Index

A B C D E F G H I J K L M N O P R S T U V W X 
All Classes and Interfaces|All Packages|Constant Field Values|Serialized Form

A

AbstractAdminApiProfileAction - Class in net.shibboleth.idp.plugin.oidc.op.admin.impl
Base class for admin flow actions producing JSON responses.
AbstractAdminApiProfileAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
 
AbstractAuthenticationRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A Abstract function extended by lookups searching fields from authentication request.
AbstractAuthenticationRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
AbstractAuthenticationRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthenticationRequestLookupFunction
Constructor.
AbstractAuthenticationRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthenticationRequestLookupFunction
Deprecated.
Constructor.
AbstractAuthorizationRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
An abstract function extended by lookups searching fields from authorization request.
AbstractAuthorizationRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
AbstractAuthorizationRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
Constructor.
AbstractAuthorizationRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
Deprecated.
Constructor.
AbstractAuthorizationRequestLookupFunction(Class<? extends AuthorizationRequest>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
Constructor.
AbstractAuthorizationRequestLookupFunction(Class<? extends AuthorizationRequest>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
Deprecated.
Constructor.
AbstractBuildErrorResponseFromEvent<T extends ErrorResponse> - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
This action is extended by error response actions.
AbstractBuildErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Constructor.
AbstractInitializeOutboundResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Deprecated, for removal: This API element is subject to removal in a future version.
AbstractInitializeOutboundResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
Deprecated.
Constructor.
AbstractOAuthAuthorizationRequestAction - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Abstract class for actions performing actions on AuthorizationRequest found via InOutOperationContext.getInboundMessageContext() and MessageContext.getMessage().
AbstractOAuthAuthorizationRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationRequestAction
 
AbstractOAuthAuthorizationResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Abstract class for actions performing actions on OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
AbstractOAuthAuthorizationResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
 
AbstractOIDCAuthenticationRequestAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Abstract class for actions performing actions on AuthenticationRequest found via InOutOperationContext.getInboundMessageContext() and MessageContext.getMessage().
AbstractOIDCAuthenticationRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationRequestAction
 
AbstractOIDCAuthenticationResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Abstract class for actions performing actions on OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
AbstractOIDCAuthenticationResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
 
AbstractOIDCBackChannelLogoutPropagationAction - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
An abstract action for OIDC back-channel logout actions dealing with OIDCBackChannelLogoutPropagationContext.
AbstractOIDCBackChannelLogoutPropagationAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
 
AbstractOIDCClientMetadataPopulationAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Abstract action for populating metadata from the ClientRegistrationRequest message to the response message.
AbstractOIDCClientMetadataPopulationAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
Constructor.
AbstractOIDCLogoutPropagationAction - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
An abstract action for OIDC logout actions dealing with OIDCLogoutPropagationContext.
AbstractOIDCLogoutPropagationAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
Constructor.
AbstractOIDCRequestAction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Abstract class for actions performing actions on a oidc request found via InOutOperationContext.getInboundMessageContext() and MessageContext.getMessage().
AbstractOIDCRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
 
AbstractOIDCResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Abstract class for actions performing actions on OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
AbstractOIDCResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
 
AbstractOIDCRpInitiatedLogoutAction - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
An abstract action for OIDC logout actions dealing with OIDC RP-initiated logout.
AbstractOIDCRpInitiatedLogoutAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
Constructor.
AbstractOIDCSigningResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Abstract action to be extended by oidc response actions requiring signing parameters.
AbstractOIDCSigningResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
Constructor.
AbstractOIDCTokenRequestAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Abstract class for actions performing actions on TokenRequest found via InOutOperationContext.getInboundMessageContext() and MessageContext.getMessage().
AbstractOIDCTokenRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenRequestAction
 
AbstractOIDCTokenResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Abstract class for actions performing actions on OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
AbstractOIDCTokenResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
 
AbstractOIDCUserInfoRequestAction - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
Abstract class for actions performing actions on UserInfoRequest found via InOutOperationContext.getInboundMessageContext() and MessageContext.getMessage().
AbstractOIDCUserInfoRequestAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoRequestAction
 
AbstractOIDCUserInfoResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
Abstract class for actions performing actions on OIDCMetadataContext located under InOutOperationContext.getInboundMessageContext().
AbstractOIDCUserInfoResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
 
AbstractOIDCUserInfoValidationResponseAction - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
Abstract class for actions performing actions on OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
AbstractOIDCUserInfoValidationResponseAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
 
AbstractProcessTokenAction<T> - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that processes a token by validating it and populating the resulting JWTClaimsSet into an OAuth2TokenMgmtResponseContext placed beneath the outbound MessageContext.
AbstractProcessTokenAction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Constructor.
AbstractPushedAuthorizationRequestComponent - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Base component for the pushed authorization request URI serializer and deserializer functions.
AbstractPushedAuthorizationRequestComponent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.AbstractPushedAuthorizationRequestComponent
 
AbstractTokenClaimsLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A Abstract function extended by lookups searching fields from tokens (Authorization Code, Access Token).
AbstractTokenClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenClaimsLookupFunction
 
AbstractTokenRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A Abstract function extended by lookups searching fields from token request.
AbstractTokenRequestLookupFunction<T> - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
AbstractTokenRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractTokenRequestLookupFunction
 
AbstractTokenRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenRequestLookupFunction
Deprecated.
 
accept(JWT, MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.JWTAccessTokenUpdateStrategy
accept(JWT, MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProcessedTokenUpdateStrategy
accept(ProfileRequestContext, JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProcessedIdTokenHintUpdateStrategy
accept(ProfileRequestContext, JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.RequestObjectUpdateStrategy
accessControlService - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Access control service.
accessToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Access token.
accessToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
access token for response.
accessToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
The registration access token to be validated.
accessTokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
The access token claim set.
AccessTokenClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
Class wrapping claims set for access token.
AccessTokenClaimsSet(JWTClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
Direct constructor.
AccessTokenClaimsSet.Builder - Class in net.shibboleth.idp.plugin.oidc.op.token.support
Builder to create instance of AccessTokenClaimsSet.
AccessTokenClaimsSetLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns the access token claims set from response context.
AccessTokenClaimsSetLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AccessTokenClaimsSetLookupFunction
 
AccessTokenContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying information used to produce access tokens.
AccessTokenContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
 
accessTokenContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Strategy used to create the subcontext to hold the token.
accessTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
Strategy used to locate the subcontext with the token.
accessTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
Strategy used to locate the subcontext with the token.
accessTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
Strategy used to locate the subcontext with the token.
accessTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.JWTAccessTokenUpdateStrategy
Strategy used to locate the subcontext with the token.
accessTokenCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Access token context.
accessTokenLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Strategy used to obtain the access token lifetime.
accessTokenTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Strategy used to obtain the access token type to issue.
acr - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
the acr used in response.
acr - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Authentication context class reference value of the authentication.
ACR - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
The authentication context reference value.
acrAlwaysEssentialLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
Strategy used to obtain whether all arc claims requests should be treated as Essential.
acrClaim - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
requested acr claim.
acrLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
Strategy used to obtain the requested acr values.
acrValues - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
acr values.
AddAccessTokenHashToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds access token hash claim to a IDTokenClaimsSet.
AddAccessTokenHashToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAccessTokenHashToIDToken
 
AddAcrToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds acr claim to a IDTokenClaimsSet.
AddAcrToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAcrToIDToken
 
AddApplicationTypeToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Adds the application_type to the OIDCClientRegistrationResponseContext.
AddApplicationTypeToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddApplicationTypeToClientMetadata
 
AddAttributesToClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds claims to a ClaimsSet.
AddAttributesToClaimsSet() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Constructor.
addAuthenticationClaims(ProfileRequestContext, RegistrationClaimsSet.Builder) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Decorate the token with authentication-related claims.
AddAuthorizationCodeHashToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds authorization code hash claim to a IDTokenClaimsSet.
AddAuthorizationCodeHashToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
 
AddAuthTimeToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds auth_time claim to a IDTokenClaimsSet.
AddAuthTimeToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthTimeToIDToken
 
AddClientNameToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Adds client name from the input metadata to the output OIDCClientMetadata.
AddClientNameToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddClientNameToClientMetadata
 
AddContactsToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Adds the contents of the contacts attribute from the input metadata to the output OIDCClientMetadata.
AddContactsToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddContactsToClientMetadata
 
addCustomClaim(String, Object) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Add a custom claim.
addGrantTypeIfEnabled(Set<GrantType>, GrantType, Predicate<ProfileRequestContext>, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Adds a given grant type to the given set of grant types, if the given predicate is true.
AddGrantTypeToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that adds the grant_type to the client metadata.
AddGrantTypeToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Constructor.
AddIDTokenShell - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that creates a IDTokenClaimsSet object shell, and sets it to work context OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
AddIDTokenShell() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
Constructor.
AddJwksToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that adds the jwks or jwks_uri to the client metadata, if one of those were defined in the request.
AddJwksToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
Constructor.
AddLogoUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
This action adds the logo_uri(s) to the client metadata.
AddLogoUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoUrisToClientMetadata
 
AddLogoutParametersToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Adds the parameters related to OIDC logout to the output OIDCClientMetadata.
AddLogoutParametersToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoutParametersToClientMetadata
 
AddMetadataStatementToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that adds the trusted metadata_statement chain (containing OP's signed key) to the metadata_statement claim in the response metadata.
AddMetadataStatementToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
Constructor.
AddNonceToIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds nonce claim to a IDTokenClaimsSet.
AddNonceToIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
 
AddPolicyUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
This action adds the policy_uri(s) to the client metadata.
AddPolicyUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddPolicyUrisToClientMetadata
 
AddRedirectUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Adds the (mandatory) redirect_uris to the output OIDCClientMetadata.
AddRedirectUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRedirectUrisToClientMetadata
 
AddRemainingClaimsToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Adds the remaining recognized claims from the input metadata to the output OIDCClientMetadata.
AddRemainingClaimsToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
Constructor.
AddRequestObjectSecurityConfigurationToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Verifies and adds the request object configuration details (request_object_signing_alg, request_object_encryption_alg and request_object_encryption_enc) to the client metadata.
AddRequestObjectSecurityConfigurationToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Constructor.
AddRequestUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Adds the pre-registered request_uri values to the output OIDCClientMetadata.
AddRequestUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestUrisToClientMetadata
 
addResponseTypeIfEnabled(Set<ResponseType>, ResponseType, Predicate<ProfileRequestContext>, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Adds a given response type to the given set of response types, if the given predicate is true.
AddResponseTypesToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that adds response_types to the OIDC client metadata.
AddResponseTypesToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Constructor.
AddScopeToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Adds the Scope from the input metadata to the output OIDCClientMetadata.
AddScopeToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
Constructor.
AddSecurityConfigurationToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Verifies and adds the security configuration details (*_response_alg and *_response_enc) to the client metadata.
AddSecurityConfigurationToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
Constructor.
AddSubjectTypeToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that adds the subject_type to the client metadata.
AddSubjectTypeToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
Constructor.
addToIDTokenByDefault - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Whether we can add claims to IDToken by default i.e.
AddTokenDeliveryAttributesToClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds claims to a ClaimsSet.
AddTokenDeliveryAttributesToClaimsSet() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
Constructor.
AddTokenEndpointAuthMethodsToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that adds the token_endpoint_auth_method to the client metadata.
AddTokenEndpointAuthMethodsToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
Constructor.
AddTosUrisToClientMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
This action adds the tos_uri(s) to the client metadata.
AddTosUrisToClientMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTosUrisToClientMetadata
 
AddUserInfoShell - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
Action that creates a UserInfo object shell, and sets it to work context OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
AddUserInfoShell() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
Constructor.
algorithmCandidates - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
Algorithm candidates to be verified against the security configuration.
AlgorithmInfoMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
A MetadataValueResolver for resolving signing/encryption algorithm information from the current SecurityConfiguration.
AlgorithmInfoMetadataValueResolver() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
Constructor.
allowedAudienceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Strategy used to obtain the audience allowed for the client.
allowedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Strategy used to obtain the scope allowed for the client.
allowNonPrototype - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
Flag to signal whether to allow non-prototype beans.
allowPKCEPlainCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Strategy used to determine whether to allow plaintext PKCE.
allowPKCEPlainCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Strategy used to determine whether to allow plaintext PKCE.
allowSignatureNone - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Whether signature algorithm none is allowed regardless of what list of Signature Validation Algs has.
alwaysIncludedAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Attributes to include in ID token no matter what.
alwaysIncludedAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Attributes to include in ID token no matter what.
alwaysIncludedAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Strategy used to obtain the set of attribute IDs to include in the ID token in all cases.
alwaysIncludedAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Strategy used to obtain the set of attribute IDs to include in the ID token in all cases.
alwaysIssueBearerAccessTokenCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Condition used to determine whether to always issue bearer access token.
alwaysIssueBearerAccessTokenCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
Condition used to determine whether to always issue bearer access token.
appendSeparator(StringBuilder) - Method in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
Append the proper parameter separator to the builder.
applicationContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
The application context from where to fetch the custom policy operators.
apply(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRootTokenIdentifierLookupStrategy
apply(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
apply(Map<String, MetadataPolicy>, Map<String, MetadataPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyMergingStrategy
apply(OIDCMetadataContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoAudienceLookupFunction
apply(OIDCMetadataContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromIDTokenLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromUserInfoLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
 
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromProcessedTokenLookupFunction
 
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromUserInfoLookupFunction
 
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AudienceClientIDLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultClientIDLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestClientIDLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultClientIDLookupFunction
Deprecated.
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.LogoutRequestClientIDLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRPSessionClientIDLookupFunction
 
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.PushedAuthorizationRequestClientIDLookupFunction
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestClientIDLookupFunction
Deprecated.
apply(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.UserInfoRequestClientIDLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationContextReferenceAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClientIdRegistrationAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IsPassiveAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.RevokedTokenAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectTypeAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectValueAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ValidatedRedirectUriAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTTypeHeaderAuditExtractor
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractTokenRequestLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationRequestMetadataLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
Deprecated.
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenClaimsLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenRequestLookupFunction
Deprecated.
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AccessTokenClaimsSetLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultAuthTimeLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultDPoPProofThumbprintLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCClientRegistrationTokenClaimsContextLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCClientRegistrationTokenMetadataPolicyLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCMetadataContextLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultResponseClaimsSetLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultUserInfoSigningAlgLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidPostLogoutRedirectUrisLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidRedirectUrisLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCAuthenticationResponseContextLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRegistrationResponseContextLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ResponseContextAuthorizationCodeLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.UserInfoResponseClaimsSetLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedAudienceLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedRedirectURILookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedScopeLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAllowedScopeLookupFunction
 
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyCriteriaLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
 
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientResponseTypesLookupFunction
Deprecated.
 
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
apply(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
apply(ProfileRequestContext, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestTokenClaimsSetLookupFunction
apply(ProfileRequestContext, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
apply(ProfileRequestContext, URI) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
apply(ProfileRequestContext, URI) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
apply(ProfileRequestContext, Map<String, Object>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
apply(ProfileRequestContext, Map<String, Object>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
apply(ProfileRequestContext, RefreshTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
apply(ApplicationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl.ProviderMetadataResolverServiceStrategy
applyPredicate(ProfileRequestContext, AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
Applies the predicate to the given request message.
ArrayMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
An implementation to MetadataValueResolver that contains an array of other MetadataValueResolvers.
ArrayMetadataValueResolver() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
Constructor.
assertedClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get the token claims set.
AttributeConsentEnabledInTokenClaimsSetPredicate - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A predicate implementation that checks if attribute consent flag is enabled.
AttributeConsentEnabledInTokenClaimsSetPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeConsentEnabledInTokenClaimsSetPredicate
 
attributeContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Strategy used to locate the AttributeContext associated with a given ProfileRequestContext.
attributeContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
Strategy used to locate the AttributeContext associated with a given ProfileRequestContext.
attributeContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Strategy used to locate the AttributeContext associated with a given ProfileRequestContext.
attributeContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
Strategy used to locate the AttributeContext associated with a given ProfileRequestContext.
attributeCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
AttributeContext to use.
attributeCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
AttributeContext to use.
attributeCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
AttributeContext to use.
AttributeFilterNamespaceHandler - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl
Namespace handler for the oidc specific attribute filter engine functions.
AttributeFilterNamespaceHandler() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl.AttributeFilterNamespaceHandler
 
attributeId - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Attribute ID to resolve.
AttributeInOIDCRequestedClaimsMatcher - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl
Class for matching attribute to requested claims.
AttributeInOIDCRequestedClaimsMatcher() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
 
AttributeInOIDCRequestedClaimsRuleParser - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl
Bean definition parser for AttributeInOIDCRequestedClaimsMatcher.
AttributeInOIDCRequestedClaimsRuleParser() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl.AttributeInOIDCRequestedClaimsRuleParser
 
AttributeOIDCScopePolicyRule - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl
Compare the scopes of oidc authentication request with the provided value.
AttributeOIDCScopePolicyRule() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl.AttributeOIDCScopePolicyRule
 
AttributeOIDCScopeRuleParser - Class in net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl
Bean definition parser for AttributeOIDCScopePolicyRule.
AttributeOIDCScopeRuleParser() - Constructor for class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl.AttributeOIDCScopeRuleParser
 
AttributeResolutionSubjectLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A function that returns subject identifier from filtered claims.
AttributeResolutionSubjectLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
Constructor.
attributeResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Attribute Resolver service.
AttributeTokenRevocationCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A condition that checks for token revocation against a resolved IdPAttribute.
AttributeTokenRevocationCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Constructor.
audience - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Audience of token request.
AUDIENCE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
Token audience.
AudienceClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
Returns a ClientID from the first value found in OIDCAuthenticationResponseContext.getAudience().
AudienceClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AudienceClientIDLookupFunction
 
audienceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Strategy to find the audience value from the context.
audienceRestrictionsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
Strategy used to obtain the audiences to add.
audiences - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
Audiences to add.
AuditFields - Class in net.shibboleth.idp.plugin.oidc.op.audit
Constants to use for audit logging fields stored in an AuditContext.
AuditFields() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
Constructor.
authContext - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Authentication context class reference value of the performed authentication.
authContext - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
The authentication context class reference value of the performed authentication.
authenticationContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
Authentication context.
AuthenticationContextReferenceAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
Looks up the 'acr' value from the OIDC authentication response context.
AuthenticationContextReferenceAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationContextReferenceAuditExtractor
Constructor.
AuthenticationContextReferenceAuditExtractor(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationContextReferenceAuditExtractor
Constructor.
authenticationRequest - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Authentication request in the case of such.
AuthenticationRequestClaimsAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
A function that resolves a claim value from the authentication request.
AuthenticationRequestClaimsAuditExtractor(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationRequestClaimsAuditExtractor
Constructor.
AUTHN_INSTANT - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
auth_time value.
AUTHORIZATION_CODE - Static variable in class net.shibboleth.idp.plugin.oidc.op.storage.RevocationCacheContexts
ID of context for revoking authorization codes (and access/refresh tokens based on the authorization codes).
authorizationCode - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Authorization code.
authorizationCodeFlowPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Predicate used to indicate whether authorization code flow is enabled.
authorizationCodeFlowPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Predicate used to indicate whether authorization code flow is enabled.
authorizationCodeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
Strategy used to locate the raw authorization code value (as String) to use for calculating the hash.
authorizationGrantClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Authorization grant (authz code, access token) claims.
authorizationRequest - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationRequestAction
The authorization request to operate on.
authorizationRequestTypeValidationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
Strategy used to validate the inbound message (AuthorizationRequest) type.
AuthorizeCodeClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
Class wrapping claims set for authorize code.
AuthorizeCodeClaimsSet(JWTClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet
Private constructor for the parser.
AuthorizeCodeClaimsSet.Builder - Class in net.shibboleth.idp.plugin.oidc.op.token.support
Builder to create instance of AuthorizeCodeClaimsSet.
authTime - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Authentication time of the end user.
authTime - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Authentication time of the performed authentication.
authTime - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
The authentication time of the performed authentication.
authTime - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Authentication time of the user.
authTimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
Strategy used to obtain the requested claims of request.
authzCodeLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Authorization code lifetime.
authzCodeLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Strategy used to obtain the authz code lifetime.
autocreate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AccessTokenClaimsSetLookupFunction
Whether to create the claims set if it is absent.

