionContextto populate. - setSessionId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the session identifier.
- setSessionIdentifier(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set session identifier.
- setSessionIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
-
Set the strategy used to locate session identifier.
- SetSessionIdToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that locates session id using configurable lookup strategy.
- SetSessionIdToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
-
Constructor.
- setSessionResolver(SessionResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Set the
SessionResolverto use. - setSessionResolverCriteriaStrategy(Function<ProfileRequestContext, CriteriaSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Set the strategy for building the
CriteriaSetto feed into theSessionResolver. - setSignatureAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Set the strategy used to obtain list of supported signature algorithms.
- setSignatureAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
Set the strategy used to obtain list of supported signature algorithms.
- setSignedClaimsValidator(ClaimsValidator) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
-
Set the claims validator used for validating the signed request object.
- setSigningParametersHandler(MessageHandler) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Set the handler that resolves and populates
SignatureSigningParameters. - setSortKey(int) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
Set the sort key.
- setState(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
Set the state.
- setStatementsLookupFunction(Function<ProfileRequestContext, Map<String, String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
-
Set the lookup function for obtaining incoming metadata statements.
- setStorageService(StorageService) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
-
Set the
StorageServiceback-end to use. - setStorageService(StorageService) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Set the
StorageServiceback-end to use. - setStrictScopeValidationCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Set the condition whether to apply strict scope validation, i.e.
- setSubject(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Sets generated subject for the response.
- setSubject(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Set subject name.
- setSubjectContextCreationStrategy(Function<ProfileRequestContext, SubjectContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Set the creation/lookup strategy for the
SubjectContextto populate. - setSubjectLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
-
Set the strategy used to locate subject.
- SetSubjectToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that locates subject using strategy.
- SetSubjectToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
-
Constructor.
- setSubjectType(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Sets subject type.
- setSubjectTypeLookupStrategy(Function<ProfileRequestContext, SubjectType>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
-
Set the strategy used to locate subject type.
- setSubjectTypeLookupStrategy(Function<ProfileRequestContext, SubjectType>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
-
Set the strategy function to use to obtain the subject type.
- setSubjectTypeLookupStrategy(Function<ProfileRequestContext, SubjectType>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
-
Set the strategy used to locate subject type.
- setSupportedResponseTypes(Map<ResponseType, Predicate<ProfileRequestContext>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Set map of supported response types and their corresponding predicates.
- setSyntaxValidator(Predicate<Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
-
Set the generic syntax validator for the policy.
- setTargetIDToken(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
Set whether target is id token claims set.
- setTokenClaimsSet(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2TokenMgmtResponseContext
-
Set the access token claims set (used when prepping OAuth-only access tokens).
- setTokenClaimsSetManipulationStrategyLookupStrategy(Function<ProfileRequestContext, BiFunction<ProfileRequestContext, Map<String, Object>, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the lookup function to supply strategy bi-function for manipulating token claims set.
- setTokenClaimsSetManipulationStrategyLookupStrategy(Function<ProfileRequestContext, BiFunction<ProfileRequestContext, Map<String, Object>, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the lookup function to supply strategy bi-function for manipulating token claims set.
- setTokenClaimsSetManipulationStrategyLookupStrategy(Function<ProfileRequestContext, BiFunction<ProfileRequestContext, Map<String, Object>, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set the lookup function to supply strategy bi-function for manipulating token claims set.
- SetTokenDeliveryAttributesFromTokenToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that locates any token delivery claims from authorization code / access token.
- SetTokenDeliveryAttributesFromTokenToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
-
Constructor.
- SetTokenDeliveryAttributesToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that checks for any released attributes marked for token delivery.
- SetTokenDeliveryAttributesToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Constructor.
- setTokenEndpointAuthMethodsLookupStrategy(Function<ProfileRequestContext, Set<ClientAuthenticationMethod>>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
Set strategy to obtain enabled token endpoint authentication methods.