B

backChannelLogoutUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
The location for the OIDC back-channel logout endpoint.
backChannelLogoutURI - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
The back-channel logout URI for which to send the back-channel logout request.
BaseOAuth2RequestDecoder<T extends Request> - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
Base decoder for Nimbus OAuth2 request messages.
BaseOAuth2RequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
Constructor.
beanId - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
The identifier for the token extension bean.
build() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Build the OIDCRPSession.
build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet.Builder
Builds AccessTokenClaimsSet.
build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet.Builder
Builds AuthorizeCodeClaimsSet.
build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
Builds RefreshTokenClaimsSet.
build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Build the claims set object.
build() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Builds claims set.
BuildAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that creates an Access Token, and stores it to an AccessTokenContext.
BuildAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Constructor.
buildAttribute(String, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Builds an IdPAttribute with given identifier and contents taken from the given scope.
BuildAuthenticationErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
This action reads an event from the configured EventContext lookup strategy, constructs an OIDC authentication error response message and attaches it as the outbound message.
BuildAuthenticationErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Constructor.
buildClaimsSet(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
Build the claims set by exploiting the contents of the pushed authorization request form parameters or request object.
BuildClientInformation - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that uses the information from OIDCClientRegistrationResponseContext attached to the message context for creating a new ClientInformationResponse.
BuildClientInformation() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
Constructor.
Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Constructor.
Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet.Builder
Default constructor.
Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet.Builder
Default constructor.
Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
Default constructor.
Builder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Default constructor.
Builder(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Constructor.
Builder(TokenClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet.Builder
Bases a builder on an existing token claims set.
Builder(TokenClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
Bases a builder on an existing token claims set.
Builder(TokenClaimsSet, Scope, ClaimsSet, ClaimsSet, Instant, Instant) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet.Builder
Constructor for access token claims set when derived from existing claims set.
Builder(TokenClaimsSet, Instant, Instant) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
Constructor for refresh token claims set when derived from existing claims set.
Builder(TokenClaimsSet, Instant, Instant, Instant) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
Constructor for refresh token claims set when derived from existing claims set.
buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildIntrospectionErrorResponseFromEvent
 
buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildPushedAuthorizationErrorResponseFromEvent
 
buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildRevokeTokenErrorResponseFromEvent
 
buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Method implemented by the extending class to create ErrorResponse.
buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Method implemented by the extending class to create ErrorResponse.
buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildRegistrationErrorResponseFromEvent
Method implemented by the extending class to create ErrorResponse.
buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildTokenErrorResponseFromEvent
Method implemented by the extending class to create ErrorResponse.
buildErrorResponse(ErrorObject, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
Method implemented by the extending class to create ErrorResponse.
buildHttpContext(HttpUriRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
Build the HttpClientContext instance to be used by the HttpClient.
buildHttpContext(ClassicHttpRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Build the HttpClientContext instance to be used by the HttpClient.
buildIntersectedScope(IdPAttribute, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Builds intersected Scope from the given IdPAttribute and Scope.
buildIntersectedScope(ScriptedIdPAttribute, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Builds intersected Scope from the given ScriptedIdPAttribute and Scope.
BuildIntrospectionErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
This action reads an event from the configured EventContext lookup strategy, constructs an OAuth2 Token Introspection error response message and attaches it as the outbound message.
BuildIntrospectionErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildIntrospectionErrorResponseFromEvent
 
buildJWTClaimsSet(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Produce the underlying JWT to pass into the constructor methods.
BuildPushedAuthorizationErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
This action reads an event from the configured EventContext lookup strategy, constructs an OAuth2 Token PAR error response message and attaches it as the outbound message.
BuildPushedAuthorizationErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildPushedAuthorizationErrorResponseFromEvent
 
BuildRegistrationErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
This action reads an event from the configured EventContext lookup strategy, constructs an OIDC client registration error response message and attaches it as the outbound message.
BuildRegistrationErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildRegistrationErrorResponseFromEvent
 
buildResolutionContext(ProfileRequestContext, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
BuildRevokeTokenErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
This action reads an event from the configured EventContext lookup strategy, constructs an OAuth2 Token Revocation error response message and attaches it as the outbound message.
BuildRevokeTokenErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildRevokeTokenErrorResponseFromEvent
 
buildScope(IdPAttribute) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Builds Scope from the given attribute contents.
buildScope(ScriptedIdPAttribute) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Builds Scope from the given ScriptedIdPAttribute.
BuildTokenErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
This action reads an event from the configured EventContext lookup strategy, constructs an OIDC token error response message and attaches it as the outbound message.
BuildTokenErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildTokenErrorResponseFromEvent
 
BuildUserInfoErrorResponseFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
This action reads an event from the configured EventContext lookup strategy, constructs an OIDC user info error response message and attaches it as the outbound message.
BuildUserInfoErrorResponseFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
 

C

cacheControl - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
Deprecated.
cache control value.
cacheControl - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
Deprecated.
cache control value.
calculateChainExp(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Calculates the chain expiration time by taking the closest from the existing item in the claims set (if exists) and the value calculated via current profile configuration.
calculateHash(DPoPAccessToken) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
Calculates the SHA-256 hash of the given DPoP access token.
candidates - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.RequestedGrantTypesCondition
Candidate grant types.
ChainExpiryClaimsValidator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
Iff a chain expiration time (c_exp) claim is present, verifies that it is ahead of the current time, else the JWT claims set is rejected.
ChainExpiryClaimsValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.ChainExpiryClaimsValidator
Constructor.
chainRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
Lookup function to supply chain revocation lifetime.
chainRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Lookup function to supply chain revocation lifetime.
chainRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Lookup function to supply chain revocation lifetime.
checkAccess(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Check access policies.
checkForbiddenHostname(Set<URI>, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
Checks whether a given hostname is found from the given set of URIs.
checkForbiddenScheme(Set<URI>, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
Checks whether a given scheme is found from the given set of URIs.
CheckRedirectURIs - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
The action that verifies the redirect_uris from the request.
CheckRedirectURIs() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
Constructor.
checkRequestObject(AuthorizationRequest, boolean, String, T, T) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
Check if the given AuthorizationRequest and parameter should only be set in the request object.
checkScheme(Set<URI>, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
Checks whether a given scheme is used by every item in the given set of URIs.
claims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
Claims for id token and userinfo endpoint.
ClaimsAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
Function that returns the released claims for the endpoint.
ClaimsAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
Constructor.
ClaimsAuditExtractor(Function<ProfileRequestContext, ClaimsSet>, Function<ProfileRequestContext, ClaimsSet>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
Constructor.
claimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationTokenClaimsContext
The claims set in the initial access token.
claimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
The claims set to operate on.
claimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Claims Set to use.
claimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
Claims Set to use.
claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
The claims validator to be applied for validating the ID tokem hint.
claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
The claims validator to use.
claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
The claims validator to be applied for validating the DPoP proof.
claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
The claims validator to use for validating the JWT refresh token.
claimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
The claims validator to use.
claimsValidatorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Strategy used to obtain ClaimsValidator.
claimsValidatorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Lookup strategy for claims validator.
claimsValidatorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
Lookup for the claims validator to be applied for validating the DPoP proof.
claimsValidatorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
Lookup strategy for claims validator.
classRefLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
Strategy used to determine the AuthnContextClassRef.
CLIENT_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
Flow variable indicating ID of storage key.
CLIENT_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
OIDC client ID.
clientAuthContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
Strategy that will return OAuth2ClientAuthenticationContext.
clientAuthContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTTypeHeaderAuditExtractor
Strategy that will return OAuth2ClientAuthenticationContext.
clientAuthContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Strategy that will return OAuth2ClientAuthenticationContext.
clientAuthentication - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
The extracted client authentication information.
ClientAuthenticationJWTPayloadClaimsAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.authn.audit.impl
Function that returns the desired claim from the client authentication JWT payload.
ClientAuthenticationJWTPayloadClaimsAuditExtractor(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
Constructor.
ClientAuthenticationJWTPayloadClaimsAuditExtractor(String, Function<ProfileRequestContext, OAuth2ClientAuthenticationContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
Constructor.
ClientAuthenticationJWTTypeHeaderAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.authn.audit.impl
Function that returns the type header from the client authentication JWT payload.
ClientAuthenticationJWTTypeHeaderAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTTypeHeaderAuditExtractor
Constructor.
ClientAuthenticationJWTTypeHeaderAuditExtractor(Function<ProfileRequestContext, OAuth2ClientAuthenticationContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTTypeHeaderAuditExtractor
Constructor.
clientAuthMethodsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
Lookup strategy for enabled client authentication methods.
clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
Client ID to operate on.
clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
The client identifier.
clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
EntityID.
clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
Requested client identifier for the access token to be issued.
clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Mandatory Unique Client Identifier.
clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
OAuth2 client id.
clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
OIDC client id.
clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Client identifier.
clientId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Client identifier.
clientIdIssuedAt - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Optional time at which the client identifier was issued.
clientIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Lookup function for the client identifier.
clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
Strategy used to obtain the client id value for authorize/token request.
clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Strategy used to obtain the original client ID.
clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
Strategy used to obtain the client id value for authorize/token request.
clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
Strategy used to obtain the client id value used in endpoint authentication.
clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Strategy used to obtain the client id value for authorize/token request.
clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
Strategy used to obtain the client id value for authorize/token request.
clientIDLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Lookup strategy used to obtain the client id value.
clientIdPolicyName - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Name of access control policy governing clientId acceptance.
ClientIdRegistrationAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
Looks up the client ID value from the OIDC client registration response context.
ClientIdRegistrationAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClientIdRegistrationAuditExtractor
Constructor.
ClientIdRegistrationAuditExtractor(Function<ProfileRequestContext, OIDCClientRegistrationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClientIdRegistrationAuditExtractor
Constructor.
ClientInfoAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns OIDCMetadataContext.
ClientInfoAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoAudienceLookupFunction
 
clientInformation - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
The RP metadata where the front-channel logout related data is fetched.
clientInformation - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
The OIDC client information found from OIDCMetadataContext.
clientInformationManager - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
The client information manager used for storing the information.
ClientInfoScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns OIDCMetadataContext.
ClientInfoScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
 
ClientManagementArguments - Class in net.shibboleth.idp.plugin.oidc.op.cli
Command line processing for OIDC client mgmt flow.
ClientManagementArguments() - Constructor for class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
 
clientMetadata - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
The metadata for the client: the attributes supported by the OP must be included.
clientResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
Resolver used to look up OIDC client information.
clientSecret - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Optional client secret.
clientSecretExpiresAt - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Time at which the client secret will expire or 0 if it will not expire.
clockSkew - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
Positive clock skew adjustment to consider when calculating revocation lifetime.
clockSkew - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
Positive clock skew adjustment to consider when calculating revocation lifetime.
clockSkew - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.ChainExpiryClaimsValidator
Positive clock skew adjustment to consider when checking JWT expiration (Default value: 60 seconds).
codeChallenge - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Code challenge and the code challenge method stored to authz code.
codeChallenge - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
PKCE code challenge.
codeChallenge - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
PKCE code challenge.
codeChallenge - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Code challenge.
codeChallengeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Strategy used to locate the code challenge.
codeChallengeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Strategy used to locate the code challenge.
codeChallengeMethod - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
PKCE code challenge method.
codeChallengeMethodLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Strategy used to locate the code challenge method.
codeChallengeMethodLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Strategy used to locate the code challenge method.
codeHashCalculationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
The strategy used for calculating the authorization code hash value.
codeVerifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
PKCE code verifier.
codeVerifierLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Strategy used to locate the PKCE Code Verifier value.
compareTo(ServiceableProviderMetadataProvider) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
consentContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Strategy used to locate the OIDCAuthenticationResponseConsentContext.
consentContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Strategy used to locate the OIDCAuthenticationResponseConsentContext.
consentContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Strategy used to locate the OIDCAuthenticationResponseConsentContext.
consentedAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseConsentContext
Attributes having consent.
consentedAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentFromTokenToResponseContext
Strategy used to obtain the consented attributes.
consentedClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
consented claims.
consentEnabled - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Has consent been asked from the end-user.
consentEnabledPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Predicate used to check if consent is enabled with a given ProfileRequestContext.
consentEnabledPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Predicate used to check if consent is enabled with a given ProfileRequestContext.
consentEnabledPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
Predicate used to check if consent is enabled.
constructJWT(RefreshTokenClaimsSet, String, SignatureSigningParameters, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Construct a SignedJWT with the given input claims and signing parameters.
containsKeys(JWKSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
Checks that the given JWK set contains at least one key.
content - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
Deprecated.
JSON content.
context - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
Context in revocation cache.
contextType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
Deprecated.
Type of subcontext to create.
contextType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
Type of subcontext to create.
creationInstant - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
The time when this session was created.
creationInstant(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Set the time when this session was created.
CredentialMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
An implementation of MetadataValueResolver that converts public parts of the attached Credential to the value.
CredentialMetadataValueResolver() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
Constructor.
credentialResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Source of signing keys.
credentialResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Source of signing keys used for validating the signature of the JWT refresh token.
credentialResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
Source of signing keys.
cspDigester - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
CSP digester for generating CSP hashes.
cspNonceGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
CSP nonce generator.
ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationContextReferenceAuditExtractor
Lookup strategy for the context to find the subject value from.
ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClientIdRegistrationAuditExtractor
Lookup strategy for the context to find the subject value from.
ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectTypeAuditExtractor
Lookup strategy for the context to find the subject type from.
ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectValueAuditExtractor
Lookup strategy for the context to find the subject value from.
ctxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ValidatedRedirectUriAuditExtractor
Lookup strategy for the context to find the subject value from.
CUSTOM_RESOURCE_PARAM_NAME - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestAudienceLookupFunction
Deprecated.
Custom name for the resource parameter that allows non-uri values.
CUSTOM_RESOURCE_PARAM_PREFIX - Static variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestAudienceLookupFunction
Custom prefix for the resource parameter values to allow non-uri values.
customClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Extends the token with custom claims.
CustomNimbusRequestParser<T extends Request> - Interface in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
An interface for custom parsers for transforming HttpServletRequest into a Nimbus request object.
customRedirectUriValidationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Strategy to obtain custom redirect URI validation strategy.
customRequestParser - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
A custom extension for parsing Nimbus object out of the servlet request.
CustomResourceHttpServletRequestWrapper - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
A custom extension to HttpServletRequestWrapper overriding the resource parameter values with a custom prefix in the query string (for GET) and parameter map (for POST).
CustomResourceHttpServletRequestWrapper(HttpServletRequest) - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.CustomResourceHttpServletRequestWrapper
Constructor.

D

dataEncryptionAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Strategy to obtain list of supported data encryption algorithms.
dataEncryptionAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
Strategy to obtain list of supported data encryption algorithms.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Data sealer for handling access token.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Data sealer for unwrapping token.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Sealer to use for opaque tokens.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Data sealer for handling authorization code.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Data sealer for handling access token.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Data sealer for unwrapping authorization code.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Data sealer for unwrapping authorization code.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Data sealer for decrypting the private parts of the refresh token.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Data sealer for sealing private parts of the refresh token.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
Data sealer for decrypting the contents of the claims set.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Data sealer for encrypting the claims set.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Data sealer for wrapping the JSON into opaque nonce value.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
Data sealer for unwrapping opaque nonce value.
dataSealer - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
Data sealer for unwrapping authorization code.
decodeAttribute(ProfileRequestContext, Collection<TranscodingRule>, JSONObject, Multimap<String, IdPAttribute>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
Access the registry of transcoding rules to decode the input object.
decryptSealedClaimsSet(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Decrypt the sealed claims from 'for_op' claim and build RefreshTokenClaimsSet out of its contents.
DEFAULT_ERROR_CODE - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Default value for the error code in the error response messages.
DEFAULT_HTTP_STATUS_CODE - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Default value for the HTTP response status code in the HTTP responses.
DEFAULT_TEMPLATE_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Default template ID for using FORM POST response mode.
DefaultAllowedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default function for looking up the allowed scope.
DefaultAllowedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAllowedScopeLookupFunction
Constructor.
defaultAudience - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoAudienceLookupFunction
Default audience in the absence of metadata.
DefaultAuthorizationRequestTypeValidationStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Validation strategy for the inbound message.
DefaultAuthorizationRequestTypeValidationStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
Constructor.
DefaultAuthTimeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns auth time via a lookup function.
DefaultAuthTimeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultAuthTimeLookupFunction
 
DefaultChainRevocationLifetimeLookupStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default lookup function for fetching the chain revocation lifetime.
DefaultChainRevocationLifetimeLookupStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
Constructor.
DefaultClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns client id of the authentication request via a lookup function.
DefaultClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultClientIDLookupFunction
 
DefaultClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultClientIDLookupFunction
Deprecated.
 
defaultCode - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
The code for unmapped events.
defaultCode - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
The status code for unmapped events.
DefaultComputeAuthorizationCodeHashFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that computes a hash value for the authorization code via required configurable lookup function.
DefaultComputeAuthorizationCodeHashFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
 
DefaultDPoPProofNonceGenerator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
Default implementation for the function used for generating new DPoP Proof nonces.
DefaultDPoPProofNonceGenerator(DataSealer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Constructor.
DefaultDPoPProofThumbprintLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns validated DPoP proof JWK thumbprint if stored in OAuth2DPoPProofContext.
DefaultDPoPProofThumbprintLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultDPoPProofThumbprintLookupFunction
 
DefaultEnforceSelfAudienceCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A predicate that returns true if all the following conditions are met: DefaultEnforceSelfAudienceCondition.limitInitialAccessTokenToSelfPredicate returns true The inbound message is a TokenRequest The token request grant_type is authorization_code
DefaultEnforceSelfAudienceCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultEnforceSelfAudienceCondition
Constructor.
DefaultEnforceSelfAudienceCondition(Predicate<ProfileRequestContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultEnforceSelfAudienceCondition
Constructor.
DefaultJwtRefreshTokenDeserializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default implementation for deserializing an incoming JWT refresh token into the refresh token claims set.
DefaultJwtRefreshTokenDeserializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Constructor.
DefaultJwtRefreshTokenSerializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default implementation for serializing the refresh token claims set into a JWT refresh token.
DefaultJwtRefreshTokenSerializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Constructor.
defaultLanguage - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
The default language when it has not been defined in the metadata.
DefaultLogoutHintMatchingPredicate - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default validation strategy for logout hints.
DefaultLogoutHintMatchingPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultLogoutHintMatchingPredicate
 
DefaultMetadataPolicyCriteriaLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A function returning a CriteriaSet which contains the metadata policy document location as ResourceLocationCriterion.
DefaultMetadataPolicyCriteriaLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyCriteriaLookupFunction
 
DefaultMetadataPolicyMergingStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A function that merges two maps of metadata policies according to the rules specified in the OIDC federation spec (draft 17), section 5.1.3.1:
DefaultMetadataPolicyMergingStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyMergingStrategy
 
DefaultOIDCClientRegistrationTokenClaimsContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns a OIDCClientRegistrationTokenClaimsContext from the inbound message context, located as a subcontext for the profile request context.
DefaultOIDCClientRegistrationTokenClaimsContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCClientRegistrationTokenClaimsContextLookupFunction
 
DefaultOIDCClientRegistrationTokenMetadataPolicyLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns a map of metadata policies from the RegistrationClaimsSet.
DefaultOIDCClientRegistrationTokenMetadataPolicyLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCClientRegistrationTokenMetadataPolicyLookupFunction
 
DefaultOIDCMetadataContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns OIDCMetadataContext.
DefaultOIDCMetadataContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCMetadataContextLookupFunction
Constructor.
DefaultPostLogoutRedirectURIValidationPredicate - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default validation strategy for post logout redirection URIs.
DefaultPostLogoutRedirectURIValidationPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPostLogoutRedirectURIValidationPredicate
Constructor.
DefaultPushedAuthorizationRequestUriDeserializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default deserialization function for decoding the request URI into claims set within OAuth2 PAR.
DefaultPushedAuthorizationRequestUriDeserializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
Constructor.
DefaultPushedAuthorizationRequestUriSerializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default serialization function for the request URI claims set within OAuth2 PAR.
DefaultPushedAuthorizationRequestUriSerializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Constructor.
DefaultRequestAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns resource value of the authorization request.
DefaultRequestAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestAudienceLookupFunction
 
DefaultRequestAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestAudienceLookupFunction
Deprecated.
 
DefaultRequestCodeChallengeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns code challenge value of the authorization request via a lookup function.
DefaultRequestCodeChallengeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestCodeChallengeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeLookupFunction
 
DefaultRequestCodeChallengeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeLookupFunction
Deprecated.
 
DefaultRequestCodeChallengeMethodLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns code challenge method value of the authorization request via a lookup function.
DefaultRequestCodeChallengeMethodLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestCodeChallengeMethodLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
 
DefaultRequestCodeChallengeMethodLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
Deprecated.
 
DefaultRequestCodeVerifierLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
For Token endpoint.
DefaultRequestCodeVerifierLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestCodeVerifierLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeVerifierLookupFunction
 
DefaultRequestCodeVerifierLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeVerifierLookupFunction
Deprecated.
 
DefaultRequestDPoPJktLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns dpop_jkt value of the authorization request via a lookup function.
DefaultRequestDPoPJktLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestDPoPJktLookupFunction
 
DefaultRequestedAcrLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns copy of requested acr values via a lookup function.
DefaultRequestedAcrLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestedAcrLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedAcrLookupFunction
 
DefaultRequestedAcrLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedAcrLookupFunction
Deprecated.
 
DefaultRequestedClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns copy of requested claims via a lookup function.
DefaultRequestedClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestedClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedClaimsLookupFunction
 
DefaultRequestedClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedClaimsLookupFunction
Deprecated.
 
DefaultRequestedPromptLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns copy of requested prompt via a lookup function.
DefaultRequestedPromptLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestedPromptLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedPromptLookupFunction
 
DefaultRequestedPromptLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedPromptLookupFunction
Deprecated.
 
DefaultRequestedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns copy of requested scopes via a lookup function.
DefaultRequestedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedScopeLookupFunction
 
DefaultRequestedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedScopeLookupFunction
Deprecated.
 
DefaultRequestLoginHintLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns request login hint via a lookup function.
DefaultRequestLoginHintLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestLoginHintLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestLoginHintLookupFunction
 
DefaultRequestLoginHintLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestLoginHintLookupFunction
Deprecated.
 
DefaultRequestMaxAgeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns authentication max age parameter the request via a lookup function.
DefaultRequestMaxAgeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestMaxAgeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestMaxAgeLookupFunction
 
DefaultRequestMaxAgeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestMaxAgeLookupFunction
Deprecated.
 
DefaultRequestNonceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns copy of Nonce via a lookup function.
DefaultRequestNonceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestNonceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestNonceLookupFunction
 
DefaultRequestNonceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestNonceLookupFunction
Deprecated.
 
DefaultRequestRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns redirect uri of the authentication request via a lookup function.
DefaultRequestRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestRedirectURILookupFunction
 
DefaultRequestRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestRedirectURILookupFunction
Deprecated.
 
DefaultRequestResponseModeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns copy of the response mode of the request via a lookup function.
DefaultRequestResponseModeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestResponseModeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseModeLookupFunction
 
DefaultRequestResponseModeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseModeLookupFunction
Deprecated.
 
DefaultRequestResponseTypeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns copy of response type via a lookup function.
DefaultRequestResponseTypeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestResponseTypeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseTypeLookupFunction
 
DefaultRequestResponseTypeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseTypeLookupFunction
Deprecated.
 
DefaultRequestStateLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns copy of the state the request via a lookup function.
DefaultRequestStateLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultRequestStateLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestStateLookupFunction
 
DefaultRequestStateLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestStateLookupFunction
Deprecated.
 
defaultResponder - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
Default responder value, usually entity id.
DefaultResponseClaimsSetLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns id token claims set from response context.
DefaultResponseClaimsSetLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultResponseClaimsSetLookupFunction
 
DefaultRevokeConsentPredicate - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default predicate to decide if the pre-existing consent should be revoked.
DefaultRevokeConsentPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Constructor.
DefaultRootTokenIdentifierLookupStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default lookup function for fetching the root token identifier from the given claims set.
DefaultRootTokenIdentifierLookupStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRootTokenIdentifierLookupStrategy
 
defaultScope - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
Default to use if no metadata exists.
defaultScope - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
The default Scope if it was not defined in the request.
defaultStatusCode - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
The status code for unmapped events.
defaultSubjectType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
The default SubjectType if it was not defined in the request.
DefaultSubjectTypeStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Function to decide on subject type.
DefaultSubjectTypeStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
Constructor.
defaultTokenLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
The token lifetime.
DefaultTokenRevocationLifetimeLookupStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default lookup function for fetching the token revocation lifetime from the given claims set.
DefaultTokenRevocationLifetimeLookupStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
Constructor.
DefaultUnregisteredClientAllowedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default lookup function for fetching the allowed scope from the unregistered client policy.
DefaultUnregisteredClientAllowedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
Constructor.
DefaultUnregisteredClientPolicyValidator - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default validator for the unregistered client policies.
DefaultUnregisteredClientPolicyValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
Constructor.
DefaultUnregisteredClientResponseTypesLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Deprecated, for removal: This API element is subject to removal in a future version.
The response type validation is handled against the policy in the SWF action
DefaultUnregisteredClientResponseTypesLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientResponseTypesLookupFunction
Deprecated.
Constructor.
DefaultUseOnlyRequestObjectPredicate - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
Default predicate for using only request object parameters if the authorization request (1) contains request object and (2) is not OIDC authentication request or is provided by the PAR endpoint.
DefaultUseOnlyRequestObjectPredicate() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultUseOnlyRequestObjectPredicate
 
DefaultUserInfoSigningAlgLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns registered userinfo signing algorithm from metadata.
DefaultUserInfoSigningAlgLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultUserInfoSigningAlgLookupFunction
 
DefaultValidPostLogoutRedirectUrisLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns registered post logout redirection uris from metadata.
DefaultValidPostLogoutRedirectUrisLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidPostLogoutRedirectUrisLookupFunction
 
DefaultValidRedirectUrisLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns registered redirection uris from metadata.
DefaultValidRedirectUrisLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidRedirectUrisLookupFunction
 
DefaultValidResponseTypesLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns a set of valid response type for the authorization request.
DefaultValidResponseTypesLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
DefaultValidResponseTypesLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultValidResponseTypesLookupFunction
 
DefaultValidResponseTypesLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidResponseTypesLookupFunction
Deprecated.
 
defaultValue - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
The value used for matching if metadata value was null.
deliveryClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
Strategy used to obtain the delivery claims.
deniedUserInfoAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Attributes to omit from UserInfo token.
deniedUserInfoAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Attributes to omit from UserInfo token.
deniedUserInfoAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Strategy used to obtain the set of attribute IDs to omit from the UserInfo token.
deniedUserInfoAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Strategy used to obtain the set of attribute IDs to omit from the UserInfo token.
deserializeRefreshToken(ProfileRequestContext, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Attempt to deseriaalize a (serialized) refresh token value via configured deserializers.
digester - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
Digester for SHA-1.
dlClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Token delivery claims delivered both for id token and userinfo response.
dlClaimsID - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Token delivery claims delivered for id token.
dlClaimsUI - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Token delivery claims delivered for userinfo response.
doBuildURL(StringBuilder) - Method in class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
doBuildURL(StringBuilder) - Method in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
DoClientManagementOperation - Class in net.shibboleth.idp.plugin.oidc.op.admin.impl
Action that implements a JSON REST API for querying and deleting OIDC client information.
DoClientManagementOperation() - Constructor for class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
 
doDecode() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
doDeserialize(JsonObject, String, Instant, Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionSerializer
doEncode() - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.SetFrontChannelLogoutSuccess
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundIntrospectionResponseMessage
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundRevokeTokenResponseMessage
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
Deprecated.
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAccessTokenHashToIDToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAcrToIDToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddApplicationTypeToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthTimeToIDToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddClientNameToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddContactsToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoUrisToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoutParametersToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddPolicyUrisToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRedirectUrisToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestUrisToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTosUrisToClientMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeSubjectContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentFromTokenToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.VerifyRequestedSubjectIdentifier
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.FormOutboundUserInfoResponseMessage
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
doExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
doExecute(ProfileRequestContext, AuthenticationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
doExecute(ProfileRequestContext, AuthenticationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
doInitialize() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
doInvoke(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
doInvoke(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
doInvoke(MessageContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthenticationRequestLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestAudienceLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedPromptLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedScopeLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestRedirectURILookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseModeLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseTypeLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestStateLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultValidResponseTypesLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthenticationRequestLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestAudienceLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestDPoPJktLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedPromptLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedScopeLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestRedirectURILookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseModeLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseTypeLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestStateLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthorizationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultValidResponseTypesLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractTokenRequestLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeVerifierLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestAudienceLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestRedirectURILookupFunction
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestScopeLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenRequestLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeVerifierLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAudienceLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAuthorizationCodeLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRedirectURILookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestScopeLookupFunction
Deprecated.
Implemented to perform the actual lookup.
doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthenticationRequestLookupFunction
Deprecated.
Implemented to perform the actual lookup from OIDC authentication request.
doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedAcrLookupFunction
Deprecated.
Implemented to perform the actual lookup from OIDC authentication request.
doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedClaimsLookupFunction
Deprecated.
Implemented to perform the actual lookup from OIDC authentication request.
doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestLoginHintLookupFunction
Deprecated.
Implemented to perform the actual lookup from OIDC authentication request.
doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestMaxAgeLookupFunction
Deprecated.
Implemented to perform the actual lookup from OIDC authentication request.
doLookup(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestNonceLookupFunction
Deprecated.
Implemented to perform the actual lookup from OIDC authentication request.
doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationRequestClaimsAuditExtractor
Implemented to perform the actual lookup.
doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthenticationRequestLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedAcrLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedClaimsLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestLoginHintLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestMaxAgeLookupFunction
Implemented to perform the actual lookup.
doLookup(AuthenticationRequest, PushedAuthorizationRequest, JWT, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestNonceLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractTokenClaimsLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAuthTimeLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestConsentedAttributesLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestDeliveryClaimsLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestIDTokenDeliveryClaimsLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestNonceLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRequestedClaimsLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestSessionIdLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestSubjectLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestUserInfoDeliveryClaimsLookupFunction
Implemented to perform the actual lookup.
doLookup(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestValidRequestURIsLookupFunction
Implemented to perform the actual lookup.
doNativeParse(Element, ParserContext, BeanDefinitionBuilder) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl.AttributeInOIDCRequestedClaimsRuleParser
doPostEncode(AuthorizationResponse) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Set response message to FORM POST velocity context.
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationRequestAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeSubjectContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
doPreExecute(ProfileRequestContext, AuthenticationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
doPreExecute(ProfileRequestContext, AuthenticationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
doProtocolLog(ProfileRequestContext, JWT, String) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
Create a protocol message containing the pretty-printed contents of the given JWT.
doProtocolLog(ProfileRequestContext, JWT, String) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Create a protocol message containing the pretty-printed contents of the given JWT.
doProtocolLog(ProfileRequestContext, IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
Create a protocol message containing the pretty-printed contents of the given claims set.
doSerializeAdditional(SPSession, JsonGenerator) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionSerializer
doValidate(JWTClaimsSet, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.ChainExpiryClaimsValidator
doValidate(JWTClaimsSet, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
doValidate(JWTClaimsSet, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
doValidate(JWTClaimsSet, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.TokenRevocationConditionValidator
doValidate(ProfileRequestContext, AuthenticationContext, UsernamePasswordContext, CredentialValidator.WarningHandler, CredentialValidator.ErrorHandler) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
doValidate(ProfileRequestContext, AuthenticationContext, CredentialValidator.WarningHandler, CredentialValidator.ErrorHandler) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
doValidate(ProfileRequestContext, AuthenticationContext, CredentialValidator.WarningHandler, CredentialValidator.ErrorHandler) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
dpopAccessTokenCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
Predicate for deciding to refer to DPoP in error responses.
DPoPAccessTokenHashFromRequestLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A function that calculates a hash of the DPoP access token from the HttpServletRequest if found.
DPoPAccessTokenHashFromRequestLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
 
DPoPAccessTokenInRequestCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A predicate returning true it detects a DPoP access token from the HttpServletRequest.
DPoPAccessTokenInRequestCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
 
dpopProof - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
DPoP Proof JWT.
dpopProofJwkThumbprint - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
DPoP Proof JWK thumbprint.
dpopProofJwkThumbprint - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
DPoP Proof JWK thumbprint.
DPoPProofNonceClaimsValidator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
A ClaimsValidator for validating if nonce included in the DPoP Proof JWT is valid.
DPoPProofNonceClaimsValidator(DataSealer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
Constructor.
DPoPProofNonceJWTValidationException - Exception in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
A DPoP Proof nonce-specific extension to JWTValidationException.
DPoPProofNonceJWTValidationException(String) - Constructor for exception net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceJWTValidationException
Constructor.
dPopProofThumbprint - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
Validated DPoP Proof JWT JWK thumbprint.
dpopProofThumbprintLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
Strategy used to locate thumbprint of validated DPoP Proof JWT.
dpopProofThumbprintLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Strategy used to locate thumbprint of validated DPoP Proof JWT.
dpopProofThumbprintLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
Strategy used to locate thumbprint of validated DPoP Proof JWT.
DynamicFilesystemProviderMetadataResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
An extension to FilesystemProviderMetadataResolver that enables some of the claims to be dynamically updated outside the file.
DynamicFilesystemProviderMetadataResolver(Timer, Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
Constructor.
DynamicFilesystemProviderMetadataResolver(Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
Constructor.
dynamicResolvers - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
The map of dynamic metadata value resolvers, key corresponding to the name of the metadata field.

E

embeddedResolvers - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
The list of resolvers whose value is added to the result of this resolver.
enable(ModuleContext) - Method in class net.shibboleth.idp.plugin.oidc.op.OIDCOPModule
enabledMethods - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
Enabled client authn methods.
enabledTypes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
Enabled grant types.
encodeAttribute(AttributeTranscoderRegistry, ProfileRequestContext, IdPAttribute) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Access the registry of transcoding rules to transform the input attribute into claims.
encodeAttribute(AttributeTranscoderRegistry, ProfileRequestContext, IdPAttribute, Collection<JSONObject>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Access the registry of transcoding rules to transform the input attribute into claims.
encodeConsentPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
Predicate used to check if consent should be embedded in tokens.
encodedAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Attributes to encode for recovery.
encodedAttributesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Strategy used to obtain the set of attribute IDs to encode for back-channel recovery.
ENCRYPTED_ID_TOKEN - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
The flag whether the id_token is encrypted.
enforcedMetadata - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
The policy-enforced requested client metadata.
enforceRefreshTokenRotationCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Strategy used to determine whether to revoke refresh tokens once they're used.
enforceSelfAudienceCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Whether to enforce solely the OP as audience.
entityContextClass - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
The context class representing the SAML entity for whom data is to be attached.
equals(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
equals(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
.
error - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
Deprecated.
Error object.
errorObject - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
Error Object.
eventContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Strategy function for access to EventContext to check.
eventContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
Strategy function for access to EventContext to check.
ExecuteBackChannelLogoutRequest - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
An action that executes the OIDC back-channel logout request and sets the result via LogoutPropagationContext.setResult(net.shibboleth.idp.session.context.LogoutPropagationContext.Result).
ExecuteBackChannelLogoutRequest() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
Constructor.
exp - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Expiration time of the claims set.
expiration - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Expiration time of the token.
expiration - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Expiration time of the token.
expirationInstant - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
The time when this session expires.
expirationInstant(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Set the time when this session expires.
extensionType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
The token extension type.
ExtractClientAuthenticationFromRequest - Class in net.shibboleth.idp.plugin.oidc.op.authn.impl
Extracts OAuth 2 client authentication details from a request and stores them in an OAuth2ClientAuthenticationContext beneath the AuthenticationContext for subsequent validation.
ExtractClientAuthenticationFromRequest() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
Constructor.

F

FilesystemMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
An implementation to RefreshableMetadataValueResolver that fetches the information from a file.
FilesystemMetadataValueResolver(Timer, Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
Constructor.
FilesystemMetadataValueResolver(Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
Constructor.
FilesystemProviderMetadataResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
FilesystemProviderMetadataResolver(Timer, Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
Constructor.
FilesystemProviderMetadataResolver(Resource) - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
Constructor.
FORCE_AUTHN - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
prompt=login requested field.
forceAuthnPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Extracts forceAuthn property from profile config.
forcePKCE - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Whether PKCE is mandatory.
forcePKCE - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Whether PKCE is mandatory.
forcePKCECondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Strategy used to determine whether to require PKCE.
forcePKCECondition - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Strategy used to determine whether to require PKCE.
FormOutboundAuthenticationResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that forms outbound message based on request and response context.
FormOutboundAuthenticationResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Constructor.
FormOutboundDiscoveryResponse - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
This action builds a response for the OP configuration discovery request.
FormOutboundDiscoveryResponse() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
 
FormOutboundIntrospectionResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that forms outbound token introspection success message.
FormOutboundIntrospectionResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundIntrospectionResponseMessage
 
FormOutboundLogoutRequestMessage - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
Action that forms outbound message based on request and response context.
FormOutboundLogoutRequestMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
Constructor.
FormOutboundRevokeTokenResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that forms outbound token revocation success message.
FormOutboundRevokeTokenResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundRevokeTokenResponseMessage
 
FormOutboundTokenResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that forms outbound message based on token request and response context.
FormOutboundTokenResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
 
FormOutboundUserInfoResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
Action that forms outbound message based on response context.
FormOutboundUserInfoResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.FormOutboundUserInfoResponseMessage
 
FormOutbounPushedAuthorizationResponseMessage - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that forms outbound pushed authorization response message.
FormOutbounPushedAuthorizationResponseMessage() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
Constructor.
FormRpInitiatedLogoutResponse - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
Action that forms outbound message based on request and response context.
FormRpInitiatedLogoutResponse() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
 
fromPredicate(Predicate<Scope>) - Static method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
Workaround for Spring type conversion ambiguities.
fromValue(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
Workaround for Spring type conversion ambiguities.
fromValues(Collection<String>) - Static method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
Workaround for Spring type conversion ambiguities.
FrontChannelLogoutPropagationResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging.impl
A Nimbus Response implementation representing a front-channel logout propagation message that is sent to the RP's front-channel logout URI endpoint.
FrontChannelLogoutPropagationResponse(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
Constructor.
FrontChannelLogoutPropagationResponse(String, String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
Constructor.
frontChannelLogoutUri - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
The front-channel logout endpoint.
frontChannelLogoutUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
The location for the OIDC front-channel logout endpoint.
frontChannelLogoutUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
The front-channel logout endpoint.
FunctionMetadataValueResolver - Class in net.shibboleth.idp.plugin.oidc.op.metadata.impl
An implementation of MetadataValueResolver that resolves the value via attached Function.
FunctionMetadataValueResolver() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
Constructor.

G

GenerateClientID - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Creates the client ID for the registration.
GenerateClientID() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Constructor.
GenerateClientSecret - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Creates a new client secret with the IdentifierGenerationStrategy attached to this action.
GenerateClientSecret() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
Constructor.
getAccessToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get access token.
getAccessTokenClaimSet() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the access token claims set (used when prepping OAuth-only access tokens).
getAccessTokenLog(AccessToken) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
Helper method for getting protocol log message for access token object.
getAcr() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Returns the acr meant for response.
getACR() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get acr of the performed authentication.
getAudience() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get modifiable collection of token audience values.
getAudience() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get audience of the token.
getAuthContext() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the authentication context class reference value of the performed authentication.
getAuthenticationRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationRequestAction
Returns OIDC authentication request.
getAuthenticationTime() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get auth time of the user.
getAuthorizationCode() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get authorization code.
getAuthorizationCodeFlowEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Get predicate used to indicate whether authorization code flow is enabled.
getAuthorizationCodeFlowEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Get predicate used to indicate whether authorization code flow is enabled.
getAuthorizationGrantClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the claims representing the authorization grant, which may be derived from an authorization code, refresh token, or assertion.
getAuthorizationGrantLog(AuthorizationGrant) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
Helper method for getting protocol log message for authorization grant object.
getAuthorizationRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationRequestAction
Returns OAuth authorization request.
getAuthTime() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Authentication time of the end user.
getAuthTime() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the authentication time of the performed authentication.
getBackChannelLogoutUri() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
Get the location for the OIDC back-channel logout endpoint.
getBean() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
Get the token extension bean by using constraints from the class variables.
getChainExp() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
Get expiration time of the token.
getClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
Get claims for id token and userinfo endpoint.
getClaimsRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get claims request of the authentication request.
getClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationTokenClaimsContext
Get the claims set in the initial access token.
getClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get the token claims set.
getClientAuthenticationLog(ClientAuthentication) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
Helper method for getting protocol log message for client authentication object.
getClientId() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Get the client identifier.
getClientId() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the client identifier.
getClientID() - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
Parses the client ID from OIDC metadata or client authentication, if exists.
getClientID() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get Client ID of the token.
getClientIdFromJwt(SignedJWT) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.LogoutRequestClientIDLookupFunction
Gets the first audience value of the given SignedJWT.
getClientIdIssuedAt() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Get the time at which the client identifier was issued.
getClientIDValue(ClientID) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
Get the client ID value as string if the object is non-null.
getClientInformationManager() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
Get the client information manager used for storing the information.
getClientMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Get the metadata for the client: the attributes supported by the OP must be included.
getClientSecret() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Get the client secret.
getClientSecretExpiresAt() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Get the time at which the client secret will expire.
getCodeChallenge() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get code challenge of the authentication request.
getComponent() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
getConsentedAttributes() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseConsentContext
Get consented attributes.
getConsentedClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get consented claims.
getContent() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
Deprecated.
Error content as json.
getDefaultScope() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
Get the default Scope to be used if it was not defined in the request.
getDeliveryClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get token delivery claims.
getDpopProof() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
Get the DPoP proof JWT.
getDpopProofJwkThumbprint() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the DPoP Proof JWK thumbprint.
getDpopProofJwkThumbprint() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get the DPoP Proof JWK thumbprint.
getEmbeddedResolver() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
Return what we are build around.
getEndpointURI(Request) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
Returns the endpoint URI either from servlet request or from the given message, depending on the flag for removing IP address from the endpoint URI.
getErrorObject() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
Deprecated.
getErrorObject() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
getExistingChainExp(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Get the possibly existing chain expiration instant from the claims set.
getExp() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get expiration time of the token.
getExpiration() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the expiration time of the token.
getExpirationEpoch() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the expiration time of the token using epoch seconds.
getFrontChannelLogoutUri() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
Get the location for the OIDC front-channel logout endpoint.
getID() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get the id of the token.
getIDToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the IDTokenClaimsSet object that will source the ID token.
getIdtokenClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
Get claims for id token only.
getIDTokenDeliveryClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get id token token delivery claims.
getIdTokenProtocolMessage(IDTokenClaimsSet, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for ID token payload.
getImplicitFlowEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Get predicate used to indicate whether hybrid flow is enabled.
getImplicitFlowEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Get predicate used to indicate whether hybrid flow is enabled.
getInputMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
Get the OIDCClientMetadata to populate metadata from.
getIssuedAt() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the issuance time of the token.
getIssuedAt() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get issuance time of the token.
getIssuedAtEpoch() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the issuance time of the token using epoch seconds.
getIssuer() - Method in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
Gets the issuer.
getIssuer() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
Get the issuer value to interact with the service.
getIssuer() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the issuer of the token.
getIssuer() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get the issuer.
getIssuer(TokenClaimsSet, IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Get issuer from the given token claims set if found, and from the given ID token claims set if not.
getIssuer(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
getJti() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the identifier for the token.
getJWT() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
Get the JWT in the case of a token in that form.
getJwtProtocolMessage(JWTClaimsSet, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for JWT payload.
getJwtProtocolMessage(JWT, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for JWT payload.
getKey(OIDCProviderMetadata) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
getKey(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
getKeyType() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the type of the token.
getLastRefresh() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableMetadataValueResolver
Gets the time the last refresh cycle occurred.
getLastRefresh() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableProviderMetadataResolver
Gets the time the last refresh cycle occurred.
getLastRefresh() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
Gets the time the last refresh cycle occurred.
getLastUpdate() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableMetadataValueResolver
Get the time that the currently available client information was last updated.
getLastUpdate() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableProviderMetadataResolver
Get the time that the currently available metadata was last updated.
getLastUpdate() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
Get the time that the currently available metadata was last updated.
getLifetime() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
Get the token lifetime.
getLog() - Method in class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
getLog() - Method in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
getLogoutHint() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Get the logout hint.
getLogoutPropagationContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
Get the protocol-independent logout propagation context.
getLogoutRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
Returns OIDC RP-initiated logout request.
getLogoutTokenClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCBackChannelLogoutPropagationContext
Get the claims set related to the back-channel logout.
getLogoutTokenProtocolMessage(LogoutTokenClaimsSet, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for logout token payload.
getLogPrefix() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Return a string which is to be prepended to all log messages.
getMappedIdTokenRequestedClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the requested claims for the ID Token after they've been reverse-mapped by the registry.
getMappedUserinfoRequestedClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the requested claims for the Userinfo endpoint after they've been reverse-mapped by the registry.
getMatchingValues(IdPAttribute, AttributeFilterContext) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
getMatchIRequestedClaimsSilent() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Gets whether to matched if the request contains no requested claims.
getMatchOnlyIDToken() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Gets whether to match only id token part of the requested claims.
getMatchOnlyUserInfo() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Gets whether to match only user info part of the requested claims.
getMessageToLog(AuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2AuthorizationRequestDecoder
Get the string representation of what will be logged as the protocol message.
getMessageToLog(PushedAuthorizationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2PushedAuthorizationRequestDecoder
Get the string representation of what will be logged as the protocol message.
getMessageToLog(TokenIntrospectionRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2IntrospectionRequestDecoder
Get the string representation of what will be logged as the protocol message.
getMessageToLog(TokenRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder
Get the string representation of what will be logged as the protocol message.
getMessageToLog(TokenRevocationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2RevocationRequestDecoder
Get the string representation of what will be logged as the protocol message.
getMessageToLog(AuthenticationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCAuthenticationRequestDecoder
Get the string representation of what will be logged as the protocol message.
getMessageToLog(LogoutRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCLogoutRequestDecoder
Get the string representation of what will be logged as the protocol message.
getMessageToLog(OIDCClientRegistrationRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
Get the string representation of what will be logged as the protocol message.
getMessageToLog(UserInfoRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCUserInfoRequestDecoder
Get the string representation of what will be logged as the protocol message.
getMessageToLog(T) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
Get the string representation of what will be logged as the protocol message.
getMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the allowed metadata values to be issued with the token.
getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
Returns the OIDC Metadata context.
getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
Returns the OIDC Metadata context.
getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
Returns the OIDC Metadata context.
getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
Returns the OIDC Metadata context.
getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
Returns the OIDC Metadata context.
getMetadataContext() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
Returns the OIDC Metadata context.
getMetadataPolicy() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
Get the metadata policy related to dynamic client registration.
getMetadataUpdateTime() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
getNativeBeanClass() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl.AttributeInOIDCRequestedClaimsRuleParser
getNativeBeanClass() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl.AttributeOIDCScopeRuleParser
getNonce() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get nonce of the authentication request.
getNotBefore() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get not before time of the token, if any.
getObjectMapper() - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
Get the JSON ObjectMapper to use for serialization.
getOidcBackChannelLogoutContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
Get the OIDC back-channel logout context.
getOidcLogoutContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
Get the OIDC logout propagation context.
getOIDCMetadataContextLookupStrategy() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Get the mechanism to lookup the OIDCMetadataContext from the ProfileRequestContext.
getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
Returns oidc response context.
getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
Returns oidc response context.
getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
Returns oidc response context.
getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
Returns oidc response context.
getOidcResponseContext() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
Returns oidc response context.
getOidcRPSession() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
Get the OIDC RP session.
getOnlyIfEssential() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Gets whether to drop non essential claims.
getOpaque() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
Get the token string in the case of an opaque token.
getOutputMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
Get the OIDCClientMetadata to populate metadata to.
getParameterMap() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder.RemoveScopeWhenCodeGrantHttpServletRequestWrapper
getParameterMap() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.CustomResourceHttpServletRequestWrapper
getPolicyEnforcedMetadata() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
Get the policy-enforced requested client metadata.
getPostLogoutRedirectUri() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Get the location for the post logout redirect URI.
getPrincipal() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the principal who issued the token.
getPrincipal() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get principal of the user.
getProcessedIdTokenHint() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Get the processed ID token hint.
getProcessedToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the signed/encrypted ID token / UserInfo response JWT.
getProtocol() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
 
getProtocolMessage(Response) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for a Nimbus response object.
getProtocolMessageForAuthenticationResponse(AuthenticationResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for OIDC authentication response.
getProtocolMessageForAuthorizationResponse(AuthorizationResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for OAuth authorization response.
getProtocolMessageForClientInformation(ClientInformation) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for client information object.
getProtocolMessageForErrorObject(ErrorObject) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for error object.
getProtocolMessageForIntrospectionResponse(TokenIntrospectionResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for introspection response.
getProtocolMessageForJSONSuccessResponse(Response) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for JSON success response.
getProtocolMessageForRegistrationResponse(OIDCClientInformationResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for OIDC registration response.
getProtocolMessageForRevocationResponse(Response) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for revocation response.
getProtocolMessageForTokenResponse(TokenResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for token response.
getProtocolMessageForTokens(Tokens) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for tokens object.
getProtocolMessageForUserInfoResponse(UserInfoResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method for getting protocol message for OIDC user info response.
getQueryString() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.CustomResourceHttpServletRequestWrapper
getRedirectURI() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Returns a validated redirect uri for the response.
getRedirectURI() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get redirect uri of the request.
getRefreshToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get refresh token.
getRefreshTokenLog(RefreshToken) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
Helper method for getting protocol log message for refresh token object.
getRefreshTokensEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Get predicate used to indicate whether refresh tokens are enabled.
getRegAccessToken() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Get the registration access token.
getRegClientUri() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Get the location of the client configuration endpoint.
getRelyingPartyContextLookupStrategy() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Get the mechanism to lookup the RelyingPartyContext from the ProfileRequestContext.
getRelyingPartyId() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the relying party identifier.
getRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
Returns request.
getRequestedClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get requested claims.
getRequestedClientId() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Get the requested client ID.
getRequestedIdTokenHint() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Get the requested ID token hint.
getRequestedSubject() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Gets requested sub value.
getRequestObject() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the request object.
getRequestObject() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
Deprecated.
Gets the request object.
getRootTokenIdentifier() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
Get the root token identifier.
getRootTokenIdentifier() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get the root token identifier.
getRpInitiatedLogoutContext() - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
Get the RP-initiated OIDC logout context.
getSAMLMetadataContextLookupStrategy() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Get the mechanism to lookup the SAMLMetadataContext from the ProfileRequestContext.
getScope() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get validated scope values.
getScope() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get scope of the token.
getSessionId() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the session identifier.
getSessionIdentifier() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
Get the session identifier.
getSessionIdentifier() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get the session identifier.
getSessionIdentifier(TokenClaimsSet, IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Get session identifier from the given token claims set if found, and from the given ID token claims set if not.
getSignatureSigningParameters() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
Get the signing parameters to apply.
getSingleValueOrNull(Enumeration<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
Returns the value from given enumeration if only single value exists, null otherwise.
getSPSessionKey() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
getState() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Get the state.
getSubject() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Gets Name ID generated for response.
getSubject() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
Get the subject value.
getSubject() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get subject claim.
getSubject(TokenClaimsSet, IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Get subject from the given token claims set if found, and from the given ID token claims set if not.
getSubjectType() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Gets subject type.
getSubjectTypeLookupStrategy() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
Get the strategy used to locate subject type.
getSupportedResponseTypes() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Get map of supported response types and their corresponding predicates.
getToken(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Get the token to process.
getToken(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ProcessTokenForIntrospection
Get the token to process.
getToken(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ProcessTokenForRevocation
Get the token to process.
getTokenClaimsSet() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2TokenMgmtResponseContext
Get the token claims set.
getTokenRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenRequestAction
Returns OIDC token request.
getType() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get type of the claims set.
getUserInfo() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get the UserInfo claims set that will source the UserInfo response.
getUserinfoClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
Get claims for userinfo only.
getUserinfoDeliveryClaims() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get user info response token delivery claims.
getUserInfoRequest() - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoRequestAction
Returns OIDC user info request.
getValidatedDpopProofThumbprint() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
Get the validated DPoP Proof JWT JWK thumbprint.
grantTypesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
Strategy to obtain enabled grant types.