- setTokenEndpointAuthMethodsLookupStrategy(Function<ProfileRequestContext, Set<ClientAuthenticationMethod>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
-
Set strategy to obtain enabled token endpoint authentication methods.
- setTokenLifetimeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set a lookup strategy for the token lifetime.
- setTokenMetadataPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
Set the strategy used to locate the request metadata policy encoded in the access token.
- setTokenRevocationCondition(BiPredicate<ProfileRequestContext, JWTClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Set the predicate used to indicate whether the authorization code or refresh token is revoked.
- setTokenRevocationCondition(BiPredicate<ProfileRequestContext, JWTClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.TokenRevocationConditionValidator
-
Set the token revocation condition to use.
- setTokenRevocationLifetimeLookupStrategy(Function<JWTClaimsSet, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Set a lookup strategy for the token revocation lifetime.
- setTokenRevocationLifetimeLookupStrategy(Function<JWTClaimsSet, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set a lookup strategy for the token revocation lifetime.
- setTranscoderRegistry(ReloadableService<AttributeTranscoderRegistry>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Sets the registry of transcoding rules to apply to encode attributes.
- setTranscoderRegistry(ReloadableService<AttributeTranscoderRegistry>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
-
Sets the registry of transcoding rules to apply to encode attributes.
- setTranscoderRegistry(ReloadableService<AttributeTranscoderRegistry>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Sets the registry of transcoding rules to apply to encode attributes.
- setTranscoderRegistry(ReloadableService<AttributeTranscoderRegistry>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
-
Sets the registry of transcoding rules to apply to encode attributes.
- setTypeHeaderLookupStrategy(BiFunction<ProfileRequestContext, RefreshTokenClaimsSet, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Set the strategy used to lookup the type header value for the JWT.
- setTypeHeaderValidationStrategy(BiPredicate<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Set the strategy used to validate the incoming JWT type header value.
- setUnregisteredClientAllowedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAllowedScopeLookupFunction
-
Set the lookup strategy for fetching the allowed scope for unregistered clients.
- setUnregisteredClientIdLookupStrategy(Function<ProfileRequestContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Set the strategy used to fetch the unregistered client ID value associated with a given
ProfileRequestContext. - setUnregisteredClientPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
Set the enforcer function for validating client ID against the configured policy.
- setUnregisteredClientPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Set the enforcer function for validating redirect URI against the configured policy.
- setUnregisteredClientPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Set the enforcer function for validating response type against the configured policy.
- setUnregisteredClientPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
-
Set the enforcer function for fetching the allowed scope via the configured policy.
- setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
Set the strategy used to locate the unregistered client policy configured for the profile.
- setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Set the strategy used to locate the unregistered client policy configured for the request.
- setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Set the strategy used to locate the unregistered client policy configured for the profile.
- setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
-
Set the strategy used to locate the unregistered client policy.
- setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientResponseTypesLookupFunction
-
Deprecated.Set the strategy used to locate the unregistered client policy.
- setUseOnlyRequestObjectPredicate(BiPredicate<Pair<AuthorizationRequest, Boolean>, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
-
Set the predicate to decide if the parameter values may only be set in the request object.
- setUserInfo(UserInfo) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Set the
UserInfoclaims set that will source the UserInfo response. - setUserinfoDeliveryClaimsLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
-
Set the strategy used to locate the user info delivery claims.
- setUserInfoSigningAlgLookupStrategy(Function<ProfileRequestContext, JWSAlgorithm>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
Set the strategy used to user info signing algorithm lookup strategy.
- setValidatedDpopProofThumbprint(String) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
-
Set the validated DPoP Proof JWT JWK thumbprint.
- setValidatedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.IssueIDTokenCondition
-
Set the lookup strategy for the validated scope.
- setValidatedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.OfflineAccessScopeCondition
-
Set the lookup strategy for the validated scope.
- setValidateRemoteJwkSetPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
-
Set the predicate used to indicate whether contents of remote JWK set should be validated.
- setValidRedirectURIsLookupStrategy(Function<ProfileRequestContext, Set<URI>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Set the strategy used to locate the redirect uris to compare against.
- setValidResponseModesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
-
Set the lookup strategy for fetching the valid response modes.
- setValidResponseTypesLookupStrategy(Function<ProfileRequestContext, Set<ResponseType>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Set the lookup strategy for fetching the valid response types matching the request message.
- setValue(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
-
Set the metadata value to be matched.
- setVelocityEngine(VelocityEngine) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Set the VelocityEngine instance.
- setVelocityTemplateId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Set the Velocity template id.
- setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Set the xmlSafe-flag passed to the identifier generator
- setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
Set the xmlSafe-flag passed to the identifier generator
- setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Set the xmlSafe-flag passed to the identifier generator
- setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Set the xmlSafe-flag passed to the identifier generator
- setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
Set the xmlSafe-flag passed to the identifier generator
- setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
Set the xmlSafe-flag passed to the identifier generator
- setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Set the xmlSafe-flag passed to the identifier generator
- setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
Set the xmlSafe-flag passed to the identifier generator
- setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Set the xmlSafe-flag passed to the identifier generator
- signatureAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
Strategy to obtain list of supported signature algorithms.
- signatureAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
Strategy to obtain list of supported signature algorithms.
- signatureSigningParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
-
The signature signing parameters.
- signedClaimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
-
The claims validator to be applied for validating the signed request object.
- signedJWT - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
-
Copy of signed JWT for non-opaque access tokens.
- signedJWT - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
-
Copy of signed JWT for non-opaque access tokens.
- signingParametersHandler - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Handler that resolves and populates
SignatureSigningParameters. - SINGLE_ACCESS_OR_REFRESH_TOKENS - Static variable in class net.shibboleth.idp.plugin.oidc.op.storage.RevocationCacheContexts
-
ID of context for revoking single access or refresh tokens.
- sortKey - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
The key by which we sort the provider.
- sortKeyValue - Static variable in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
-
If we autogenerate a sort key it comes from this count.
- state - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
-
The optional state parameter to the logout.
- state - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
-
The state.
- state - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
-
The optional state value.
- statements - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
-
The map of static metadata_statements, key for FO, value for the statement.
- statementsLookupFunction - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
-
The lookup function for obtaining incoming metadata statements.
- STORAGE_CONTEXT_NAME - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AbstractPushedAuthorizationRequestComponent
-
The context name in the
StorageService. - storageService - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
-
Storage service used for storing the claims set on server-side.
- storageService - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Storage service used for storing the claims set on server-side.
- StorageServicePushedAuthorizationRequestUriDeserializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Default deserialization function for decoding the request URI into claims set within OAuth2 PAR.
- StorageServicePushedAuthorizationRequestUriDeserializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
- StorageServicePushedAuthorizationRequestUriSerializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
A serialization function for the request URI claims set within OAuth2 PAR.
- StorageServicePushedAuthorizationRequestUriSerializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
Constructor.
- StoreClientInformation - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that stores the
ClientInformationfrom theOIDCClientRegistrationResponseContextto the associatedClientInformationManager. - StoreClientInformation() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
-
Constructor.
- StoreDPoPProofKeyThumbprint - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Stores the dpop_jkt parameter from the incoming authorization request.
- StoreDPoPProofKeyThumbprint() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
-
Constructor.
- strictScopeValidationCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Condition whether to apply strict scope validation, i.e.
- sub - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
-
Subject claim value of the authenticated user.
- SUB_CLAIM_NAME - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
-
Name of the sub claim.
- SUB_FORMAT - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
The subject format (public/pairwise).
- SUB_VALUE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
-
The subject value.
- subject - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Subject generated for response.
- subject - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
The subject value.
- subject - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
The subject value.
- subject(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Set the subject value.
- SubjectActivationCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
-
Activation condition returning true if subject cannot be located from oidc response context.
- SubjectActivationCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.SubjectActivationCondition
- subjectContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
-
Creation/lookup function for SubjectContext.
- subjectCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Subject context.
- subjectCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Subject context.
- subjectLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
-
Strategy used to obtain the subject.
- subjectType - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Subject type, public or pairwise.
- SubjectTypeAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
Functionthat returns the type of the subject fromOIDCAuthenticationResponseContext. - SubjectTypeAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectTypeAuditExtractor
-
Constructor.
- SubjectTypeAuditExtractor(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectTypeAuditExtractor
-
Constructor.
- subjectTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
-
Strategy used to obtain subject type.
- subjectTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
-
Strategy used to obtain subject type.
- subjectTypeStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
-
Strategy used to determine the subject type to try.
- SubjectValueAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
Functionthat returns the value of the subject fromOIDCAuthenticationResponseContext. - SubjectValueAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectValueAuditExtractor
-
Constructor.
- SubjectValueAuditExtractor(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectValueAuditExtractor
-
Constructor.
- supportedDecryptionAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
List of supported key transport algorithms obtained from the security configuration.
- supportedDecryptionEncs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
List of supported data decryption algorithms obtained from the security configuration.
- supportedEncryptionAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
List of supported key transport algorithms obtained from the security configuration.
- supportedEncryptionEncs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
List of supported data encryption algorithms obtained from the security configuration.
- supportedGrantTypes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
-
Map of supported grant types and their corresponding predicates.
- supportedResponseTypes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
-
Map of supported response types and their corresponding predicates.
- supportedSignatureValidationAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
-
List of supported signature validation algorithms obtained from the security configuration.
- supportedSigningAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
-
List of supported signing algorithms obtained from the security configuration.
- supportLogoutPropagation(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
Set the flag whether the session allows for logout propagation.
- supportsLogoutPropagation - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
-
The flag whether the session allows for logout propagation.
- supportsLogoutPropagation - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
-
The flag whether the session allows for logout propagation.
- supportsLogoutPropagation() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
- switchIntoCustomResource(HTTPRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
Switches the 'resource' parameter values in the given HTTP request body to contain a custom parameter prefix.
- syntaxValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
-
The generic syntax validator for the policy.
T
- targetIDToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
Whether we are adding claims to ID Token.
- test(String, SPSession) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultLogoutHintMatchingPredicate
- test(URI, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
- test(Map<String, UnregisteredClientPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
- test(Pair<AuthorizationRequest, Boolean>, String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultUseOnlyRequestObjectPredicate
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.RequestedGrantTypesCondition
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeConsentEnabledInTokenClaimsSetPredicate
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultEnforceSelfAudienceCondition
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.IssueIDTokenCondition
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.OfflineAccessScopeCondition
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PairwiseSubjectActivationCondition
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
- test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.SubjectActivationCondition
- test(ProfileRequestContext, JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
- test(ProfileRequestContext, URI) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPostLogoutRedirectURIValidationPredicate
- toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
-
Returns an HTTP response for this logout propagation response by using HTTP 302 redirection.
- toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
-
Returns an HTTP response for this logout response.
- toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
-
Deprecated.
- toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
-
Deprecated.
- toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
- toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationSuccessResponse
- tokenClaimsContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContext. - tokenClaimsContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContext. - tokenClaimsContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContext. - tokenClaimsContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
Strategy used to locate the
OIDCAuthenticationResponseTokenClaimsContext. - tokenClaimsCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
-
delivery claims to copy to claims set.
- tokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2TokenMgmtResponseContext
-
The token claim set.
- tokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Authorize Code / Refresh Token the access token is based on, if any.
- tokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Authorize Code / Refresh Token the refresh token will be based on.
- tokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Claims set for the claim.
- TokenClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
Class to extend for token claims sets.
- TokenClaimsSet() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Default constructor for some subclasses.
- TokenClaimsSet(JWTClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Constructor.
- TokenClaimsSet.Builder<T extends TokenClaimsSet> - Class in net.shibboleth.idp.plugin.oidc.op.token.support
-
Abstract builder to extend builders from that are instantiating claims sets extending TokenClaimsSet.
- tokenClaimsSetManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
Lookup function to supply strategy bi-function for manipulating token claims set.
- tokenClaimsSetManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
Lookup function to supply strategy bi-function for manipulating token claims set.
- tokenClaimsSetManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Lookup function to supply strategy bi-function for manipulating token claims set.
- tokenCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
-
Token context.
- tokenEndpointAuthMethodsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
Strategy to obtain enabled token endpoint authentication methods.
- tokenEndpointAuthMethodsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
-
Strategy to obtain enabled token endpoint authentication methods.
- TokenExtensionFactory - Class in net.shibboleth.idp.plugin.oidc.op.profile.spring
-
Factory used for obtaining token extension beans of the desired type, identifier and scope.
- TokenExtensionFactory(String, TokenExtensionFactory.TokenExtensionType, boolean) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
-
Constructor.
- TokenExtensionFactory.TokenExtensionType - Enum Class in net.shibboleth.idp.plugin.oidc.op.profile.spring
-
Enumeration of the supported token extension types.
- TokenExtensionType() - Constructor for enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
- tokenLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
The token lifetime.
- tokenLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
Lookup function for the token lifetime.
- tokenMetadataPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
-
The strategy used to locate the request metadata policy encoded in the access token.
- TokenRequestAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns a copy of requested resource list from a
TokenRequest. - TokenRequestAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- TokenRequestAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestAudienceLookupFunction
- TokenRequestAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAudienceLookupFunction
-
Deprecated.
- TokenRequestAuthorizationCodeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- TokenRequestAuthorizationCodeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAuthorizationCodeLookupFunction
-
Deprecated.
- TokenRequestAuthTimeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For Token and UserInfo end points.
- TokenRequestAuthTimeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAuthTimeLookupFunction
- TokenRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
For Token, Revocation and other end points supporting client authentication.
- TokenRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- TokenRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestClientIDLookupFunction
- TokenRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestClientIDLookupFunction
-
Deprecated.
- TokenRequestConsentedAttributesLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For Token and UserInfo end points.
- TokenRequestConsentedAttributesLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestConsentedAttributesLookupFunction
- TokenRequestDeliveryClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For Token and UserInfo end points.
- TokenRequestDeliveryClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestDeliveryClaimsLookupFunction
- TokenRequestIDTokenDeliveryClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For Token end point.
- TokenRequestIDTokenDeliveryClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestIDTokenDeliveryClaimsLookupFunction
- TokenRequestNonceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For Token and UserInfo end points.
- TokenRequestNonceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestNonceLookupFunction
- TokenRequestRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
For Token endpoint.
- TokenRequestRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- TokenRequestRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestRedirectURILookupFunction
- TokenRequestRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRedirectURILookupFunction
-
Deprecated.
- TokenRequestRequestedClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For Token and UserInfo end points.
- TokenRequestRequestedClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRequestedClaimsLookupFunction
- TokenRequestScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
-
A function that returns a copy of requested scopes from a
TokenRequest. - TokenRequestScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
Deprecated, for removal: This API element is subject to removal in a future version.
- TokenRequestScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestScopeLookupFunction
- TokenRequestScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestScopeLookupFunction
-
Deprecated.
- TokenRequestSessionIdLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For Token and UserInfo end points.
- TokenRequestSessionIdLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestSessionIdLookupFunction
- TokenRequestSubjectLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For Token and UserInfo end points.
- TokenRequestSubjectLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestSubjectLookupFunction
- TokenRequestTokenClaimsSetLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A bi-function that returns value for the given claim via a lookup function.
- TokenRequestTokenClaimsSetLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestTokenClaimsSetLookupFunction
- TokenRequestUserInfoDeliveryClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For user info end point.
- TokenRequestUserInfoDeliveryClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestUserInfoDeliveryClaimsLookupFunction
- TokenRequestValidRequestURIsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For Token and UserInfo end points.
- TokenRequestValidRequestURIsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestValidRequestURIsLookupFunction
- tokenRevocationCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Predicate used to indicate whether the authorization code or refresh token is revoked.
- tokenRevocationCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.TokenRevocationConditionValidator
-
Token revocation condition to use.
- TokenRevocationConditionValidator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
-
Verifies the claims set against configurable token revocation condition.
- TokenRevocationConditionValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.TokenRevocationConditionValidator
- tokenRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
-
Lookup function to supply token revocation lifetime.
- tokenRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
Lookup function to supply token revocation lifetime.
- toString() - Method in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
- toString() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
-
Deprecated.
- toString(HTTPRequest) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
-
Helper method to print request to string for logging.
- toString(HTTPRequest, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
-
Helper method to print request to string for logging.
- toString(HTTPResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method to print response to string for logging.
- toString(HTTPResponse, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method to print response to string for logging.
- toString(HttpServletResponse, String) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
-
Helper method to print response to string for logging.
- transcoderRegistry - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
-
Transcoder registry service object.
- transcoderRegistry - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
-
Transcoder registry service object.
- transcoderRegistry - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
-
Transcoder registry service object.
- transcoderRegistry - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
-
Transcoder registry service object.
- transformResourceParameter(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
-
Transforms the 'resource' parameter values in the given input to contain a prefix defined by
DefaultRequestAudienceLookupFunction.CUSTOM_RESOURCE_PARAM_PREFIX. - typeHeaderLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
-
Strategy used to lookup the type header value for the JWT.
- typeHeaderValidationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
-
Strategy used to validate the incoming JWT type header value.
U
- unregisteredClientAllowedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAllowedScopeLookupFunction
-
Lookup strategy for fetching the allowed scope for unregistered clients.
- unregisteredClientIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
-
Strategy used to fetch the unregistered client ID value associated with a given
ProfileRequestContext. - unregisteredClientPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
Enforcer function for validating client ID against the configured policy.
- unregisteredClientPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Enforcer function for validating redirect URI against the configured policy.
- unregisteredClientPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Enforcer function for validating response type against the configured policy.
- unregisteredClientPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
-
Enforcer function for fetching allowed scope via the configured policy.
- unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
Strategy used to locate the unregistered client policy configured for the profile.
- unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Strategy used to locate the unregistered client policy configured for the request.
- unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Strategy used to locate the unregistered client policy configured for the profile.
- unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
-
Strategy used to locate the unregistered client policy.
- unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientResponseTypesLookupFunction
-
Deprecated.Strategy used to locate the unregistered client policy.
- URL_PARAM_CLIENT_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
The URL parameter name for the client identifier.
- URL_PARAM_LIFETIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
The URL parameter name for the access token lifetime.
- URL_PARAM_POLICY_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
The URL parameter name for the relying party identifier.
- URL_PARAM_POLICY_LOCATION - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
The URL parameter name for the metadata policy location.
- URL_PARAM_REPLACEMENT - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
-
The URL parameter name for the replacement flag.
- useOnlyRequestObjectPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
-
The predicate to decide if the parameter values may only be set in the request object.
- userInfo - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
The user info formed.
- userinfoClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
-
Claims for userinfo only.
- userInfoClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
-
Lookup strategy for user info claims to read from.
- userinfoDeliveryClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
-
Strategy used to obtain the user info delivery claims.
- UserInfoRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
For UserInfo end point.
- UserInfoRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.UserInfoRequestClientIDLookupFunction
- UserInfoResponseClaimsSetLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns user info claims set from response context.
- UserInfoResponseClaimsSetLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.UserInfoResponseClaimsSetLookupFunction
- userInfoSigAlgStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
-
Strategy used to determine user info response signing algorithm.
V
- validate() - Method in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
- ValidateAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
-
Action that validates the claims pulled from an access token as usable for access to the OP's UserInfo endpoint.
- ValidateAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
-
Constructor.
- ValidateAudience - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that validates requested resource/audience values against a computed set of "allowed" values and populates the resulting set into the
OIDCAuthenticationResponseContextand aProxiedRequesterContext. - ValidateAudience() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
-
Constructor.