H

handleNonceValidationFailure(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
Attach a new nonce to the HTTP servlet response or builds the corresponding event ID to the given PRC if the nonce cannot be generated or attached.
handleNullRequestedURI(ProfileRequestContext, Set<URI>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Handles the missing requested redirect URI case: it may be missing if it's not required to exist and the registered and valid records contain only single matching value.
hashCode() - Method in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
hashCode() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
hasRevocationError() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
Get the flag indicating if an error has occured during revocation of tokens related to the session.
httpClient - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
HTTP Client used to post the data.
httpClient - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
HTTP Client used to post the data.
httpClient - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
The HttpClient to use.
httpClient - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
The HttpClient to use.
httpClientSecurityParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
HTTP client security parameters.
httpClientSecurityParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
HTTP client security parameters.
httpClientSecurityParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
HTTP client security parameters.
httpClientSecurityParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
HTTP client security parameters.
httpServletRequestSupplier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
Supplier for the HttpServletRequest.
httpServletRequestSupplier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
Supplier for the HttpServletRequest.

I

iat - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Issue time of the claims set.
ID_TOKEN_ISSUE_INSTANT - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
id_token issue instant.
idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
The identifier generator to use.
idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
The generator to use.
idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
The generator to use.
idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
The generator to use.
idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
The client ID generator to use.
idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
The client secret generator to use.
idGenerator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
The generator to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Strategy used to locate the IdentifierGenerationStrategy to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
Strategy used to locate the IdentifierGenerationStrategy to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Strategy used to locate the IdentifierGenerationStrategy to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Strategy used to locate the IdentifierGenerationStrategy to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Strategy used to locate the IdentifierGenerationStrategy to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
Strategy used to locate the IdentifierGenerationStrategy to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Strategy used to locate the IdentifierGenerationStrategy to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Strategy used to locate the IdentifierGenerationStrategy to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Strategy used to locate the IdentifierGenerationStrategy to use.
idGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Lookup function to supply identifier generation strategy to use.
idToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
The id token formed.
idToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
ID token for response.
idToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
The id_token to operate on.
idtokenClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
Claims for id token only.
idTokenClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
id token claims in requested claims.
IdTokenClaimsAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
A function that resolves a claim value from the id_token claims set.
IdTokenClaimsAuditExtractor(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
Constructor.
idTokenClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
Lookup strategy for id token claims to read from.
idTokenClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
Lookup strategy for id token claims to read from.
idTokenDeliveryClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
Strategy used to obtain the id token delivery claims.
idTokenHint - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
ID token hint.
idTokenHint - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
id token hint.
idTokenHintEnforcedPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
Predicate for enforcing the use of ID token hints.
idTokenLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
Strategy used to obtain the ID token lifetime.
idTokenManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
Lookup function to supply strategy bi-function for manipulating id_token claims.
ignoringUnencodableAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Whether attributes that result in an AttributeEncodingException when being encoded should be ignored or result in an IdPEventIds.UNABLE_ENCODE_ATTRIBUTE transition.
ignoringUnencodableAttributes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Whether attributes that result in an AttributeEncodingException when being encoded should be ignored or result in an IdPEventIds.UNABLE_ENCODE_ATTRIBUTE transition.
implicitFlowPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Predicate used to indicate whether implicit flow is enabled.
implicitFlowPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Predicate used to indicate whether implicit flow is enabled.
impliesFormPost(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Whether we should use FORM POST response encoding.
inbound - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCMetadataContextLookupFunction
Use the inbound message context.
inbound - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Use the inbound message tree?
INBOUND_MESSAGE_CLASS - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
The inbound (Nimbus) message class.
includeIssuerInResponsePredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Predicate to signal whether or not to include iss-parameter to the response.
includeIssuerInResponsePredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Predicate to signal whether or not to include iss-parameter to the response.
indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
 
indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
Deprecated.
indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
Deprecated.
indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
indicatesSuccess() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationSuccessResponse
init() - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl.AttributeFilterNamespaceHandler
InitializeAuthenticationContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that creates an AuthenticationContext and attaches it to the current ProfileRequestContext.
InitializeAuthenticationContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Constructor.
InitializeDPoPProofContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that stores DPoP proof JWT to OAuth2DPoPProofContext.
InitializeDPoPProofContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
 
InitializeOutboundAuthenticationResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds an outbound MessageContext and related OIDC contexts to the ProfileRequestContext based on the identity of a relying party accessed via a lookup strategy, by default an immediate child of the profile request context.
InitializeOutboundAuthenticationResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Constructor.
InitializeOutboundRegistrationResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds an outbound MessageContext and related OIDC context to the ProfileRequestContext.
InitializeOutboundRegistrationResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
Constructor.
InitializeOutboundResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds an outbound MessageContext typed to generic Response to ProfileRequestContext.
InitializeOutboundResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
Constructor.
InitializeOutboundRpInitiatedLogoutResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
Action that adds an outbound MessageContext and related contexts to the ProfileRequestContext.
InitializeOutboundRpInitiatedLogoutResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.InitializeOutboundRpInitiatedLogoutResponseMessageContext
Constructor.
InitializeOutboundTokenMgmtResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that adds an outbound MessageContext and related contexts to the ProfileRequestContext.
InitializeOutboundTokenMgmtResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeOutboundTokenMgmtResponseMessageContext
Constructor.
InitializeOutboundTokenResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Deprecated, for removal: This API element is subject to removal in a future version.
InitializeOutboundTokenResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundTokenResponseMessageContext
Deprecated.
 
InitializeOutboundUserInfoResponseMessageContext - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
Deprecated, for removal: This API element is subject to removal in a future version.
InitializeOutboundUserInfoResponseMessageContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.InitializeOutboundUserInfoResponseMessageContext
Deprecated.
 
InitializeRegistrationMetadataPolicyContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Initializes the OIDCClientRegistrationMetadataPolicyContext and attaches it as a subcontext for the incoming MessageContext.
InitializeRegistrationMetadataPolicyContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
Constructor.
InitializeRelyingPartyContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds a RelyingPartyContext to the current ProfileRequestContext tree via a creation function.
InitializeRelyingPartyContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Constructor.
InitializeSubjectContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that creates an SubjectContext and attaches it to the current ProfileRequestContext.
InitializeSubjectContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeSubjectContext
 
InitializeUnverifiedRelyingPartyContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that adds a RelyingPartyContext to the current ProfileRequestContext tree via a creation function.
InitializeUnverifiedRelyingPartyContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
Constructor.
inputMetadata - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
The OIDCClientMetadata to populate metadata from.
IS_PASSIVE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
prompt=none requested field.
isConsentEnabled() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Get whether consent has been enabled.
IsPassiveAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
Function that returns true is prompt contains 'none' in AuthenticationRequest.
IsPassiveAuditExtractor(Function<ProfileRequestContext, AuthenticationRequest>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.IsPassiveAuditExtractor
Constructor.
isPublicClient() - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Checks if the client is a public client.
isReplacement() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Get the flag to signal replacement is allowed.
isRequestObjectFailure() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get whether request object validation has failed.
isRequestObjectFromPar() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Get whether request object has been provided from the PAR endooint.
isRevoked(String, JWTClaimsSet, Collection<Instant>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Check the revocation records' timestamps for applicability.
iss - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
OP issuer value.
issuedAt - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Issuance time of the token.
issuedAt - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Issuance time of the token.
IssueIDTokenCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Activation condition returning true if validated scope contains 'openid' scope.
IssueIDTokenCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.IssueIDTokenCondition
Constructor.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
The token issuer.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
The issuer.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
Issuer value to included in the response message, if configured to be included.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
The optional issuer (iss-parameter) value.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Issuer value to included in the response message, if configured to be included.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Issuer value to included in the response message, if configured to be included.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
The issuer value to interact with the service.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
The issuer value to interact with the service.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Issuer of the token.
issuer - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
OP issuer.
issuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Set the issuer value to interact with the service.
ISSUER - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
OIDC issuer.
IssuerCriterion - Class in net.shibboleth.idp.plugin.oidc.op.criterion
A Criterion representing an OIDC (provider) issuer.
IssuerCriterion(Issuer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
Constructor.
IssueRegistrationAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.admin.impl
Action that issues access token to be used for the OIDC dynamic registration endpoint.
IssueRegistrationAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Constructor.
IssueRegistrationAccessTokenArguments - Class in net.shibboleth.idp.plugin.oidc.op.cli
Command line processing for issue-registration-access-token flow.
IssueRegistrationAccessTokenArguments() - Constructor for class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
 
IssueRegistrationTokenFlowDescriptor - Class in net.shibboleth.idp.plugin.oidc.op.admin
Descriptor for flow that issues access tokens for client registration.
IssueRegistrationTokenFlowDescriptor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
Constructor.
issuerId - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
EntityID to populate into Issuer element.
issuerId - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
OP ID to populate into Issuer element.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Lookup function for the token issuer.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
Lookup function to override issuer value.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
Strategy used to obtain the response issuer value.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Lookup function for issuer.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Strategy used to obtain the response issuer value.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Strategy used to obtain the response issuer value.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
Strategy used to obtain the response issuer value.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Strategy used to obtain the response issuer value.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Strategy used to obtain the response issuer value.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Strategy used to locate the identity of the issuer associated with the attribute resolution.
issuerLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
Strategy used to obtain the response issuer value.
isSupportsLogoutPropagation(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Check if the OIDCClientMetadata attached to the given PRC contains a front- or back-channel logout URI.
isTimeValid() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Check if the token is valid with respect to expiration and not before limits.

J

jktLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
Strategy used to locate the dpop_jkt value.
JSONErrorResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging
Deprecated, for removal: This API element is subject to removal in a future version.
JSONErrorResponse(ErrorObject) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
Deprecated.
Constructor.
JSONErrorResponse(ErrorObject, String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
Deprecated.
Constructor.
JSONSuccessResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging
Deprecated, for removal: This API element is subject to removal in a future version.
JSONSuccessResponse(JSONObject) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
Deprecated.
Constructor.
JSONSuccessResponse(JSONObject, String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
Deprecated.
Constructor.
jti - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Identifier for the token.
jti - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Identifier for the token.
JWK_JAR_FILENAME - Variable in class net.shibboleth.idp.plugin.oidc.op.OIDCOPModule
The JWK generator JAR file that will be deleted from its old location if exists there.
jwkThumbprint - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
The JWK thumbprint.
jwt - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
The signed/encrypted token in the case of JWT format.
JWTAccessTokenUpdateStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Add the JWT back to the AccessTokenContext.
JWTAccessTokenUpdateStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.JWTAccessTokenUpdateStrategy
Constructor.
JWTClaimsSetFromIDTokenLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
Extract the JWTClaimsSet from the id_token in OIDCAuthenticationResponseContext.
JWTClaimsSetFromIDTokenLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromIDTokenLookupFunction
 
JWTClaimsSetFromJWTAccessTokenLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
Extract the JWTClaimsSet from the JWT in AccessTokenContext.
JWTClaimsSetFromJWTAccessTokenLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
Constructor.
JWTClaimsSetFromLogoutContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
JWTClaimsSetFromLogoutContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
Constructor.
JWTClaimsSetFromUserInfoLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
Extract the Payload from the user info in OIDCAuthenticationResponseContext.
JWTClaimsSetFromUserInfoLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromUserInfoLookupFunction
 
JWTCredentialValidator - Class in net.shibboleth.idp.plugin.oidc.op.authn.impl
A validator that handles authentication via signed JWT.
JWTCredentialValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Constructor.
jwtid - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Token ID.
jwtTokenType - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Use a JWT for the token.

K

key - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationRequestClaimsAuditExtractor
The claim whose value is to be extracted.
key - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
The claim whose value is to be extracted.
key - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.audit.impl.ClientAuthenticationJWTPayloadClaimsAuditExtractor
The claim whose value is to be extracted.
KEY_AC_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Identifier for the token.
KEY_ACR - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Authentication context class reference value of the performed authentication.
KEY_AUDIENCE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Audiences of the token request.
KEY_AUTH_TIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Authentication time of the performed authentication.
KEY_CHAIN_EXPIRATION_TIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
Expiration time of the refresh token chain.
KEY_CLAIMS - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Claims request of the original authentication request.
KEY_CLIENTID - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Client id of the rp the token is generated for.
KEY_CODE_CHALLENGE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Code Challenge.
KEY_CONFIRMATION - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Identifier for the confirmation claim.
KEY_CONSENT_ENABLED - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Whether consent has been enabled.
KEY_CONSENTED_CLAIMS - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Claims/Attributes having consent.
KEY_DELIVERY_CLAIMS - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Claims set for token delivery.
KEY_DELIVERY_CLAIMS_IDTOKEN - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Claims set for token delivery, id token only.
KEY_DELIVERY_CLAIMS_USERINFO - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Claims set for token delivery, user info only.
KEY_DPOP_PROOF_JWK_THUMBPRINT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Identifier for the DPoP Proof JWK thumbprint under confirmation claim.
KEY_EXPIRATION_TIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Expiration time of the token.
KEY_ISSUED_AT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Issue time of the token.
KEY_ISSUER - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
OP issuer.
KEY_LEGACY_CLIENTID - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Client id of the rp the token is generated for (old constant).
KEY_NONCE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Nonce of the original authentication request.
KEY_NOTBEFORE_TIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Not before time of the token.
KEY_REDIRECT_URI - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Redirect uri of the original authentication request.
KEY_ROOT_JTI - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Identifier for the root token in the chain.
KEY_SCOPE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Scope of the token request.
KEY_SEALED_FOR_OP - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Custom claim name for sealed claims embedded inside JWT.
KEY_SESSION_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Identifier for the session id.
KEY_SUBJECT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Subject of the user.
KEY_TYPE - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Type of the token.
KEY_USER_PRINCIPAL - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
User principal representing authenticated user.
keyTransportEncryptionAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Strategy to obtain list of supported key transport encryption algorithms.
keyTransportEncryptionAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
Strategy to obtain list of supported key transport encryption algorithms.
keyType - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Type of the token.
keyType - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Type of the token.

L

lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
Lifetime for the access token to be issued.
lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
Lifetime of the token.
lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
ID token lifetime.
lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
The lifetime for replay cache record.
lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
The lifetime for the sealed object.
lifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
The lifetime for the storage record.
limitInitialAccessTokenToSelfPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultEnforceSelfAudienceCondition
Whether the initial access token audience is solely to self (i.e.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl.AttributeOIDCScopePolicyRule
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.AuthenticationRequestClaimsAuditExtractor
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.ClientManagementArguments
Logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
Logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCAuthenticationRequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCLogoutRequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCUserInfoRequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
Class logger.
log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
Class logger.
log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
Class logger.
log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
Class logger.
log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
Class logger.
log - Static variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
Ckass logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.SetFrontChannelLogoutSuccess
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromIDTokenLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromUserInfoLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestAudienceLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestDPoPJktLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedAcrLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedClaimsLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedPromptLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestedScopeLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestLoginHintLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestMaxAgeLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestNonceLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestRedirectURILookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseModeLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestResponseTypeLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultRequestStateLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationRequestMetadataLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestRedirectURILookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
Class logger.
log - Static variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2AuthorizationRequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2IntrospectionRequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2PushedAuthorizationRequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2RevocationRequestDecoder
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutboundIntrospectionResponseMessage
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.OIDCOPModule
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestAudienceLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestCodeChallengeMethodLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedAcrLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedClaimsLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedPromptLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestedScopeLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestLoginHintLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestMaxAgeLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestNonceLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestRedirectURILookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseModeLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestResponseTypeLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultRequestStateLookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.LogoutRequestClientIDLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRPSessionClientIDLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRedirectURILookupFunction
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
Deprecated.
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAccessTokenHashToIDToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAcrToIDToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddApplicationTypeToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthTimeToIDToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddClientNameToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddContactsToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddLogoUrisToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddPolicyUrisToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTosUrisToClientMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundTokenResponseMessage
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeSubjectContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
Logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.VerifyRequestedSubjectIdentifier
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyCriteriaLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultMetadataPolicyMergingStrategy
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRootTokenIdentifierLookupStrategy
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Class logger.
log - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.FormOutboundUserInfoResponseMessage
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
Class logger.
log - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
Class logger.
loginHintLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Strategy used to obtain the request login hint value.
LOGOUT_PROP_FIELD - Static variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionSerializer
Field name of logout propagation indicator.
logoutContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Creation/lookup function for LogoutContext.
logoutContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
Strategy used to locate the subcontext with the token.
logoutHint - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
The logout hint.
logoutHintMatchingStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Lookup function for the RP-initiated logout's logout_hint parameter matching against SPSession.
logoutPropagationContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
The logout propagation context to operate on.
logoutPropagationContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
The lookup strategy for the logout propagation context.
LogoutRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns client id of the OIDC logout request.
LogoutRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.LogoutRequestClientIDLookupFunction
 
logoutToken - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
The back-channel logout token.
logoutTokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCBackChannelLogoutPropagationContext
The claims set related to the back-channel logout.
logPrefix - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
The String used to prefix log message.

M

manager - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
mandatoryScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Strategy used to obtain the mandatory scope value value.
ManipulateClaimsForIDToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that can be used for manipulating id_token claims via configurable strategy (bi-function).
ManipulateClaimsForIDToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
Constructor.
manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
The strategy used for manipulating the token claims set.
manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
The strategy used for manipulating the request URI claims set.
manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
The strategy used for manipulating the token claims set.
manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
The strategy used for manipulating the id_token.
manipulationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
The strategy used for manipulating the token claims set.
mappedErrors - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Map of eventIds to pre-configured error objects.
mappedErrors - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
Map of eventIds to status codes.
mappedIdTokenRequestedClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Mapped requested claims from the ID Token set.
mappedUserinfoRequestedClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Mapped requested claims from the Userinfo set.
matches(AttributeFilterContext) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl.AttributeOIDCScopePolicyRule
Compare the authentication request scopes with the provided string.
matchIfRequestedClaimsSilent - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Whether to return a match if the request contains no requested claims.
matchOnlyIDToken - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Whether to look for a match only in id token part.
matchOnlyUserInfo - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Whether to look for a match only in user info part.
maxAgeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Strategy used to obtain the request max_age value.
messageClass - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
The request message class to verify that the actual request is an instance of.
messageClass - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
Deprecated.
The request message class to verify that the actual request is an instance of.
messageContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
The MessageContext to operate on.
messageEncoder - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
The message encoder to be returned by this factory.
metadata - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
metadata to publish.
metadata - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Allowed metadata values to be issued with the token.
metadata - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Allowed metadata values to be issued with the token.
metadataKey - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
The metadata key whose value is used for matching.
metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
The resolved metadata policy.
metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
The metadata policy related to dynamic client registration.
metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
The metadata policy used for finding out remaining claims.
metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
The metadata policy used for validation.
metadataPolicy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
The metadata policy used for the enforcer function for validating the redirect URI.
metadataPolicyContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
The metadata policy context to operate on.
metadataPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
Function used for enforcing the metadata policy.
metadataPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
The metadata policy enforcer function used against the URI given as input.
metadataPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Lookup function for the metadata policy.
metadataPolicyMergingStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
The strategy used for merging profile and token based metadata policies.
MetadataPolicyRedirectUriValidator - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A custom bi-predicate for redirect URI validation exploiting metadata policy.
MetadataPolicyRedirectUriValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
 
metadataPolicyValidationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
The strategy used for validating token and merged metadata policies.
metadataPolicyValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
The metadata policy validator for verifying the given metadata policy.
metadataResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
The resolver for the metadata that is being distributed.
MetadataStatementsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns metadata_statements (oidcfed) obtained via a lookup function.
MetadataStatementsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
Constructor.
metadataValue - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
The metadata value to be matched.
MetadataValueEqualsCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A predicate for matching if the OIDC metadata value with a configurable key is equal to a configurable value.
MetadataValueEqualsCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
Constructor.
MetadataValueResolver - Interface in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
A resolver that is capable of resolving dynamic metadata values (as Objects) which meet certain supplied criteria.

N

NAMESPACE - Static variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl.AttributeFilterNamespaceHandler
oidc namespace.
nbt - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Not Before time of the claims set.
net.shibboleth.idp.plugin.oidc.op - package net.shibboleth.idp.plugin.oidc.op
Top level OIDC OP plugin classes.
net.shibboleth.idp.plugin.oidc.op.admin - package net.shibboleth.idp.plugin.oidc.op.admin
Classes related to OP administrative features.
net.shibboleth.idp.plugin.oidc.op.admin.impl - package net.shibboleth.idp.plugin.oidc.op.admin.impl
Classes implementing administrative functionality.
net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl
This is package for all OIDC matchers.
net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.policyrule.impl
Package for OIDC attribute filter policy rule implementations.
net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.impl
Package for OIDC attribute filter name handlers.
net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl
Package for OIDC attribute filter matcher parsers.
net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl - package net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl
Package for OIDC attribute filter policy rule parsers.
net.shibboleth.idp.plugin.oidc.op.audit - package net.shibboleth.idp.plugin.oidc.op.audit
Support classes for (OIDC-specific) auditing.
net.shibboleth.idp.plugin.oidc.op.audit.impl - package net.shibboleth.idp.plugin.oidc.op.audit.impl
Package for audit extractors related to OIDC.
net.shibboleth.idp.plugin.oidc.op.authn.audit.impl - package net.shibboleth.idp.plugin.oidc.op.authn.audit.impl
Package for audit extractors related to client authentication.
net.shibboleth.idp.plugin.oidc.op.authn.impl - package net.shibboleth.idp.plugin.oidc.op.authn.impl
Implementation classes supporting OIDC/OAuth client authentication.
net.shibboleth.idp.plugin.oidc.op.cli - package net.shibboleth.idp.plugin.oidc.op.cli
Classes related to the CLI tool for the registration access token issuance.
net.shibboleth.idp.plugin.oidc.op.criterion - package net.shibboleth.idp.plugin.oidc.op.criterion
Criteria related to OIDC entity resolution.
net.shibboleth.idp.plugin.oidc.op.decoding.impl - package net.shibboleth.idp.plugin.oidc.op.decoding.impl
Message decoders related to OIDC messaging.
net.shibboleth.idp.plugin.oidc.op.encoding.impl - package net.shibboleth.idp.plugin.oidc.op.encoding.impl
Message encoders related to OIDC messaging.
net.shibboleth.idp.plugin.oidc.op.logout.profile.impl - package net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
 
net.shibboleth.idp.plugin.oidc.op.messaging - package net.shibboleth.idp.plugin.oidc.op.messaging
OIDC messaging interfaces and classes.
net.shibboleth.idp.plugin.oidc.op.messaging.context - package net.shibboleth.idp.plugin.oidc.op.messaging.context
Contexts related to OIDC messaging.
net.shibboleth.idp.plugin.oidc.op.messaging.context.logic - package net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
Conditions related to OIDC messaging.
net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate - package net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
Lookup functions.
net.shibboleth.idp.plugin.oidc.op.messaging.impl - package net.shibboleth.idp.plugin.oidc.op.messaging.impl
OIDC message implementations.
net.shibboleth.idp.plugin.oidc.op.metadata.impl - package net.shibboleth.idp.plugin.oidc.op.metadata.impl
Implementation classes related to resolution of OIDC metadata (or client information).
net.shibboleth.idp.plugin.oidc.op.metadata.resolver - package net.shibboleth.idp.plugin.oidc.op.metadata.resolver
Interfaces and common classes related to resolution of OIDC metadata (or client information).
net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl - package net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
Message decoders related to OAuth2 messaging.
net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context - package net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context
Context classes supporting OAuth2 profiles.
net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl - package net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
OAuth2 message implementations.
net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl - package net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Profile action implementations related to OAuth2.
net.shibboleth.idp.plugin.oidc.op.profile - package net.shibboleth.idp.plugin.oidc.op.profile
Common utility classes related to OIDC profile actions.
net.shibboleth.idp.plugin.oidc.op.profile.context.navigate - package net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Lookup functions.
net.shibboleth.idp.plugin.oidc.op.profile.impl - package net.shibboleth.idp.plugin.oidc.op.profile.impl
Profile action implementations related to OIDC.
net.shibboleth.idp.plugin.oidc.op.profile.logic - package net.shibboleth.idp.plugin.oidc.op.profile.logic
Functions and predicates supporting common oidc profile behavior.
net.shibboleth.idp.plugin.oidc.op.profile.spring - package net.shibboleth.idp.plugin.oidc.op.profile.spring
Spring-related tools.
net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl - package net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl
Spring-aware tools for resolving OIDC entities.
net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl - package net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
Validation functions for JWT claims.
net.shibboleth.idp.plugin.oidc.op.session - package net.shibboleth.idp.plugin.oidc.op.session
Extensions related to the construction and management of sessions.
net.shibboleth.idp.plugin.oidc.op.session.impl - package net.shibboleth.idp.plugin.oidc.op.session.impl
Extensions related to the construction and management of sessions.
net.shibboleth.idp.plugin.oidc.op.storage - package net.shibboleth.idp.plugin.oidc.op.storage
Utilities exploiting storage services.
net.shibboleth.idp.plugin.oidc.op.token.support - package net.shibboleth.idp.plugin.oidc.op.token.support
Support classes for dealing with claims sets in authorization code, access/refresh tokens.
net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl - package net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
Classes supporting the implementation of the UserInfo endpoint.
NimbusResponseEncoder - Class in net.shibboleth.idp.plugin.oidc.op.encoding.impl
A message encodes that encodes the Nimbus Response in the message context inside the attached HttpServletResponse.
NimbusResponseEncoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Constructor.
nonce - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Nonce of the authentication request.
NONCE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
id_token nonce.
nonceGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
Lookup for the nonce generator used for generating nonces.
nonceGeneratorLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
Lookup for the nonce generator: if non-null value is returned, nonces are required.
nonceLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Nonce lifetime.

O

OAuth2AuthorizationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
Message decoder decoding OAuth2 AuthorizationRequests.
OAuth2AuthorizationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2AuthorizationRequestDecoder
 
OAuth2DPoPProofContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context
Subcontext carrying information for an OAuth2 DPoP Proof JWT.
OAuth2DPoPProofContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
 
OAuth2IntrospectionRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
Message decoder decoding OpenID Connect TokenIntrospectionRequests.
OAuth2IntrospectionRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2IntrospectionRequestDecoder
 
OAuth2PushedAuthorizationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
Message decoder decoding OAuth2 PushedAuthorizationRequests.
OAuth2PushedAuthorizationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2PushedAuthorizationRequestDecoder
 
OAuth2RevocationErrorResponse - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
OAuth2 Token Revocation Error message class.
OAuth2RevocationErrorResponse(ErrorObject) - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
Constructor.
OAuth2RevocationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl
Message decoder decoding OpenID Connect TokenRevocationRequests.
OAuth2RevocationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2RevocationRequestDecoder
 
OAuth2RevocationSuccessResponse - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
OAuth2 Token Revocation Success message class.
OAuth2RevocationSuccessResponse() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationSuccessResponse
 
OAuth2TokenMgmtResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context
Subcontext carrying information for an OAuth token management responses such as introspection or revocation.
OAuth2TokenMgmtResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2TokenMgmtResponseContext
 
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
JSON object mapper.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
Object mapper used for pretty-printing JSON in the request.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Object mapper used for pretty-printing JSON response.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
Object mapper used for pretty-printing logout token contents.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Object mapper used for pretty-printing JWT contents.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
Object mapper used for pretty-printing JWT contents.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Object mapper used for pretty-printing JWT contents.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
JSON object mapper.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
Object mapper used for pretty-printing JWT contents.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
JSON object mapper.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Object mapper used for pretty-printing JWT contents.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
Object mapper used for deserializing the claims set.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Object mapper used for serializing the claims set.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
Object mapper used for deserializing the claims set.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Object mapper used for serializing the claims set.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
JSON object mapper for encoding map into JSON.
objectMapper - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
JSON object mapper used for decoding JSON into Map.
objectName - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
The name of the JSON object, can be null to return only values of embedded resolvers.
OfflineAccessScopeCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A predicate returning true if validated scope contains 'offline_access' value.
OfflineAccessScopeCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.OfflineAccessScopeCondition
Constructor.
OIDCAuthenticationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
Message decoder decoding OpenID Connect AuthenticationRequests.
OIDCAuthenticationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCAuthenticationRequestDecoder
 
OIDCAuthenticationResponseConsentContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying user consent information in a form suitable for OIDC processing.
OIDCAuthenticationResponseConsentContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseConsentContext
Constructor.
OIDCAuthenticationResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying information to form authentication, token and userinfo responses for relying party.
OIDCAuthenticationResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Constructor.
OIDCAuthenticationResponseContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
OIDCAuthenticationResponseContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCAuthenticationResponseContextLookupFunction
 
OIDCAuthenticationResponseTokenClaimsContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying information to form token and userinfo responses for relying party.
OIDCAuthenticationResponseTokenClaimsContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
Constructor.
oidcBackChannelLogoutContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCBackChannelLogoutPropagationAction
OIDC back-channel logout context.
OIDCBackChannelLogoutPropagationContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying information about OIDC back-channel logout.
OIDCBackChannelLogoutPropagationContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCBackChannelLogoutPropagationContext
Constructor.
oidcBackChannelLogoutURILookupFunction - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
The lookup strategy for back-channel logout endpoint.
OIDCClientInfoCredentialValidator - Class in net.shibboleth.idp.plugin.oidc.op.authn.impl
A password validator that authenticates against OIDC client metadata (which may itself be emulated via SAML metadata).
OIDCClientInfoCredentialValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
Constructor.
OIDCClientRegistrationMetadataPolicyContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying information on the metadata policy related to the dynamic client registration.
OIDCClientRegistrationMetadataPolicyContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
Constructor.
OIDCClientRegistrationRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
Message decoder decoding OpenID Connect ClientRegistrationRequests.
OIDCClientRegistrationRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
 
OIDCClientRegistrationRequestMetadataLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns OIDCClientMetadata if such is available in the message from a MessageContext obtained via InOutOperationContext.getInboundMessageContext().
OIDCClientRegistrationRequestMetadataLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationRequestMetadataLookupFunction
 
OIDCClientRegistrationResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying information on OIDC client registration response.
OIDCClientRegistrationResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
 
OIDCClientRegistrationResponseMetadataLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns OIDCClientMetadata if such is available in the message from a OIDCClientRegistrationResponseContext.
OIDCClientRegistrationResponseMetadataLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
Constructor.
OIDCClientRegistrationTokenClaimsContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying information on the claims included in the initial access token used for accessing the dynamic client registration endpoint.
OIDCClientRegistrationTokenClaimsContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationTokenClaimsContext
 
oidcInputMetadataLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
Strategy used to locate the OIDCClientMetadata associated with the request (input).
oidcLogoutContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
OIDC logout propagation context.
oidcLogoutContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
The strategy used for creating OIDCLogoutPropagationContext.
OIDCLogoutPropagationContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying information about OIDC logout propagation (both front- and back-channel).
OIDCLogoutPropagationContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
Constructor.
OIDCLogoutRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
Message decoder decoding OpenID Connect LogoutRequests.
OIDCLogoutRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCLogoutRequestDecoder
 
oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
The attached OIDC metadata context.
oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
OIDC metadata context.
oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
OIDC Metadata context.
oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
OIDC Metadata context.
oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
OIDC Metadata context.
oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
OIDC Metadata context.
oidcMetadataContext - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoResponseAction
OIDC Metadata context.
oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
Strategy that will return OIDCMetadataContext.
oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
Strategy that will return OIDCMetadataContext.
oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
The strategy used for looking up OIDCMetadataContext.
oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
Strategy function to lookup OIDC metadata context .
oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Strategy that will return OIDCMetadataContext.
oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
Strategy function to lookup OIDC metadata context .
oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
The lookup strategy for OIDCMetadataContext.
oidcMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Lookup strategy for OIDC metadata context.
oidcMetadataCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
The OIDC metadata context used as a source for the SAML metadata context.
oidcMetadataCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
Strategy function to lookup the OIDCMetadataContext.
oidcMetadataCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Strategy function to lookup the OIDCMetadataContext.
OIDCMetadataLookupHandler - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Handler for inbound OIDC protocol messages that attempts to locate OIDC metadata for a rp, and attaches it with a OIDCMetadataContext as a child of a pre-existing instance of MessageContext.
OIDCMetadataLookupHandler() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
Constructor.
oidcMetadataLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
Strategy function to lookup OIDC metadata context .
OIDCOPModule - Class in net.shibboleth.idp.plugin.oidc.op
IdPModule implementation.
OIDCOPModule() - Constructor for class net.shibboleth.idp.plugin.oidc.op.OIDCOPModule
Constructor.
OIDCOPPlugin - Class in net.shibboleth.idp.plugin.oidc.op
Details about the OIDC OP plugin.
OIDCOPPlugin() - Constructor for class net.shibboleth.idp.plugin.oidc.op.OIDCOPPlugin
Constructor.
oidcOutputMetadataLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
Strategy used to locate the OIDCClientMetadata associated with the response (output).
OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A lookup function for fetching policy-enforced client metadata related to the dynamic client registration request.
OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction
Constructor.
OIDCRegistrationResponseContextLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
OIDCRegistrationResponseContextLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRegistrationResponseContextLookupFunction
 
oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractOAuthAuthorizationResponseAction
oidc response context.
oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCAuthenticationResponseAction
oidc response context.
oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCResponseAction
oidc response context.
oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCTokenResponseAction
oidc response context.
oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
oidcResponseContext - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AbstractOIDCUserInfoValidationResponseAction
oidc response context.
oidcResponseContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
Strategy that will return or create a OIDCClientRegistrationResponseContext.
oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
Strategy used to locate the OIDCClientRegistrationResponseContext associated with a given MessageContext.
oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
Strategy used to locate the OIDCClientRegistrationResponseContext associated with a given MessageContext.
oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Strategy used to locate the OIDCClientRegistrationResponseContext associated with a given request.
oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
Strategy used to locate the OIDCClientRegistrationResponseContext associated with a given MessageContext.
oidcResponseContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Lookup strategy for OIDC authentication response context.
oidcResponseCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
The OIDCClientRegistrationResponseContext to create the client ID to.
oidcResponseCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
The OIDCClientRegistrationResponseContext to create the client secret to.
OIDCResponseEncoderFactory - Class in net.shibboleth.idp.plugin.oidc.op.encoding.impl
A source of encoders that first verifies a message being an instance of Nimbus Response and then returns the attached MessageEncoder.
OIDCResponseEncoderFactory() - Constructor for class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
 
oidcRpInitatedLogoutCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
Strategy function to lookup the OIDCRpInitiatedLogoutContext.
OIDCRpInitiatedLogoutContext - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context
Subcontext carrying information about OIDC RP-initiated logout.
OIDCRpInitiatedLogoutContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
 
oidcRPSession - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
The OIDC RP session containing the data for logout propagation.
OIDCRPSession - Class in net.shibboleth.idp.plugin.oidc.op.session
A concrete SPSession implementation for OIDC relying parties.
OIDCRPSession(String, Instant, Instant, String, String, String, String, boolean) - Constructor for class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
Constructor.
OIDCRPSession.Builder - Class in net.shibboleth.idp.plugin.oidc.op.session
Builder class for building OIDCRPSession.
OIDCRPSessionClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A lookup function that fetches ClientID value from the OIDCRPSession found from the session stored in the LogoutPropagationContext.
OIDCRPSessionClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.OIDCRPSessionClientIDLookupFunction
 
OIDCRPSessionCreationStrategy - Class in net.shibboleth.idp.plugin.oidc.op.session.impl
A function to create a OIDCRPSession based on profile execution state.
OIDCRPSessionCreationStrategy(Duration) - Constructor for class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Constructor.
OIDCRPSessionSerializer - Class in net.shibboleth.idp.plugin.oidc.op.session.impl
A serializer for OIDCRPSession objects.
OIDCRPSessionSerializer(Duration) - Constructor for class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionSerializer
Constructor.
OIDCTokenRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
Message decoder decoding OpenID Connect TokenRequests.
OIDCTokenRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder
 
OIDCTokenRequestDecoder.RemoveScopeWhenCodeGrantHttpServletRequestWrapper - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
Custom servlet wrapper that ignores scope parameter with authorization_code grant.
OIDCUserInfoRequestDecoder - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
Message decoder decoding OpenID Connect UserInfoRequests.
OIDCUserInfoRequestDecoder() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCUserInfoRequestDecoder
 
onlyIfEssential - Variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Whether to drop non essential claims.
opaque - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
Opaque token value if JWT format is not used.
OpenIDConfigurationSuccessResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging.impl
OpenID Configuration success message class.
OpenIDConfigurationSuccessResponse(JSONObject) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.OpenIDConfigurationSuccessResponse
Constructor.
OpenIDConfigurationSuccessResponse(JSONObject, String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.OpenIDConfigurationSuccessResponse
Constructor.
OUTBOUND_MESSAGE_CLASS - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
The outbound (Nimbus) message class.
outputMetadata - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
The OIDCClientMetadata to populate metadata to.

P

PairwiseSubjectActivationCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Activation condition returning true if pairwise subject is requested.
PairwiseSubjectActivationCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.PairwiseSubjectActivationCondition
 
PAR_REQUEST_URI_DESERIALIZER - Enum constant in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
Refresh token deserializer.
PAR_REQUEST_URI_PREFIX - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AbstractPushedAuthorizationRequestComponent
The prefix value used with the request_uri values built via PAR.
PAR_REQUEST_URI_SERIALIZER - Enum constant in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
Refresh token serializer.
PAR_REQUEST_URI_STORAGE_PREFIX - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AbstractPushedAuthorizationRequestComponent
The prefix value used with the request_uri values buikt via PAR with storage service serializer.
parEndpointLogic - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
The flag to control whether to use the PAR-endpoint logic for the validation.
parse(byte[]) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
parse(byte[]) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
parse(JWT, DataSealer) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
Parses access token from sealed access token.
parse(HttpServletRequest) - Method in interface net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.CustomNimbusRequestParser
Parse the Nimbus request object from the given servlet request.
parse(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
Parses access token from string (JSON).
parse(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet
Parses authz code from string (JSON).
parse(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
Parses refresh token from string (JSON).
parse(String, DataSealer) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
Parses access token from sealed access token.
parse(String, DataSealer) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet
Parses authz code from sealed authorization code.
parse(String, DataSealer) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
Parses refresh token from sealed refresh token.
parseAccessToken(AccessToken) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
Attempt to parse token.
parseAccessToken(Token) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Attempt to parse token.
ParseAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
Action that parses an access token and initially populates the claims for later validation.
ParseAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
 
parseJwkCredential(Credential) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
Set the credential to be resolved as JSON.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCAuthenticationRequestDecoder
Parses the message into the exact type of the request message.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
Parses the message into the exact type of the request message.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCLogoutRequestDecoder
Parses the message into the exact type of the request message.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder
Parses the message into the exact type of the request message.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCUserInfoRequestDecoder
Parses the message into the exact type of the request message.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
Parses the message into the exact type of the request message.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2AuthorizationRequestDecoder
Parses the message into the exact type of the request message.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2IntrospectionRequestDecoder
Parses the message into the exact type of the request message.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2PushedAuthorizationRequestDecoder
Parses the message into the exact type of the request message.
parseMessage() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.OAuth2RevocationRequestDecoder
Parses the message into the exact type of the request message.
parseRefreshToken(ProfileRequestContext, Token) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Attempt to parse refresh token.
PayloadFromJWTAccessTokenLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
Extract the Payload from the JWT in AccessTokenContext.
PayloadFromJWTAccessTokenLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
Constructor.
PayloadFromProcessedTokenLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
Extract the Payload from the processed token in OIDCAuthenticationResponseContext.
PayloadFromProcessedTokenLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromProcessedTokenLookupFunction
 
PayloadFromUserInfoLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
Extract the Payload from the user info in OIDCAuthenticationResponseContext.
PayloadFromUserInfoLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromUserInfoLookupFunction
 
plainClaimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
The claims validator to be applied for validating the plain/unsigned request object.
plainPKCE - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Whether plain PKCE is allowed.
plainPKCE - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Whether plain PKCE is allowed.
policies - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
The policies used for validating client id.
policyId - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
The policy identifier.
policyId - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
Metadata policy identifier for the access token to be issued.
policyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Lookup function for the policy identifier.
policyIdPolicyName - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Name of access control policy governing policyId acceptance.
policyLocation - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
The policy location.
policyLocation - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
Metadata policy to embed in the token.
policyLocationLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Lookup function for the policy location.
policyLocationPolicyName - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Name of access control policy governing policyLocation acceptance.
populateAlgorithmsAgainstPolicy(List<String>, List<String>, AlgorithmPolicyConfiguration) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
Verifies the candidates against given policy (inclusion/exclusion) and adds the passed ones to the given list.
populateEntityDescriptor(EntityDescriptor, SPSSODescriptor, OIDCClientInformation) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Populates the corresponding elements at the given descriptors from the data from the given client information.
PopulateLogoutContext - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
This action creates OIDCLogoutPropagationContext and populates it with the front- and back-channel URIs if found from the RP metadata.
PopulateLogoutContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
Constructor.
PopulateOIDCMetadataContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
A message handler that attempts to locate OIDC client information from the SAML entity descriptor containing role descriptor of type SPSSODescriptor.
PopulateOIDCMetadataContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
Constructor.
PopulateRpInitiatedLogoutContext - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
Populates the OIDCRpInitiatedLogoutContext with the values found from the incoming logout request.
PopulateRpInitiatedLogoutContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
Constructor.
populateScriptedAttribute(ScriptedIdPAttribute, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Adds values from the given scope to the ScriptedIdPAttribute.
populateScriptedAttribute(ScriptedIdPAttribute, ScriptedIdPAttribute) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Adds values from the given ScriptedIdPAttribute to another ScriptedIdPAttribute.
populateSubject(ClientID, SignedJWT) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Builds a subject with "standard" content from the validation.
postLogoutRedirectionUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
The post front-channel logout redirection endpoint.
postLogoutRedirectUri - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
The post logout redirection endpoint.
postLogoutRedirectUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
The location for the post logout redirect URI.
pragma - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
Deprecated.
pragma value.
pragma - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
Deprecated.
pragma value.
preChecksForMandatoryKey(MetadataPolicy, String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
Verifies that the policy is not containing forbidden content.
PrepareBackChannelLogoutRequest - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
An action that constructs LogoutTokenClaimsSet and attaches it to the OIDCBackChannelLogoutPropagationContext.
PrepareBackChannelLogoutRequest() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
Constructor.
principal - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
The principal who issued the token.
principal - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
The principal who issued the token.
principal - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
User Principal of the authenticated user.
principalNameLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Lookup strategy for principal name.
processedIdTokenHint - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
The processed ID token hint.
ProcessedIdTokenHintUpdateStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Add the JWT back to the processed ID token hint in the OIDCRpInitiatedLogoutContext.
ProcessedIdTokenHintUpdateStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProcessedIdTokenHintUpdateStrategy
 
processedToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
The signed/encrypted id token / user info response formed.
ProcessedTokenUpdateStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Add the JWT back to the processed token in the OIDCAuthenticationResponseContext.
ProcessedTokenUpdateStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProcessedTokenUpdateStrategy
 
processHeaders(Map<String, List<String>>, HttpServletResponse) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Adds all the other given headers to the given HttpServletResponse except the location header, whose first value is returned by this method if any value exists.
ProcessRequestedAuthnContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that creates an RequestedPrincipalContext or PreferredPrincipalContext and attaches it to the current AuthenticationContext.
ProcessRequestedAuthnContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
Constructor.
ProcessRpInitiatedLogoutRequest - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
Profile action that processes LogoutRequest and OIDCRpInitiatedLogoutContext by resolving matching sessions and populating the associated SPSession objects into a LogoutContext.
ProcessRpInitiatedLogoutRequest() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Constructor.
ProcessTokenForIntrospection - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that processes a token for introspection.
ProcessTokenForIntrospection() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ProcessTokenForIntrospection
 
ProcessTokenForRevocation - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that processes a token for revocation.
ProcessTokenForRevocation() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ProcessTokenForRevocation
 
PROFILE_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
Profile ID.
profileMetadataPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
The strategy used to locate the request metadata policy configured for the profile.
ProfileResponderIdLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns responder id based on profile.
ProfileResponderIdLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
 
profileResponders - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
Mapping from profile id to responder value.
promptLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Strategy used to obtain the requested prompt value.
promptLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Strategy used to obtain the requested prompt value.
protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
Used to log protocol messages.
protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Used to log protocol messages.
protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
Used to log protocol messages.
protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Used to log protocol messages.
protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
Used to log protocol messages.
protocolMessageLog - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Used to log protocol messages.
ProviderMetadataResolver - Interface in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
A resolver that is capable of resolving OIDCProviderMetadata instances which meet certain supplied criteria.
ProviderMetadataResolverServiceStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl
Strategy for summoning up a ProviderMetadataResolver from a populated ApplicationContext.
ProviderMetadataResolverServiceStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.spring.relyingparty.metadata.impl.ProviderMetadataResolverServiceStrategy
 
proxiedRequesterContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Strategy used for locating/creating the proxy context.
PublicSubjectActivationCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Activation condition returning true if public subject is requested.
PublicSubjectActivationCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
Constructor.
PushedAuthorizationRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns client id of the PAR request.
PushedAuthorizationRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.PushedAuthorizationRequestClientIDLookupFunction
 
pushedAuthorizationRequestEnforcedPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Predicate for enforcing the use of pushed authorization requests.
pushedAuthorizationRequestUriDeserializers - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
List of deserializers for OP-issued request_uri values.