- ValidateAuthorizationRequestType - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
An action that validates the incoming OAuth2 authorization request via configurable strategy.
- ValidateAuthorizationRequestType() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
-
Constructor.
- ValidateClientAuthenticationType - Class in net.shibboleth.idp.plugin.oidc.op.authn.impl
-
Validates the client authentication type with the token_endpoint_auth_method stored in the client's metadata and the profile configuration.
- ValidateClientAuthenticationType() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
-
Constructor.
- ValidateClientIDAgainstPolicy - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Validates a client ID against unregistered client policy via configurable policy enforcer.
- ValidateClientIDAgainstPolicy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
-
Constructor.
- ValidateCodeChallenge - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Validates the presence of PKCE code challenge parameter from the incoming authentication request.
- ValidateCodeChallenge() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
-
Constructor.
- validatedAudience - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Validated audience values.
- ValidatedAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns
OIDCAuthenticationResponseContext.getAudience(). - ValidatedAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedAudienceLookupFunction
- ValidateDPoPProof - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action validates DPoP Proof JWT if already stored to the context.
- ValidateDPoPProof() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
-
Constructor.
- ValidatedRedirectUriAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
-
Looks up the validated redirect URI value from the OIDC authentication response context.
- ValidatedRedirectUriAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ValidatedRedirectUriAuditExtractor
-
Constructor.
- ValidatedRedirectUriAuditExtractor(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ValidatedRedirectUriAuditExtractor
-
Constructor.
- ValidatedRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns validated redirect uri from response context.
- ValidatedRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedRedirectURILookupFunction
- validatedScope - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
-
Validated scope values.
- ValidatedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
-
A function that returns
OIDCAuthenticationResponseContext.getScope(). - ValidatedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedScopeLookupFunction
- validatedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.IssueIDTokenCondition
-
Lookup strategy for the validated scope.
- validatedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.OfflineAccessScopeCondition
-
Lookup strategy for the validated scope.
- ValidatedScopePredicate - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
-
Predicate that evaluates a
ProfileRequestContextby looking for the validatedScopethat matches one of a designated set of string values, a single value, or a generic predicate. - ValidatedScopePredicate(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
-
Constructor.
- ValidatedScopePredicate(Collection<String>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
-
Constructor.
- ValidatedScopePredicate(Predicate<Scope>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
-
Constructor.
- ValidateGrant - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that validates an authorization grant.
- ValidateGrant(DataSealer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
-
Constructor.
- ValidateGrantType - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
An action that validates the grant type is registered to the requesting RP.
- ValidateGrantType() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
-
Constructor.
- ValidateIdTokenHint - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
Action validates ID token hint in response context.
- ValidateIdTokenHint() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
- validateJWTClaims(ProfileRequestContext, SignedJWT, ClientID) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
-
Validates the contents of the given JWT against the requirements set in the OIDC core specification section 9.
- ValidatePKCE - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action performs PKCE (https://oauth.net/2/pkce/) validation.
- ValidatePKCE() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
-
Constructor.
- ValidatePostLogoutRedirectURI - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
-
Action that validates post redirect URI is expected if it's being requested.
- ValidatePostLogoutRedirectURI() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
-
Constructor.
- ValidatePushedAuthorizationClientIDMatch - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Validates the client ID in the incoming authorization request matches with the one used in endpoint authentication.
- ValidatePushedAuthorizationClientIDMatch() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
-
Constructor.
- ValidateRedirectURI - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that validates redirect uri is expected.
- ValidateRedirectURI() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Constructor.
- ValidateRegistrationAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action that validates registration access token is a valid one.
- ValidateRegistrationAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
-
Constructor.
- ValidateRegistrationRequestMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Validates the incoming dynamic client registration request against the metadata policy stored in the
OIDCClientRegistrationMetadataPolicyContext. - ValidateRegistrationRequestMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
-
Constructor.
- validateRemoteJwkSetPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
-
Predicate used to indicate whether contents of remote JWK set should be validated.