R

recipientLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Strategy used to locate the identity of the recipient associated with the attribute resolution.
redirect - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Validated redirect URI of the authentication request.
redirectURI - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
validated redirect uri.
redirectURILookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Strategy used to obtain the redirect uri value in request.
redirectURIValidationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
Strategy used to validate the post logout redirect URIs.
refresh() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableMetadataValueResolver
Refresh the data exposed by the resolver.
refresh() - Method in interface net.shibboleth.idp.plugin.oidc.op.metadata.resolver.RefreshableProviderMetadataResolver
Refresh the data exposed by the resolver.
refresh() - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
Refresh the data exposed by the resolver.
REFRESH_TOKEN_DESERIALIZER - Enum constant in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
Refresh token deserializer.
REFRESH_TOKEN_SERIALIZER - Enum constant in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
Refresh token serializer.
RefreshableMetadataValueResolver - Interface in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
A resolver that is capable of resolving dynamic metadata values (as Objects) which meet certain supplied criteria.
RefreshableProviderMetadataResolver - Interface in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
Specialization of ProviderMetadataResolver that supports on-demand refresh.
refreshToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Refresh token.
refreshTokenChainLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Refresh Token chain lifetime.
refreshTokenChainLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Refresh Token lifetime.
refreshTokenChainLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Strategy used to obtain the refresh token chain lifetime.
refreshTokenChainLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Strategy used to obtain the refresh token lifetime.
RefreshTokenClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
Class wrapping claims set for refresh token.
RefreshTokenClaimsSet(JWTClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
Private constructor for the parser.
RefreshTokenClaimsSet.Builder - Class in net.shibboleth.idp.plugin.oidc.op.token.support
Builder to create instance of RefreshTokenClaimsSet.
refreshTokenDeserializers - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
List of deserializer bi-functions for refresh tokens to be used in addition to unsealing opaque value.
refreshTokenDeserializers - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
List of deserializer bi-functions for refresh tokens to be used in addition to unsealing opaque value.
refreshTokensEnabledPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Predicate used to indicate whether refresh tokens are enabled.
refreshTokenSerializationStrategies - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
The strategies used for serializing refresh token claims set, key referring to the refresh token type.
refreshTokensPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Predicate used to indicate whether refresh tokens are enabled.
refreshTokenTimeout - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Refresh Token timeout.
refreshTokenTimeoutLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Strategy used to obtain the refresh token timeout.
refreshTokenType - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Refresh Token type.
refreshTokenTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Strategy used to obtain the refresh token type to issue.
regAccessToken - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Optional registration access token.
regClientUri - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Optional location of the client configuration endpoint.
registeredRedirectURIsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Strategy used to obtain registered redirect uris to compare if request had no redirect uri value.
REGISTRATION_ACCESS_TOKEN - Static variable in class net.shibboleth.idp.plugin.oidc.op.storage.RevocationCacheContexts
ID of context for revoking access tokens issued for the dynamic client registration.
registrationClaimsContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Strategy to create or return a OIDCClientRegistrationTokenClaimsContext.
RegistrationClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
Class wrapping claims for the initial registration access token.
RegistrationClaimsSet() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Constructor.
RegistrationClaimsSet.Builder - Class in net.shibboleth.idp.plugin.oidc.op.token.support
The builder for RegistrationClaimsSet.
registrationMetadataPolicyContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
The metadata policy context to operate on.
registrationMetadataPolicyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction
registrationMetadataPolicyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
registrationMetadataPolicyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
registrationPolicyContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
The strategy used to create or locate the metadata policy context.
registrationTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Strategy used to locate the OIDCClientRegistrationTokenClaimsContext associated with the request.
registrationTokenContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
Strategy used to locate the OIDCClientRegistrationTokenClaimsContext associated with the request.
registrationTokenCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
The OIDCClientRegistrationTokenClaimsContext from which to optionally obtain client ID.
registrationTokenCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
The OIDCClientRegistrationTokenClaimsContext from which to optionally obtain client ID.
registrationValidityPeriodStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
Strategy to obtain registration validity period policy.
relyingPartyContext - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
The relying party context to operate on.
relyingPartyContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Strategy that will return or create a RelyingPartyContext.
relyingPartyContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
Strategy that will return or create a RelyingPartyContext.
relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
Strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
Strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
Strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
Strategy used to look up a RelyingPartyContext for configuration options.
relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Strategy that will return a RelyingPartyContext.
relyingPartyContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
Strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
relyingPartyCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
The relying party context used for storing the SAML metadata context.
relyingPartyCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
relyingPartyId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Relying party identifier.
relyingPartyId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Relying party identifier.
relyingPartyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Strategy used to obtain the relying party ID.
relyingPartyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Strategy used to obtain the relying party ID.
relyingPartyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Strategy used to obtain the relying party ID.
relyingPartyIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
Strategy used to obtain the relying party ID.
removeIpAddressFromEndpointUri - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
A flag to remove the IP address from the endpoint URI.
RemoveScopeWhenCodeGrantHttpServletRequestWrapper(HttpServletRequest) - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCTokenRequestDecoder.RemoveScopeWhenCodeGrantHttpServletRequestWrapper
Constructor.
removeValue(Scope, String) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Removes a single value from the given Scope.
replacement - Variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
Flag to signal one-time use of the token.
replacement - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Flag to signal replacement use of the token.
replacement - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Flag to signal replacement is allowed.
replacementLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Lookup function for the flag signaling replacement use of the token.
replayCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Message replay cache instance to use.
replayCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
Message replay cache instance to use.
reqClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Claims request of the authentication request.
reqScope - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Scope of the token request.
request - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
Message to extract credentials from.
request - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCRequestAction
OIDC request.
request - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
The OIDCClientRegistrationRequest to check redirect URIs from.
request - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
The OIDCClientRegistrationRequest to validate.
requestedAudienceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Strategy used to obtain the requested audience.
requestedClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Requested claims.
requestedClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
Strategy used to obtain the requested claims of request.
requestedClientId - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
The request client ID.
RequestedGrantTypesCondition - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
Checks whether a TokenRequest was for one of a set of candidate grant_type values.
RequestedGrantTypesCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.RequestedGrantTypesCondition
Constructor.
requestedIdTokenHint - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
The requested ID token hint.
requestedRedirectURI - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
The redirect URI to be validated.
requestedResponseModeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
Lookup strategy for fetching the requested response mode.
requestedResponseModeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Lookup strategy for fetching the requested response mode.
requestedResponseModeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Lookup strategy for fetching the requested response mode.
requestedResponseTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Lookup strategy for fetching the requested response type.
requestedResponseTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Lookup strategy for fetching the requested response type.
requestedResponseTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Lookup strategy for fetching the requested response type.
requestedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Strategy used to obtain the requested scope value.
requestedStateLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Lookup strategy for fetching the requested state.
requestedStateLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Lookup strategy for fetching the requested state.
requestedSubject - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Requested sub value.
requestLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IsPassiveAuditExtractor
Lookup strategy for message to read from.
requestLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.RevokedTokenAuditExtractor
Lookup strategy for message to read from.
requestMessage - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
The request message to operate on.
requestNonceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Strategy used to obtain the request nonce.
requestNonceLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
Strategy used to obtain the request nonce.
requestObject - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
The request object.
requestObject - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
Request Object.
requestObject - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AbstractAuthorizationRequestLookupFunction
Deprecated.
Request.
requestObjectEnforcedPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Predicate for enforcing the use of request objects.
requestObjectFailure - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Whether request object validation has failed.
requestObjectFromPar - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Whether request object has been provided from the PAR endooint.
RequestObjectUpdateStrategy - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Add the JWT back to the request object in the OIDCAuthenticationResponseContext.
RequestObjectUpdateStrategy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.RequestObjectUpdateStrategy
 
requestUriClaimsSetManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
Lookup function to supply strategy bi-function for manipulating request URI claims set.
requestUriClaimsSetSerializationStrategies - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
The strategies used for serializing request URI claims set, key referring to the refresh token type.
requestUriLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
The request URI lifetime to use.
requestUriLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
Strategy used to obtain the request URI lifetime.
requestUriType - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
The request URI type to use.
requestUriTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
Strategy used to obtain the request URI type to issue.
RequestUtil - Class in net.shibboleth.idp.plugin.oidc.op.decoding.impl
Request logging helper class.
RequestUtil() - Constructor for class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
Private constructor.
requireAuthenticationRequest - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
Predicate used to indicate if the incoming message is required to be an OIDC authentication request.
requiredJwtTypeHeaderLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Strategy used to fetch required JWT type header value.
requireDpopJktCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
Strategy used to determine whether to require dpop_jkt parameter.
requireDpopProofCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
Predicate for enforcing the use of DPoP proofs.
requireJkt - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
Whether dpop_jkt parameter is mandatory.
requirePushedAuthorization - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Whether to require pushed authorization request to be used.
requireRequestedValue - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Whether to require redirect uri value in the request also when only single value is registered.
reservedClaimNames - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
List of claim names that will not be added.
resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
Returns all the resolved objects.
resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
resolve(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
resolveEncryptionAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
Whether to resolve data and key transport encryption algorithms.
resolveKeyTransportEncAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
Whether to resolve key transport encryption algorithms.
resolver - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
resolver - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
The embedded resolver.
resolverFunction - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
The function used for resolving the value.
resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemMetadataValueResolver
Returns a single resolved object.
resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
resolveSingle(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
response - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
The response message.
responseClaimsSetLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Strategy used to locate the response ClaimsSet associated with a given ProfileRequestContext.
responseClaimsSetLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
Strategy used to locate the response ClaimsSet associated with a given ProfileRequestContext.
ResponseContextAuthorizationCodeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns raw authorization code value from the OIDCAuthenticationResponseContext.
ResponseContextAuthorizationCodeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ResponseContextAuthorizationCodeLookupFunction
 
ResponseUtil - Class in net.shibboleth.idp.plugin.oidc.op.encoding.impl
Response logging helper class.
ResponseUtil() - Constructor for class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Private constructor.
revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
Token revocation cache instance to use.
revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Message revocation cache instance to use.
revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Message revocation cache instance to use.
revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Message revocation cache instance to use.
revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Message revocation cache instance to use.
revocationCache - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
Message revocation cache instance to use.
RevocationCacheContexts - Class in net.shibboleth.idp.plugin.oidc.op.storage
Revocation cache contexts shared across actions.
RevocationCacheContexts() - Constructor for class net.shibboleth.idp.plugin.oidc.op.storage.RevocationCacheContexts
Private constructor.
revocationError - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
A flag indicating if an error has occured during revocation of tokens related to the session.
revocationLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
Revocation lifetime to use.
revocationLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Revocation lifetime to use.
revocationMethod - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Revocation method used when revoking a token.
revocationMethodLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Which revocation method should be used when revoking a token.
revokeChain(String, Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Revokes the token chain with the given id, optionally with a given lifetime.
RevokeConsent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that revokes consent if the configurable predicate returns true.
RevokeConsent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
 
REVOKED_TOKEN - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
Revoked Token.
RevokedTokenAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
Function that returns token to be revoked by TokenRevocationRequest.
RevokedTokenAuditExtractor(Function<ProfileRequestContext, TokenRevocationRequest>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.RevokedTokenAuditExtractor
Constructor.
revokePredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
Predicate used to decide if pre-existing consent is to be revoked.
RevokeToken - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that revokes a single token or the full chain of tokens, depending on the result of the configured lookup strategy for the revocation method.
RevokeToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Constructor.
RevokeTokenChain - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
An action that revokes the token chain related to the logout propagation.
RevokeTokenChain() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
Constructor.
revokeWithConsentPromptPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Predicate used to determine if consent should be revoked with consent prompt.
revokeWithOfflineAccessScopePredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Predicate used to determine if consent should be revoked with offline_access scope.
rootTokenId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Root token identifier.
rootTokenIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
Root token identifier to be revoked.
rootTokenIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
The root token identifier.
rootTokenIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
The root token identifier.
rootTokenIdentifier(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Set the root token identifier.
rootTokenIdentifierLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Lookup function to supply root token identifier.
RootTokenIdRevocationValidator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
Verifies the root identifier (TokenClaimsSet.KEY_ROOT_JTI from the JWT against revocation via configurable RevocationCache.
RootTokenIdRevocationValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
 
rpCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
The RelyingPartyContext to operate on.
rpCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
The RelyingPartyContext to operate on.
rpCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
The RelyingPartyContext to operate on.
rpId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Client Id of the rp.
rpInitiatedLogoutContext - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
RP-initiated OIDC logout context.
RpInitiatedLogoutResponse - Class in net.shibboleth.idp.plugin.oidc.op.messaging.impl
A Nimbus Response implementation representing a post front-channel logout redirection message that is sent to the RP's post front-channel logout URI endpoint.
RpInitiatedLogoutResponse(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
Constructor.
RpInitiatedLogoutResponse(String, String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
Constructor.

S

samlMetadataContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
Set the strategy used to look up the SAMLMetadataContext to draw from.
samlMetadataCtxLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Strategy used to locate the SAMLMetadataContext associated with a given ProfileRequestContext.
saveTokenToCredentialSet - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Whether to save the JWT in the Java Subject's public credentials.
SCHEMA_TYPE_AFP - Static variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.matcher.impl.AttributeInOIDCRequestedClaimsRuleParser
Schema type - afp.
SCHEMA_TYPE_AFP - Static variable in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.spring.policyrule.impl.AttributeOIDCScopeRuleParser
Schema type.
SCOPE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
Token scope.
scopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Strategy used to obtain the validated scope value.
ScopeUtil - Class in net.shibboleth.idp.plugin.oidc.op.profile
Static helper methods for handling Scope objects, especially with IdP attributes.
ScopeUtil() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Private constructor.
sealClaims(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Rewrites a plaintext claimsset to hide custom claims used solely by the OP.
secretExpirationPeriodStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
Strategy to obtain client secret validity period policy.
SectorIdentifierLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns sector identifier obtained via a lookup function.
SectorIdentifierLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
Constructor.
sectorIdentifierLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
Strategy used to obtain sector identifier.
securityParametersContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Strategy used to look up the SecurityParametersContext to set the parameters for.
securityParametersContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
Strategy used to look up the SecurityParametersContext.
securityParametersLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Strategy used to locate the SecurityParametersContext to use for verification.
securityParametersLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
Strategy used to locate the SecurityParametersContext to use for calculating the code hash.
securityParametersLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
Strategy used to locate the SecurityParametersContext to use for signing.
selfAudienceCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Whether the request includes the OP as an audience.
sendError(int, String, String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
Output an error object.
serialize() - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Serialize the token as JSON String.
serialize(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Serialize the token as JSON String wrapped with sealer.
serializeMessageForLogging(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
serializeMessageForLogging(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
serializeParameters(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
URL-encode the iss and sid -parameters to the given prefix if parameter values have been set.
serializeParameters(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
URL-encode the iss and sid -parameters to the given prefix if parameter values have been set.
serialVersionUID - Static variable in exception net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceJWTValidationException
Serial version UID.
ServiceableProviderMetadataProvider - Class in net.shibboleth.idp.plugin.oidc.op.metadata.resolver
A serviceable implementation of ProviderMetadataResolver.
ServiceableProviderMetadataProvider() - Constructor for class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
Constructor.
serviceId - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
The unique identifier of the service.
serviceId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Set the unique identifier of the service.
sessionContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Creation/lookup function for SessionContext.
sessionId - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Session identifier.
sessionId - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
The optional sessionId (sid-parameter) value.
sessionId - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Session identifier.
sessionIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
The session identifier.
sessionIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
The session identifier.
sessionIdentifier(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Set the session identifier.
sessionIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
Strategy used to obtain the session identifier.
sessionLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Lifetime of sessions to create.
sessionMatches(ProfileRequestContext, IdPSession) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Check if the session contains a OIDCRPSession with the appropriate service ID and SessionIndex.
sessionMatches(ProfileRequestContext, SPSession) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Check if the OIDCRPSession has the appropriate service ID and SessionIndex.
sessionResolver - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Session resolver.
sessionResolverCriteriaStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Function to return CriteriaSet to give to session resolver.
setAccessControlService(AccessControlService) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set the AccessControlService to use.
setAccessToken(AccessToken) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set access token.
setAccessToken(String, Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set access token.
setAccessToken(String, Duration, Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set access token.
setAccessTokenClaimsSet(ClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the access token claims set (used when prepping OAuth-only access tokens).
setAccessTokenContextCreationStrategy(Function<MessageContext, AccessTokenContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromJWTAccessTokenLookupFunction
Set the strategy used to lookup the AccessTokenContext to use.
setAccessTokenContextCreationStrategy(Function<MessageContext, AccessTokenContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.PayloadFromJWTAccessTokenLookupFunction
Set the strategy used to lookup the AccessTokenContext to use.
setAccessTokenContextCreationStrategy(Function<ProfileRequestContext, AccessTokenContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the strategy used to create the AccessTokenContext to use.
setAccessTokenContextLookupStrategy(Function<ProfileRequestContext, AccessTokenContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
Set the strategy used to lookup the AccessTokenContext to use.
setAccessTokenLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the strategy used to obtain the access token lifetime.
SetAccessTokenToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that creates a Access Token, and sets it to work context OIDCAuthenticationResponseContext.getAccessToken() located under InOutOperationContext.getOutboundMessageContext().
SetAccessTokenToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
Constructor.
setAccessTokenTypeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the strategy used to obtain the access token type.
setAcr(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set acr for response.
setACR(ACR) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set authentication context class reference value of the authentication.
setAcrAlwaysEssentialLookupStrategy(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
Set the strategy used to obtain whether all arc claims requests should be treated as Essential.
setAcrLookupStrategy(Function<ProfileRequestContext, List<ACR>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
Set the strategy used to locate the requested acr values.
setAlgorithmCandidates(Collection<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
Set algorithm candidates to be verified against the security configuration.
setAllowedAudienceLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Set the strategy used to locate the allowed audience for the client.
setAllowedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Set the strategy used to locate the allowed scope for the client.
setAllowPKCEPlainCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Set the condition used to determine whether to allow plaintext PKCE.
setAllowPKCEPlainCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Set the condition used to determine whether to allow plaintext PKCE.
setAllowSignatureNone(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Set whether signature algorithm none is allowed regardless of what list of Signature Validation Algs has.
setAlwaysIncludedAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Set the strategy used to obtain the set of attribute IDs always included in ID tokens.
setAlwaysIncludedAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Set the strategy used to obtain the set of attribute IDs always included in ID tokens.
setAlwaysIssueBearerAccessTokenCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the condition used to determine whether to always issue bearer access token.
setAlwaysIssueBearerAccessTokenCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
Set the condition used to determine whether to always issue bearer access token.
setApplicationContext(ApplicationContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
 
setAttributeContextLookupStrategy(Function<ProfileRequestContext, AttributeContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Set the strategy used to locate the AttributeContext associated with a given ProfileRequestContext.
setAttributeContextLookupStrategy(Function<ProfileRequestContext, AttributeContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
Set the strategy used to locate the AttributeContext associated with a given ProfileRequestContext.
setAttributeContextLookupStrategy(Function<ProfileRequestContext, AttributeContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Set the strategy used to locate the AttributeContext associated with a given ProfileRequestContext.
setAttributeContextLookupStrategy(Function<ProfileRequestContext, AttributeContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
Set the strategy used to locate the AttributeContext associated with a given ProfileRequestContext.
setAttributeId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Set the ID of an IdPAttribute to resolve to obtain revocation records for the principal.
setAttributeResolver(ReloadableService<AttributeResolver>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Set AttributeResolver to use.
setAttributeValues(IdPAttribute, Scope) - Static method in class net.shibboleth.idp.plugin.oidc.op.profile.ScopeUtil
Sets the contents for IdPAttribute from the given scope.
setAudience(Collection<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set audience.
setAudienceLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Set the audience lookup strategy.
setAudienceRestrictionsLookupStrategy(Function<ProfileRequestContext, Collection<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
Set the strategy used to obtain the audience restrictions to apply.
setAuthContext(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the authentication context class reference value of the performed authentication.
SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that sets authentication context class reference to work context OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceFromAuthzCodeToResponseContext
 
SetAuthenticationContextClassReferenceToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that sets authentication context class reference to work context OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
SetAuthenticationContextClassReferenceToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
 
setAuthenticationTime(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set authentication time.
SetAuthenticationTimeToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that sets authentication instant to work context OIDCAuthenticationResponseContext located under InOutOperationContext.getOutboundMessageContext().
SetAuthenticationTimeToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
Constructor.
setAuthorizationCode(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set authorization code.
setAuthorizationCodeFlowEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Set predicate used to indicate whether authorization code flow is enabled.
setAuthorizationCodeFlowEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Set predicate used to indicate whether authorization code flow is enabled.
setAuthorizationCodeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
Set the strategy used to locate the authorization code value.
SetAuthorizationCodeToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that creates a Authorization Code, and sets it to work context OIDCAuthenticationResponseContext.getAuthorizationCode() located under InOutOperationContext.getOutboundMessageContext().
SetAuthorizationCodeToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Constructor.
setAuthorizationGrantClaimsSet(TokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the claims representing the authorization grant, which may be derived from an authorization code, refresh token, or assertion.
setAuthorizationRequestTypeValidationStrategy(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
Set the strategy used to validate the inbound message (AuthorizationRequest) type.
setAuthTime(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set authentication time of the end user.
setAuthTime(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the authentication time of the performed authentication.
setAuthTimeLookupStrategy(Function<ProfileRequestContext, Instant>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationTimeToResponseContext
Set the strategy used to locate the authentication time.
setAuthzCodeLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the strategy used to obtain the authz code lifetime.
setAutoCreate(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.AccessTokenClaimsSetLookupFunction
Sets whether to create the ClaimsSet if absent.
setBackChannelLogoutUri(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
Set the location for the OIDC back-channel logout endpoint.
setChainExpiresAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet.Builder
Set the chain expiration time.
setChainRevocationLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
Set a lookup strategy for the chain revocation lifetime.
setChainRevocationLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Set a lookup strategy for the chain revocation lifetime.
setChainRevocationLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Set a lookup strategy for the chain revocation lifetime.
setClaimsRequest(OIDCClaimsRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set claims request of the authentication request.
setClaimsSet(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Set the token claims set.
setClaimsSet(RegistrationClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationTokenClaimsContext
Set the claims set in the initial access token.
setClaimsValidator(ClaimsValidator) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
Set the claims validator used for validating the ID token hint.
setClaimsValidator(ClaimsValidator) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Set the claims validator lookup strategy.
setClaimsValidatorLookupStrategy(Function<ProfileRequestContext, ClaimsValidator>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Set the strategy used to locate ClaimsValidator used.
setClaimsValidatorLookupStrategy(Function<ProfileRequestContext, ClaimsValidator>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Set the claims validator lookup strategy.
setClaimsValidatorLookupStrategy(Function<ProfileRequestContext, ClaimsValidator>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
Set the lookup strategy for the claims validator used for validating the DPoP proof.
setClaimsValidatorLookupStrategy(Function<ProfileRequestContext, ClaimsValidator>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
Set the claims validator lookup strategy.
setClassRefLookupStrategy(Function<ProfileRequestContext, AuthenticationContextClassReferencePrincipal>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetAuthenticationContextClassReferenceToResponseContext
Set the strategy function to use to obtain the authentication context class reference to use.
setClientAuthMethodsLookupStrategy(Function<ProfileRequestContext, Set<ClientAuthenticationMethod>>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ExtractClientAuthenticationFromRequest
Set the lookup strategy for enabled client authentication methods.
setClientId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Set the client identifier.
setClientId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the client identifier.
setClientID(ClientID) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set client ID.
setClientIdIssuedAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Set the time at which the client identifier was issued.
setClientIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set a lookup strategy for the client identifier.
setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
Set the strategy used to locate the client id of the request.
setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
Set the strategy used to locate the client id of the request.
setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
Set the strategy used to locate the client id value used in endpoint authentication.
setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Set the strategy used to locate the client id of the request.
setClientIDLookupStrategy(Function<MessageContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
Set the strategy used to locate the client id of the request.
setClientIDLookupStrategy(Function<ProfileRequestContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the strategy used to locate the original ClientID from the request.
setClientIDLookupStrategy(Function<ProfileRequestContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Set the lookup strategy used to obtain the client id value.
setClientIdPolicyName(String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set an explicit policy name to apply governing clientId usage.
setClientInformationManager(ClientInformationManager) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
Set the ClientInformationManager to use for deletion.
setClientInformationManager(ClientInformationManager) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
Set the client information manager used for storing the information.
setClientInformationResolver(ClientInformationResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.DoClientManagementOperation
Set the ClientInformationResolver to use for retrieval.
setClientInformationResolver(ClientInformationResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.OIDCMetadataLookupHandler
setClientMetadata(OIDCClientMetadata) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Set the metadata for the client: the attributes supported by the OP must be included.
setClientSecret(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Set the client secret.
setClientSecretExpiresAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Set the time at which the client secret will expire.
setClockSkew(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultChainRevocationLifetimeLookupStrategy
Set the clock skew.
setClockSkew(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultTokenRevocationLifetimeLookupStrategy
Set the clock skew.
setClockSkew(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.ChainExpiryClaimsValidator
Set the clock skew.
setCodeChallenge(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set code challenge.
setCodeChallengeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the strategy used to locate the Code Challenge of the request.
setCodeChallengeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Set the strategy used to locate the Code Challenge of the request.
setCodeChallengeMethodLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the strategy used to locate the Code Challenge Method of the request.
setCodeChallengeMethodLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Set the strategy used to locate the Code Challenge Method of the request.
setCodeHashCalculationStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAuthorizationCodeHashToIDToken
Set the strategy used for calculating the authorization code hash value.
setCodeVerifierLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Set the strategy used to locate the Code Verifier value.
setConsentedAttributesLookupStrategy(Function<ProfileRequestContext, List<Object>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentFromTokenToResponseContext
Set the strategy used to locate the consented attributes.
setConsentedClaims(List<Object>) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set consented claims.
setConsentEnabled(Boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set whether consent has been enabled.
setConsentEnabledPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the predicate used to check if consent is enabled with a given ProfileRequestContext.
setConsentEnabledPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the predicate used to check if consent is enabled with a given ProfileRequestContext.
setConsentEnabledPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
Set the predicate used to check if consent is enable.
SetConsentFromTokenToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that locates consent from authorization code / access token.
SetConsentFromTokenToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentFromTokenToResponseContext
Constructor.
SetConsentToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that checks for adds the currently existing attributes from AttributeContext for token delivery.
SetConsentToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
Constructor.
setContext(String) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
Set the revocation cache context that partitions entries.
setContextType(Class<? extends BaseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractInitializeOutboundResponseMessageContext
Deprecated.
Set the type of subcontext to create.
setContextType(Class<? extends BaseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundResponseMessageContext
Set the type of subcontext to create.
setCredentialResolver(CredentialResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Set the source of signing keys to use for JWT signature verification.
setCredentialResolver(CredentialResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Set the source of signing keys to use for JWT signature verification.
setCredentialResolver(CredentialResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
Set the source of signing keys to use for JWT signature verification.
setCSPDigester(StringDigester) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Sets a StringDigester to use in computing CSP digests in views.
setCSPNonceGenerator(IdentifierGenerationStrategy) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Sets an IdentifierGenerationStrategy to use in computing CSP nonces in views.
setCustomClaims(JSONObject) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Sets a batch of custom claim from a JSONObject.
setCustomRedirectUriValidationStrategyLookupStrategy(Function<ProfileRequestContext, BiPredicate<URI, ProfileRequestContext>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Set the strategy to obtain custom redirect URI validation strategy.
setCustomRequestParser(CustomNimbusRequestParser<T>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
Set the custom extension for parsing Nimbus object out of the servlet request.
setDataEncryptionAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Set the strategy used to obtain list of supported signature algorithms.
setDataEncryptionAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
Set the strategy used to obtain list of supported signature algorithms.
setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Set the data sealer instance to use.
setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set DataSealer to use for opaque tokens.
setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the data sealer instance to use.
setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Set the data sealer instance to use.
setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Set the data sealer instance to use.
setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
Set the data sealer instance to use.
setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Set the data sealer instance to use.
setDataSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
Set the data sealer instance to use.
setDefaultAudience(Collection<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoAudienceLookupFunction
Set default audience to return in the absence of client metadata.
setDefaultCode(int) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
Set the status code for unmapped events.
setDefaultCode(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Set the code for unmapped events.
setDefaultLanguage(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Set the default language when it has not been defined in the metadata.
setDefaultResponder(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
Set default responder value, usually entity id.
setDefaultScope(Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
Set the default Scope to return in the absence of client metadata.
setDefaultScope(Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddScopeToClientMetadata
Set the default Scope to be used if it was not defined in the request.
setDefaultScope(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ClientInfoScopeLookupFunction
Set the default Scope to return in the absence of client metadata.
setDefaultStatusCode(int) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Set the status code for unmapped events.
setDefaultSubjectType(SubjectType) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSubjectTypeToClientMetadata
Set the default SubjectType to be used if it was not defined in the request.
setDefaultTokenLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set the default token lifetime.
setDefaultValue(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
Set the value used for matching if metadata value was null.
setDeliveryClaimsLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
Set the strategy used to locate the delivery claims.
setDeniedUserInfoAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Set the strategy used to obtain the set of attribute IDs to omit from UserInfo tokens.
setDeniedUserInfoAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Set the strategy used to obtain the set of attribute IDs to omit from UserInfo tokens.
setDlClaims(ClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set token delivery claims delivered both for id token and userinfo response.
setDlClaimsID(ClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set token delivery claims delivered for id token.
setDlClaimsUI(ClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set token delivery claims delivered for userinfo response.
setDpopAccessTokenCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
Set the predicate for deciding to refer to DPoP in error responses.
setDpopJktLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
Set the strategy used to locate the dpop_jkt value.
setDpopProof(SignedJWT) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
Set the DPoP proof JWT.
setDpopProofJwkThumbprint(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the DPoP Proof JWK thumbprint.
setDpopProofJwkThumbprint(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set DPoP Proof JWK thumbprint.
setDpopProofNonceGeneratorLookupStrategy(Function<ProfileRequestContext, Function<ProfileRequestContext, String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
Set the lookup strategy for the nonce generator to create nonces to be used in DPoP proof.
setDpopProofNonceGeneratorLookupStrategy(Function<ProfileRequestContext, Function<ProfileRequestContext, String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
Set the lookup strategy for the nonce generator: if non-null value is returned, nonces are required.
setDpopProofThumbprintLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
Set the strategy used to locate the thumbprint of validated DPoP Proof JWT.
setDpopProofThumbprintLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Set the strategy used to locate the thumbprint of validated DPoP Proof JWT.
setDpopProofThumbprintLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
Set the strategy used to locate the thumbprint of validated DPoP Proof JWT.
setDynamicValueResolvers(Map<String, ? extends MetadataValueResolver>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.DynamicFilesystemProviderMetadataResolver
Set dynamic metadata value resolvers.
setEmbeddedResolver(ProviderMetadataResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
Set the ProviderMetadataResolver to embed.
setEmbeddedResolvers(List<MetadataValueResolver>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
Set the list of resolvers whose value is added to the result of this resolver.
setEncodeConsentPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetConsentToResponseContext
Set the predicate used to check if consent should be encoded.
setEncodedAttributesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Set the strategy used to obtain the set of attribute IDs to encode for back-channel recovery.
setEnforceRefreshTokenRotationCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set the condition used to determine whether to revoke refresh tokens once they're used.
setEnforceSelfAudienceCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Set whether to enforce solely the OP as audience.
setEntityContextClass(Class<? extends AbstractSAMLEntityContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
Set the class type holding the SAML entity data.
SetEntityIdToSAMLPeerEntityContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl
MessageHandler that sets the entityID to the given SAMLPeerEntityContext class.
SetEntityIdToSAMLPeerEntityContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.SetEntityIdToSAMLPeerEntityContext
Constructor.
setEventContextLookupStrategy(Function<ProfileRequestContext, EventContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Set lookup strategy for EventContext to check.
setEventContextLookupStrategy(Function<ProfileRequestContext, EventContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
Set lookup strategy for EventContext to check.
setExpiration(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the expiration time of the token.
setExpirationEpoch(long) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the expiration time of the token using epoch seconds.
setExpiresAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set expiration time.
setForceAuthnPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Set the predicate to apply to derive the message-independent forced authn default.
setForcePKCECondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Set the condition used to determine whether to require PKCE.
setForcePKCECondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Set the condition used to determine whether to require PKCE.
SetFrontChannelLogoutSuccess - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
Action that sets the LogoutPropagationContext.setResult(Result) as 'success'.
SetFrontChannelLogoutSuccess() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.SetFrontChannelLogoutSuccess
 
setFrontChannelLogoutUri(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
Set the location for the OIDC front-channel logout endpoint.
setGrantTypes(Collection<GrantType>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.RequestedGrantTypesCondition
Set the candidate grant_type values to check for.
setHttpClient(HttpClient) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
Set the HttpClient to use.
setHttpClient(HttpClient) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Set the HttpClient to use.
setHttpClient(HttpClient) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
Set the HttpClient to use.
setHttpClient(HttpClient) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
Set the HttpClient to use.
setHttpClientSecurityParameters(HttpClientSecurityParameters) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ExecuteBackChannelLogoutRequest
Set the optional client security parameters.
setHttpClientSecurityParameters(HttpClientSecurityParameters) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Set the optional client security parameters.
setHttpClientSecurityParameters(HttpClientSecurityParameters) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
Set the optional client security parameters.
setHttpClientSecurityParameters(HttpClientSecurityParameters) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
Set the optional client security parameters.
setHttpServletRequestSupplier(Supplier<HttpServletRequest>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenHashFromRequestLookupFunction
Set the supplier for the HttpServletRequest.
setHttpServletRequestSupplier(Supplier<HttpServletRequest>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
Set the supplier for the HttpServletRequest.
setId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
Sets the ID of this component.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIdentifierGeneratorLookupStrategy(Function<ProfileRequestContext, IdentifierGenerationStrategy>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Set the strategy used to locate the IdentifierGenerationStrategy to use.
setIDToken(IDTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the IDTokenClaimsSet object that will source the ID token.
setIdTokenClaimsLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.audit.impl.IdTokenClaimsAuditExtractor
Set the lookup strategy for id token claims to read from.
setIDTokenDeliveryClaimsLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
Set the strategy used to locate the id token delivery claims.
setIdTokenHintEnforcedPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateRpInitiatedLogoutContext
Set the predicate for enforcing the use of ID token hints.
setIDTokenLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
Set the strategy used to obtain the ID token lifetime.
setIDTokenManipulationStrategyLookupStrategy(Function<ProfileRequestContext, BiFunction<ProfileRequestContext, Map<String, Object>, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
Set the lookup function to supply strategy bi-function for manipulating id_token claims.
setIgnoringUnencodableAttributes(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Set whether the attributes that result in an AttributeEncodingException when being encoded should be ignored or result in an IdPEventIds.UNABLE_ENCODE_ATTRIBUTE transition.
setIgnoringUnencodableAttributes(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Set whether the attributes that result in an AttributeEncodingException when being encoded should be ignored or result in an IdPEventIds.UNABLE_ENCODE_ATTRIBUTE transition.
setImplicitFlowEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Set predicate used to indicate whether hybrid flow is enabled.
setImplicitFlowEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Set predicate used to indicate whether hybrid flow is enabled.
setInbound(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultOIDCMetadataContextLookupFunction
Sets whether to pull the subcontext from the inbound message context.
setInbound(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Sets which message tree to use in deriving the ClientID and OIDC metadata.
setIncludeIssuerInResponsePredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Set the predicate to signal whether or not to include iss-parameter to the response.
setIncludeIssuerInResponsePredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Set the predicate to signal whether or not to include iss-parameter to the response.
setIssuedAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the issuance time of the token.
setIssuedAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set issue time.
setIssuedAtEpoch(long) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the issuance time of the token using epoch seconds.
setIssuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
Set overridden issuer value.
setIssuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the issuer of the token.
setIssuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set issuer.
setIssuerLookupStrategy(Function<ProfileRequestContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Set the issuer lookup strategy.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set a lookup strategy for the token issuer.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.IssueRegistrationTokenFlowDescriptor
Sets lookup strategy for overridden issuer value.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormOutboundLogoutRequestMessage
Set the strategy used to locate the issuer value to use.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the strategy used to locate the issuer value to use.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the strategy used to locate the issuer value to use.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddIDTokenShell
Set the strategy used to locate the issuer value to use.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Set the strategy used to locate the issuer value to use.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Set the strategy used to locate the issuer value to use.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Set the strategy used to lookup the issuer for this attribute resolution.
setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
Set the strategy used to locate the issuer value to use.
setJti(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the identifier for the token.
setJWT(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
Set the JWT in the case of a token in that form.
setJWTID(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set JWT ID.
setJWTID(IdentifierGenerationStrategy) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set JWT ID via generator.
setJWTID(IdentifierGenerationStrategy, boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set JWT ID via generator.
setKey(String) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
Set the metadata key whose value is used for matching.
setKeyTransportAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Set the strategy used to obtain list of supported signature algorithms.
setKeyTransportAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
Set the strategy used to obtain list of supported signature algorithms.
setKeyType(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the type of the token.
setLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
Set the token lifetime.
setLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
Set the lifetime for replay cache record.
setLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Set the lifetime for the sealed object.
setLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Set the lifetime for the storage record.
setLoginHintLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Set the strategy used to locate the request login hint.
setLogoutContextCreationStrategy(Function<ProfileRequestContext, LogoutContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Set the creation/lookup strategy for the LogoutContext to populate.
setLogoutContextLookupStrategy(Function<MessageContext, OIDCBackChannelLogoutPropagationContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.JWTClaimsSetFromLogoutContextLookupFunction
Set the strategy used to lookup the OIDCBackChannelLogoutPropagationContext to use.
setLogoutHint(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Set the logout hint.
setLogoutHintMatchingStrategyLookupStrategy(Function<ProfileRequestContext, BiPredicate<String, SPSession>>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Set the lookup function to the RP-initiated logout's logout_hint parameter matching against SPSession.
setLogoutPropagationContextLookupStrategy(Function<ProfileRequestContext, LogoutPropagationContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCLogoutPropagationAction
Set the lookup strategy for the logout propagation context.
setLogoutTokenClaimsSet(LogoutTokenClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCBackChannelLogoutPropagationContext
Set the claims set related to the back-channel logout.
setMandatoryScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Set the strategy used to locate the mandatory scope value.
setMappedErrors(Map<String, ErrorObject>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractBuildErrorResponseFromEvent
Set map of eventIds to pre-configured error objects.
setMappedErrors(Map<String, Integer>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
Set map of eventIds to status codes.
setMappedIdTokenRequestedClaims(AttributesMapContainer) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the requested claims for the ID Token after they've been reverse-mapped by the registry.
setMappedUserinfoRequestedClaims(AttributesMapContainer) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the requested claims for the Userinfo endpoint after they've been reverse-mapped by the registry.
setMatchIfRequestedClaimsSilent(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Sets whether to match if the request contains no requested claims.
setMatchOnlyIDToken(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Sets whether to match only id token part of the requested claims.
setMatchOnlyUserInfo(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Sets whether to match only user info part of the requested claims.
setMaxAgeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Set the strategy used to locate the request max age.
setMessageEncoder(MessageEncoder) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.OIDCResponseEncoderFactory
Set the message encoder to be returned by this factory.
setMetadata(Map<String, MetadataPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the allowed metadata values to be issued with the token.
setMetadataLookupStrategy(Function<ProfileRequestContext, OIDCClientMetadata>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.MetadataStatementsLookupFunction
Set the lookup strategy to use to locate the OIDCClientMetadata.
setMetadataPolicy(Map<String, MetadataPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
Set the metadata policy related to dynamic client registration.
setMetadataPolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
Set the metadata policy used for the enforcer function for validating the redirect URI.
setMetadataPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
Set the function used for enforcing the metadata policy.
setMetadataPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
Set the metadata policy enforcer function used against the URI given as input.
setMetadataPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set a lookup strategy for the metadata policy.
setMetadataPolicyMergingStrategy(BiFunction<Map<String, MetadataPolicy>, Map<String, MetadataPolicy>, Pair<Map<String, MetadataPolicy>, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
Set the strategy used for merging profile and token based metadata policies.
setMetadataPolicyValidationStrategy(Predicate<Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
Set the strategy used for validating token and merged metadata policies.
setMetadataPolicyValidator(Predicate<Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
Set the metadata policy validator function for verifying the given metadata policy.
setMetadataResolver(ProviderMetadataResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundDiscoveryResponse
Set the resolver for the metadata that is being distributed.
setMetadataStatements(Map<String, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
Set the map of static metadata_statements, key for FO, value for the statement.
setNonce(Nonce) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set nonce of the authentication request.
setNonceLifetime(Duration) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Set the nonce lifetime.
setNotBefore(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set not before time.
setOAuth2ClientAuthenticationLookupStrategy(Function<ProfileRequestContext, OAuth2ClientAuthenticationContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Set the strategy used to return the OAuth2ClientAuthenticationContext.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.AbstractAdminApiProfileAction
Set the JSON ObjectMapper to use for serialization.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.OIDCClientRegistrationRequestDecoder
Set the object mapper used for pretty-printing JSON in the request.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Set the object mapper used for pretty-printing JSON in the request.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
Set the object mapper used for pretty-printing logout token contents.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the object mapper used for pretty-printing JWT contents.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
Set the object mapper used for pretty-printing JWT contents.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Set the object mapper used for pretty-printing JWT contents.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
Set the JSON ObjectMapper.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ManipulateClaimsForIDToken
Set the object mapper used for pretty-printing JWT contents.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Set the JSON ObjectMapper.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Set the object mapper used for pretty-printing JWT contents.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
Set the object mapper used for deserializing the claims set.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Set the object mapper used for serializing the claims set.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
Set the object mapper used for deserializing the claims set.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Set the object mapper used for serializing the claims set.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Set the JSON ObjectMapper used for encoding map into JSON.
setObjectMapper(ObjectMapper) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
Set the JSON ObjectMapper used for decoding JSON into Map.
setObjectName(String) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.ArrayMetadataValueResolver
Set the name of the JSON object, can be null to return only values of embedded resolvers.
setOIDCAuthenticationResponseConsentContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseConsentContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the strategy used to locate the OIDCAuthenticationResponseConsentContext associated with a given ProfileRequestContext.
setOIDCAuthenticationResponseConsentContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseConsentContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the strategy used to locate the OIDCAuthenticationResponseTokenClaimsContext associated with a given ProfileRequestContext.
setOIDCAuthenticationResponseConsentContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseConsentContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Set the strategy used to locate the OIDCAuthenticationResponseTokenClaimsContext associated with a given ProfileRequestContext.
setOIDCAuthenticationResponseTokenClaimsContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the strategy used to locate the OIDCAuthenticationResponseTokenClaimsContext associated with a given ProfileRequestContext.
setOIDCAuthenticationResponseTokenClaimsContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the strategy used to locate the OIDCAuthenticationResponseTokenClaimsContext associated with a given ProfileRequestContext.
setOIDCAuthenticationResponseTokenClaimsContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Set the strategy used to locate the OIDCAuthenticationResponseTokenClaimsContext associated with a given ProfileRequestContext.
setOIDCAuthenticationResponseTokenClaimsContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
Set the strategy used to locate the OIDCAuthenticationResponseTokenClaimsContext associated with a given ProfileRequestContext.
setOIDCClientRegistrationResponseContextCreationStrategy(Function<MessageContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundRegistrationResponseMessageContext
Set the strategy used to return or create the OIDCClientRegistrationResponseContext .
setOidcInputMetadataLookupStrategy(Function<ProfileRequestContext, OIDCClientMetadata>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
Set the strategy used to locate the OIDCClientMetadata associated with the request (input).
setOidcLogoutContextCreationStrategy(Function<ProfileRequestContext, OIDCLogoutPropagationContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
Set the strategy used for creating OIDCLogoutPropagationContext.
setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.OIDCClientInfoCredentialValidator
Set the strategy used to return the OIDCMetadataContext.
setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PopulateLogoutContext
Set the strategy used for looking up OIDCMetadataContext.
setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Set the strategy used to return the OIDCMetadataContext.
setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
Set the lookup strategy for OIDCMetadataContext.
setOidcMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Set the lookup strategy for OIDC metadata context.
setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
Set the strategy used to return the OIDCMetadataContext.
setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
Set the mechanism to lookup the OIDCMetadataContext from the ProfileRequestContext.
setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.SectorIdentifierLookupFunction
Set the lookup strategy to use to locate the OIDCMetadataContext.
setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Set the mechanism to lookup the OIDCMetadataContext from the ProfileRequestContext.
setOIDCMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
Set the lookup strategy to use to locate the OIDCMetadataContext.
setOidcOutputMetadataLookupStrategy(Function<ProfileRequestContext, OIDCClientMetadata>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCClientMetadataPopulationAction
Set the strategy used to locate the OIDCClientMetadata associated with the request (output).
setOidcResponseContextLookupStrategy(Function<MessageContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCClientRegistrationResponseMetadataLookupFunction
Set the strategy used to locate the OIDCClientRegistrationResponseContext associated with a given MessageContext.
setOidcResponseContextLookupStrategy(Function<MessageContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildClientInformation
Set the strategy used to locate the OIDCClientRegistrationResponseContext associated with a given MessageContext.
setOidcResponseContextLookupStrategy(Function<MessageContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
Set the strategy used to locate the OIDCClientRegistrationResponseContext associated with a given MessageContext.
setOidcResponseContextLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.session.impl.OIDCRPSessionCreationStrategy
Set the lookup strategy for OIDC authentication response context.
setOidcResponseContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationResponseContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Set the strategy used to locate the OIDCClientRegistrationResponseContext associated with a given MessageContext.
setOIDCRpInitatedLogoutCtxLookupStrategy(Function<ProfileRequestContext, OIDCRpInitiatedLogoutContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.AbstractOIDCRpInitiatedLogoutAction
Set the mechanism to lookup the OIDCRpInitiatedLogoutContext.
setOnlyIfEssential(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Sets whether to drop non essential claims.
setOpaque(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.AccessTokenContext
Set the token string in the case of an opaque token.
setParEndpointLogic(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
Set the flag to control whether to use the PAR-endpoint logic for the validation.
setPlainClaimsValidator(ClaimsValidator) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
Set the claims validator used for validating the plain/unsigned request object.
setPolicyEnforcedMetadata(OIDCClientMetadata) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationMetadataPolicyContext
Set the policy-enforced requested client metadata.
setPolicyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set a lookup strategy for the relying party identifier.
setPolicyIdPolicyName(String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set an explicit policy name to apply governing policyId usage.
setPolicyLocationLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set a lookup strategy for the metadata policy location.
setPolicyLocationPolicyName(String) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set an explicit policy name to apply governing policyLocation usage.
setPostLogoutRedirectUri(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Set the location for the post logout redirect URI.
setPrincipal(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the principal who issued the token.
setPrincipal(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set user principal name.
setPrincipalNameLookupStrategy(BiFunction<ProfileRequestContext, JWTClaimsSet, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Set lookup strategy for principal name.
setProcessedIdTokenHint(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Set the processed ID token hint.
setProcessedToken(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the signed/encrypted ID token / UserInfo response JWT.
setProfileMetadataPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
Set the strategy used to locate the request metadata policy configured for the profile.
setProfileResponders(Map<ProfileConfiguration, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ProfileResponderIdLookupFunction
Set mapping from profile to responder value.
setPromptLookupStrategy(Function<ProfileRequestContext, Prompt>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeAuthenticationContext
Set the strategy used to locate the requested prompt.
setPromptLookupStrategy(Function<ProfileRequestContext, Prompt>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Set the strategy used to locate the requested prompt.
setProxiedRequesterContextCreationStrategy(Function<ProfileRequestContext, ProxiedRequesterContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Set the strategy used to locate or create the ProxiedRequesterContext.
setPushedAuthorizationRequestEnforcedPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Set the predicate for enforcing the use of pushed authorization requests.
setPushedAuthorizationRequestUriDeserializers(List<BiFunction<ProfileRequestContext, URI, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Set the list of deserializers for OP-issued request_uri values.
setRecipientLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
Set the strategy used to lookup the recipient for this attribute resolution.
setRedirectURI(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Sets a validated redirect uri for the response.
setRedirectURI(URI) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set redirect URI.
setRedirectURILookupStrategy(Function<ProfileRequestContext, URI>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Set the strategy used to locate the redirect uri of the request.
setRedirectURIValidationStrategy(BiPredicate<ProfileRequestContext, URI>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
Set the strategy used to validate the post logout redirect URIs.
setRefreshToken(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set refresh token.
setRefreshTokenChainLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set the strategy used to obtain the refresh token chain lifetime.
setRefreshTokenChainLifetimeLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Set the strategy used to obtain the refresh token chain lifetime.
setRefreshTokenDeserializers(List<BiFunction<ProfileRequestContext, String, RefreshTokenClaimsSet>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Set the list of deserializer bi-functions for refresh tokens to be used in addition to unsealing opaque value.
setRefreshTokenDeserializers(List<BiFunction<ProfileRequestContext, String, RefreshTokenClaimsSet>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Set the list of deserializer bi-functions for refresh tokens to be used in addition to unsealing opaque value.
setRefreshTokensEnabled(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Set predicate used to indicate whether refresh tokens are enabled.
setRefreshTokensEnabledPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Set the predicate used to indicate whether refresh tokens are enabled.
setRefreshTokenSerializationStrategies(Map<String, BiFunction<ProfileRequestContext, RefreshTokenClaimsSet, String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set the strategies used for serializing refresh token claims set, key referring to the refresh token type.
setRefreshTokenTimeoutLookupStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set the strategy used to obtain the refresh token timeout.
SetRefreshTokenToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that creates a Refresh Token, and sets it to work context OIDCAuthenticationResponseContext.getRefreshToken() located under InOutOperationContext.getOutboundMessageContext().
SetRefreshTokenToResponseContext(DataSealer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Constructor.
setRefreshTokenTypeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set a lookup strategy to obtain the refresh token type to issue.
setRegAccessToken(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Set the registration access token.
setRegClientUri(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCClientRegistrationResponseContext
Set the location of the client configuration endpoint.
setRegisteredRedirectURIsLookupStrategy(Function<ProfileRequestContext, Set<URI>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Set the strategy used to obtain registered redirect uris to compare if request had no redirect uri value.
setRegistrationClaimsContextCreationStrategy(Function<ProfileRequestContext, OIDCClientRegistrationTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Set the strategy used to create or return the OIDCClientRegistrationTokenClaimsContext.
setRegistrationMetadataPolicyContextLookupStrategy(Function<MessageContext, OIDCClientRegistrationMetadataPolicyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
Set the strategy that will return OIDCClientRegistrationMetadataPolicyContext.
setRegistrationMetadataPolicyContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationMetadataPolicyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.OIDCPolicyEnforcedClientRegistrationRequestMetadataLookupFunction
Set the strategy that will return OIDCClientRegistrationMetadataPolicyContext.
setRegistrationMetadataPolicyContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationMetadataPolicyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRemainingClaimsToClientMetadata
Set the strategy that will return OIDCClientRegistrationMetadataPolicyContext.
setRegistrationPolicyContextCreationStrategy(Function<ProfileRequestContext, OIDCClientRegistrationMetadataPolicyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
Set the strategy used to create or return the OIDCClientRegistrationMetadataPolicyContext.
setRegistrationTokenContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Set the strategy used to locate the OIDCClientRegistrationTokenClaimsContext associated with a given request.
setRegistrationTokenContextLookupStrategy(Function<ProfileRequestContext, OIDCClientRegistrationTokenClaimsContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
Set the strategy used to locate the OIDCClientRegistrationTokenClaimsContext associated with a given request.
setRegistrationValidityPeriodStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
Set strategy function to obtain registration validity period.
setRelyingPartyContextCreationStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRelyingPartyContext
Set the strategy used to return or create the RelyingPartyContext .
setRelyingPartyContextCreationStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeUnverifiedRelyingPartyContext
Set the strategy used to return or create the RelyingPartyContext .
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
Set the strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.CredentialMetadataValueResolver
Set the strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FilesystemProviderMetadataResolver
Set the strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Set the strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Set the strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ProcessRequestedAuthnContext
Set the strategy used to return the RelyingPartyContext for configuration options.
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Set the strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Set the strategy used to return the RelyingPartyContext.
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultSubjectTypeStrategy
Set the lookup strategy to use to locate the RelyingPartyContext.
setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
Set the strategy used to locate the RelyingPartyContext associated with a given ProfileRequestContext.
setRelyingPartyId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the relying party identifier.
setRelyingPartyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Set the strategy used to obtain the relying party ID.
setRelyingPartyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Set the strategy used to obtain the relying party ID.
setRelyingPartyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DefaultDPoPProofNonceGenerator
Set the strategy used to obtain the relying party ID.
setRelyingPartyIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.DPoPProofNonceClaimsValidator
Set the strategy used to obtain the relying party ID.
setRemoveIpAddressFromEndpointUri(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
Set the flag to remove the IP address from the endpoint URI.
setReplacement(Boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Set the flag to signal replacement is allowed.
setReplacementLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set a lookup strategy for the flag signaling registration replacement is allowed.
setReplayCache(ReplayCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Set the replay cache instance to use.
setReplayCache(ReplayCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriDeserializationFunction
Set the replay cache instance to use.
setRequestedAudienceLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Set the strategy used to locate the requested audience to validate.
setRequestedClaims(OIDCClaimsRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set requested claims.
setRequestedClaimsLookupStrategy(Function<ProfileRequestContext, OIDCClaimsRequest>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
Set the strategy used to locate the requested claims of request.
SetRequestedClaimsToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that sets requested claims to response context.
SetRequestedClaimsToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
 