- ValidateRequestObject - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action validates request object in response context.
- ValidateRequestObject() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
-
Constructor.
- ValidateResponseMode - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
An action that validates the requested response_mode is compliant with the profile configuration.
- ValidateResponseMode() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
-
Constructor.
- ValidateResponseType - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
An action that validates the requested response_type is (1) registered to the requesting RP (or accepted in the policy for unregistered clients) and (2) valid for the protocol used for request.
- ValidateResponseType() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Constructor.
- ValidateScope - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
-
Action that validates requested and previously granted scopes are also registered in client metadata and stores the resulting set in the response context.
- ValidateScope() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
-
Constructor.
- validRedirectURIsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
-
Strategy used to obtain the redirect uris to compare request value to.
- validRedirectURIsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPostLogoutRedirectURIValidationPredicate
-
Strategy used to obtain the redirect uris to compare request value to.
- validResponseModesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
-
Lookup strategy for fetching the valid response modes.
- validResponseTypesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
-
Lookup strategy for fetching the valid response types matching the request message.
- VALUE_TYPE_AC - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet
-
Value of authorize code claims set type.
- VALUE_TYPE_AT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
-
Value of access token claims set type.
- VALUE_TYPE_RF - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
-
Value of refresh token claims set type.
- VALUE_TYPE_RT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
-
Value of initial registration access token claims set type.
- valueOf(String) - Static method in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
-
Returns the enum constant of this class with the specified name.
- values() - Static method in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
-
Returns an array containing the constants of this enum class, in the order they are declared.
- velocityEngine - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
Velocity engine used to evaluate the template when using FORM POST response mode.
- velocityTemplateId - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
-
ID of the Velocity template used when using FORM POST response mode.
- verifyClientIdPolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
-
Verifies that the client_id is specified with one_of or regexp -operators.
- verifyEssentiality(Collection<IdPAttribute>) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
-
Checks whether any of the matching requested claims have the required flag set if necessary.
- verifyParsedClaims(String, JWTClaimsSet) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
-
Helper to verify parsed claims are what is expected.
- verifyRedirectUriPolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
-
Verifies that the redirect_uri is specified with one_of or regexp -operators.
- VerifyRequestedSubjectIdentifier - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
-
Action verifies that produced subject equals to requested subject if such exists.
- VerifyRequestedSubjectIdentifier() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.VerifyRequestedSubjectIdentifier
- verifyResponseTypePolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
-
Verifies that the response type is specified with one_of -operator.
- verifyScopePolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
-
Verifies that the scope is specified with value -operator.
- verifySectorIdUri(URI, Set<URI>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
-
Verifies that all the given redirect URIs are found from the contents of the given sector identifier URI.
W
- withAcr(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Set the authentication context class reference value of the performed authentication.
- withAuthTime(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Set the authentication time of the performed authentication.
- withClientId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Set the client identifier.
- withExpiration(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Set the expiration time of the token.
- withIssuedAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Set the issuance time of the token.
- withIssuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Sets the issuer of the token.
- withMetadata(Map<String, MetadataPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Set the allowed metadata values to be issued with the token.
- withPrincipal(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Set the principal who issued the token.
- withRelyingPartyId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Set the relying party identifier.
- withReplacement(Boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Set the flag to signal replacement use of the token.
- withType(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
-
Sets the type of the token.
X
- xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
-
The xmlSafe-flag passed to the identifier generator.
- xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
-
The xmlSafe-flag passed to the identifier generator.
- xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
-
The xmlSafe-flag passed to the identifier generator.
- xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
-
The xmlSafe-flag passed to the identifier generator.
- xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
-
The xmlSafe-flag passed to the identifier generator.
- xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
-
The xmlSafe-flag passed to the identifier generator.
- xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
-
The xmlSafe-flag passed to the identifier generator.
- xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
-
The xmlSafe-flag passed to the identifier generator.
- xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
-
The xmlSafe-flag passed to the identifier generator.
All Classes and Interfaces|All Packages|Constant Field Values|Serialized Form