setRequestedClientId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Set the requested client ID.
setRequestedIdTokenHint(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Set the requested ID token hint.
setRequestedResponseModeLookupStrategy(Function<ProfileRequestContext, ResponseMode>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
Set the lookup strategy for fetching the requested response mode.
setRequestedResponseModeLookupStrategy(Function<ProfileRequestContext, ResponseMode>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Set the lookup strategy for fetching the requested response mode.
setRequestedResponseModeLookupStrategy(Function<ProfileRequestContext, ResponseMode>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Set the lookup strategy for fetching the requested response mode.
setRequestedResponseTypeLookupStrategy(Function<ProfileRequestContext, ResponseType>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Set the lookup strategy for fetching the requested response type.
setRequestedResponseTypeLookupStrategy(Function<ProfileRequestContext, ResponseType>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Set the lookup strategy for fetching the requested response type.
setRequestedResponseTypeLookupStrategy(Function<ProfileRequestContext, ResponseType>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Set the lookup strategy for fetching the requested response type.
setRequestedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Set the strategy used to locate the requested scope to validate.
setRequestedStateLookupStrategy(Function<ProfileRequestContext, State>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.BuildAuthenticationErrorResponseFromEvent
Set the lookup strategy for fetching the requested state.
setRequestedStateLookupStrategy(Function<ProfileRequestContext, State>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.FormOutboundAuthenticationResponseMessage
Set the lookup strategy for fetching the requested state.
setRequestedSubject(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set requested sub value.
SetRequestedSubjectToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that sets requested sub value to response context.
SetRequestedSubjectToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedSubjectToResponseContext
 
setRequestNonceLookupStrategy(Function<ProfileRequestContext, Nonce>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the strategy used to locate the nonce of authentication request.
setRequestNonceLookupStrategy(Function<ProfileRequestContext, Nonce>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddNonceToIDToken
Set the strategy used to locate the nonce of authentication request.
setRequestObject(JWT) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the request object.
setRequestObjectEnforcedPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Set the predicate for enforcing the use of request objects.
setRequestObjectFailure(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set whether request object validation has failed.
setRequestObjectFromPar(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set whether request object has been provided from the PAR endooint.
SetRequestObjectToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that stored request object to OIDCAuthenticationResponseContext.
SetRequestObjectToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetRequestObjectToResponseContext
Constructor.
setRequestUriClaimsSetSerializationStrategies(Map<String, BiFunction<ProfileRequestContext, Map<String, Object>, URI>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.FormOutbounPushedAuthorizationResponseMessage
Set the strategies used for serializing request URI claims set, key referring to the refresh token type.
setRequireAuthenticationRequestPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
Set the predicate used to indicate if the incoming message is required to be an OIDC authentication request.
setRequiredJwtTypeHeaderLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Set the strategy used to fetch required JWT type header value.
setRequireDpopJktCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
Set the condition used to determine whether to require dpop_jkt parameter.
setRequireDpopProofCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.InitializeDPoPProofContext
Set the predicate for enforcing the use of DPoP proofs.
setRequireRequestedValue(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Set whether to require redirect uri value in the request also when only single value is registered.
setReservedClaimNames(List<String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Set list of claim names that will not be added.
setResolveEncryptionAlgs(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
Set whether to resolve data encryption algorithms.
setResolveKeyTransportEncAlgs(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.AlgorithmInfoMetadataValueResolver
Set whether to resolve key transport algorithms.
setResolverFunction(Function<ProfileRequestContext, Object>) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.impl.FunctionMetadataValueResolver
Set the function used for resolving the value.
setResponseClaimsSetLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Set the strategy used to locate the response ClaimsSet associated with a given ProfileRequestContext.
setResponseClaimsSetLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
Set the strategy used to locate the response ClaimsSet associated with a given ProfileRequestContext.
SetResponseStatusCodeFromEvent - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
This action reads an event from the configured EventContext lookup strategy and sets the status code for HttpServletResponse according to the attached configuration.
SetResponseStatusCodeFromEvent() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetResponseStatusCodeFromEvent
Constructor.
setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.RevokeTokenChain
Set the revocation cache instance to use.
setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Set the revocation cache instance to use.
setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set the revocation cache instance to use.
setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Set the revocation cache instance to use.
setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Set the revocation cache instance to use.
setRevocationCache(RevocationCache) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.RootTokenIdRevocationValidator
Set the revocation cache instance to use.
setRevocationError(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCLogoutPropagationContext
Set the flag indicating if an error has occured during revocation of tokens related to the session.
setRevocationMethodLookupStrategy(Function<ProfileRequestContext, OAuth2TokenRevocationConfiguration.OAuth2TokenRevocationMethod>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Set strategy for looking up which revocation method should be used when revoking a token.
setRevokeConsentPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.RevokeConsent
Set the predicate used to decide if pre-existing consent is to be revoked.
setRevokeWithConsentPromptPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Set the predicate used to determine if consent should be revoked with consent prompt.
setRevokeWithOfflineAccessScopePredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Set the predicate used to determine if consent should be revoked with offline_access scope.
setRootTokenIdentifier(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set root token identifier.
setRootTokenIdentifierLookupStrategy(Function<JWTClaimsSet, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Set a lookup strategy for the root token identifier.
setSAMLMetadataContextLookupStrategy(Function<MessageContext, SAMLMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.PopulateOIDCMetadataContext
Set the strategy used to look up the SAMLMetadataContext to draw from.
setSAMLMetadataContextLookupStrategy(Function<ProfileRequestContext, SAMLMetadataContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Set the strategy used to locate the SAMLMetadataContext associated with a given ProfileRequestContext.
setSaveTokenToCredentialSet(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Set whether to save the JWT in the Java Subject's public credentials.
setScope(Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set validated scope values.
setScope(Scope) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set scope.
setScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
Set the strategy used to locate the validated scope.
setSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set the data sealer for handling access token.
setSealer(DataSealer) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Set the data sealer for handling access token.
setSecretExpirationPeriodStrategy(Function<ProfileRequestContext, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
Set strategy to obtain client secret expiration period policy.
SetSectorIdentifierForAttributeResolution - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that sets AttributeResolutionContext.setAttributeRecipientGroupID(java.lang.String) to sector identifier if pairwise subject is requested.
SetSectorIdentifierForAttributeResolution() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
Constructor.
setSectorIdentifierLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
Set the strategy used to locate sector identifier.
setSecurityParametersContextLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Set the strategy used to look up the SecurityParametersContext to set the parameters for.
setSecurityParametersContextLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.BuildUserInfoErrorResponseFromEvent
Set the strategy used to look up the SecurityParametersContext to set the parameters for.
setSecurityParametersLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Set the strategy used to locate the SecurityParametersContext to use.
setSecurityParametersLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.DefaultComputeAuthorizationCodeHashFunction
Set the strategy used to locate the SecurityParametersContext to use.
setSecurityParametersLookupStrategy(Function<ProfileRequestContext, SecurityParametersContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
Set the strategy used to locate the SecurityParametersContext to use.
setSelfAudienceCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Set whether the OP is an implied audience for the token request.
setSessionContextCreationStrategy(Function<ProfileRequestContext, SessionContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Set the creation/lookup strategy for the SessionContext to populate.
setSessionId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the session identifier.
setSessionIdentifier(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set session identifier.
setSessionIdLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
Set the strategy used to locate session identifier.
SetSessionIdToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that locates session id using configurable lookup strategy.
SetSessionIdToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSessionIdToResponseContext
Constructor.
setSessionResolver(SessionResolver) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Set the SessionResolver to use.
setSessionResolverCriteriaStrategy(Function<ProfileRequestContext, CriteriaSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Set the strategy for building the CriteriaSet to feed into the SessionResolver.
setSignatureAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Set the strategy used to obtain list of supported signature algorithms.
setSignatureAlgorithmsLookupStrategy(Function<ProfileRequestContext, List<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
Set the strategy used to obtain list of supported signature algorithms.
setSignedClaimsValidator(ClaimsValidator) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
Set the claims validator used for validating the signed request object.
setSigningParametersHandler(MessageHandler) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Set the handler that resolves and populates SignatureSigningParameters.
setSortKey(int) - Method in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
Set the sort key.
setState(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
Set the state.
setStatementsLookupFunction(Function<ProfileRequestContext, Map<String, String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
Set the lookup function for obtaining incoming metadata statements.
setStorageService(StorageService) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
Set the StorageService back-end to use.
setStorageService(StorageService) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Set the StorageService back-end to use.
setStrictScopeValidationCondition(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Set the condition whether to apply strict scope validation, i.e.
setSubject(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Sets generated subject for the response.
setSubject(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Set subject name.
setSubjectContextCreationStrategy(Function<ProfileRequestContext, SubjectContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Set the creation/lookup strategy for the SubjectContext to populate.
setSubjectLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
Set the strategy used to locate subject.
SetSubjectToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that locates subject using strategy.
SetSubjectToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
Constructor.
setSubjectType(String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Sets subject type.
setSubjectTypeLookupStrategy(Function<ProfileRequestContext, SubjectType>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
Set the strategy used to locate subject type.
setSubjectTypeLookupStrategy(Function<ProfileRequestContext, SubjectType>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
Set the strategy function to use to obtain the subject type.
setSubjectTypeLookupStrategy(Function<ProfileRequestContext, SubjectType>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
Set the strategy used to locate subject type.
setSupportedResponseTypes(Map<ResponseType, Predicate<ProfileRequestContext>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Set map of supported response types and their corresponding predicates.
setSyntaxValidator(Predicate<Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
Set the generic syntax validator for the policy.
setTargetIDToken(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
Set whether target is id token claims set.
setTokenClaimsSet(JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2TokenMgmtResponseContext
Set the access token claims set (used when prepping OAuth-only access tokens).
setTokenClaimsSetManipulationStrategyLookupStrategy(Function<ProfileRequestContext, BiFunction<ProfileRequestContext, Map<String, Object>, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the lookup function to supply strategy bi-function for manipulating token claims set.
setTokenClaimsSetManipulationStrategyLookupStrategy(Function<ProfileRequestContext, BiFunction<ProfileRequestContext, Map<String, Object>, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the lookup function to supply strategy bi-function for manipulating token claims set.
setTokenClaimsSetManipulationStrategyLookupStrategy(Function<ProfileRequestContext, BiFunction<ProfileRequestContext, Map<String, Object>, Map<String, Object>>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set the lookup function to supply strategy bi-function for manipulating token claims set.
SetTokenDeliveryAttributesFromTokenToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that locates any token delivery claims from authorization code / access token.
SetTokenDeliveryAttributesFromTokenToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
Constructor.
SetTokenDeliveryAttributesToResponseContext - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that checks for any released attributes marked for token delivery.
SetTokenDeliveryAttributesToResponseContext() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Constructor.
setTokenEndpointAuthMethodsLookupStrategy(Function<ProfileRequestContext, Set<ClientAuthenticationMethod>>) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
Set strategy to obtain enabled token endpoint authentication methods.
setTokenEndpointAuthMethodsLookupStrategy(Function<ProfileRequestContext, Set<ClientAuthenticationMethod>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
Set strategy to obtain enabled token endpoint authentication methods.
setTokenLifetimeLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set a lookup strategy for the token lifetime.
setTokenMetadataPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, MetadataPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
Set the strategy used to locate the request metadata policy encoded in the access token.
setTokenRevocationCondition(BiPredicate<ProfileRequestContext, JWTClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Set the predicate used to indicate whether the authorization code or refresh token is revoked.
setTokenRevocationCondition(BiPredicate<ProfileRequestContext, JWTClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.TokenRevocationConditionValidator
Set the token revocation condition to use.
setTokenRevocationLifetimeLookupStrategy(Function<JWTClaimsSet, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Set a lookup strategy for the token revocation lifetime.
setTokenRevocationLifetimeLookupStrategy(Function<JWTClaimsSet, Duration>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set a lookup strategy for the token revocation lifetime.
setTranscoderRegistry(ReloadableService<AttributeTranscoderRegistry>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Sets the registry of transcoding rules to apply to encode attributes.
setTranscoderRegistry(ReloadableService<AttributeTranscoderRegistry>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
Sets the registry of transcoding rules to apply to encode attributes.
setTranscoderRegistry(ReloadableService<AttributeTranscoderRegistry>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Sets the registry of transcoding rules to apply to encode attributes.
setTranscoderRegistry(ReloadableService<AttributeTranscoderRegistry>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
Sets the registry of transcoding rules to apply to encode attributes.
setTypeHeaderLookupStrategy(BiFunction<ProfileRequestContext, RefreshTokenClaimsSet, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Set the strategy used to lookup the type header value for the JWT.
setTypeHeaderValidationStrategy(BiPredicate<ProfileRequestContext, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Set the strategy used to validate the incoming JWT type header value.
setUnregisteredClientAllowedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAllowedScopeLookupFunction
Set the lookup strategy for fetching the allowed scope for unregistered clients.
setUnregisteredClientIdLookupStrategy(Function<ProfileRequestContext, ClientID>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Set the strategy used to fetch the unregistered client ID value associated with a given ProfileRequestContext.
setUnregisteredClientPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
Set the enforcer function for validating client ID against the configured policy.
setUnregisteredClientPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Set the enforcer function for validating redirect URI against the configured policy.
setUnregisteredClientPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Set the enforcer function for validating response type against the configured policy.
setUnregisteredClientPolicyEnforcer(BiFunction<Object, MetadataPolicy, Pair<Object, Boolean>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
Set the enforcer function for fetching the allowed scope via the configured policy.
setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
Set the strategy used to locate the unregistered client policy configured for the profile.
setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Set the strategy used to locate the unregistered client policy configured for the request.
setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Set the strategy used to locate the unregistered client policy configured for the profile.
setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
Set the strategy used to locate the unregistered client policy.
setUnregisteredClientPolicyLookupStrategy(Function<ProfileRequestContext, Map<String, UnregisteredClientPolicy>>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientResponseTypesLookupFunction
Deprecated.
Set the strategy used to locate the unregistered client policy.
setUseOnlyRequestObjectPredicate(BiPredicate<Pair<AuthorizationRequest, Boolean>, String>) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
Set the predicate to decide if the parameter values may only be set in the request object.
setUserInfo(UserInfo) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Set the UserInfo claims set that will source the UserInfo response.
setUserinfoDeliveryClaimsLookupStrategy(Function<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
Set the strategy used to locate the user info delivery claims.
setUserInfoSigningAlgLookupStrategy(Function<ProfileRequestContext, JWSAlgorithm>) - Method in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
Set the strategy used to user info signing algorithm lookup strategy.
setValidatedDpopProofThumbprint(String) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2DPoPProofContext
Set the validated DPoP Proof JWT JWK thumbprint.
setValidatedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.IssueIDTokenCondition
Set the lookup strategy for the validated scope.
setValidatedScopeLookupStrategy(Function<ProfileRequestContext, Scope>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.OfflineAccessScopeCondition
Set the lookup strategy for the validated scope.
setValidateRemoteJwkSetPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
Set the predicate used to indicate whether contents of remote JWK set should be validated.
setValidRedirectURIsLookupStrategy(Function<ProfileRequestContext, Set<URI>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Set the strategy used to locate the redirect uris to compare against.
setValidResponseModesLookupStrategy(Function<ProfileRequestContext, Set<String>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
Set the lookup strategy for fetching the valid response modes.
setValidResponseTypesLookupStrategy(Function<ProfileRequestContext, Set<ResponseType>>) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Set the lookup strategy for fetching the valid response types matching the request message.
setValue(Object) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
Set the metadata value to be matched.
setVelocityEngine(VelocityEngine) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Set the VelocityEngine instance.
setVelocityTemplateId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Set the Velocity template id.
setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Set the xmlSafe-flag passed to the identifier generator
setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
Set the xmlSafe-flag passed to the identifier generator
setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Set the xmlSafe-flag passed to the identifier generator
setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Set the xmlSafe-flag passed to the identifier generator
setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
Set the xmlSafe-flag passed to the identifier generator
setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
Set the xmlSafe-flag passed to the identifier generator
setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Set the xmlSafe-flag passed to the identifier generator
setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
Set the xmlSafe-flag passed to the identifier generator
setXmlSafeIdentifier(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Set the xmlSafe-flag passed to the identifier generator
signatureAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
Strategy to obtain list of supported signature algorithms.
signatureAlgorithmsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
Strategy to obtain list of supported signature algorithms.
signatureSigningParameters - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AbstractOIDCSigningResponseAction
The signature signing parameters.
signedClaimsValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
The claims validator to be applied for validating the signed request object.
signedJWT - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.AbstractProcessTokenAction
Copy of signed JWT for non-opaque access tokens.
signedJWT - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ParseAccessToken
Copy of signed JWT for non-opaque access tokens.
signingParametersHandler - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Handler that resolves and populates SignatureSigningParameters.
SINGLE_ACCESS_OR_REFRESH_TOKENS - Static variable in class net.shibboleth.idp.plugin.oidc.op.storage.RevocationCacheContexts
ID of context for revoking single access or refresh tokens.
sortKey - Variable in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
The key by which we sort the provider.
sortKeyValue - Static variable in class net.shibboleth.idp.plugin.oidc.op.metadata.resolver.ServiceableProviderMetadataProvider
If we autogenerate a sort key it comes from this count.
state - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.FormRpInitiatedLogoutResponse
The optional state parameter to the logout.
state - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCRpInitiatedLogoutContext
The state.
state - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
The optional state value.
statements - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
The map of static metadata_statements, key for FO, value for the statement.
statementsLookupFunction - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddMetadataStatementToClientMetadata
The lookup function for obtaining incoming metadata statements.
STORAGE_CONTEXT_NAME - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AbstractPushedAuthorizationRequestComponent
The context name in the StorageService.
storageService - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
Storage service used for storing the claims set on server-side.
storageService - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Storage service used for storing the claims set on server-side.
StorageServicePushedAuthorizationRequestUriDeserializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Default deserialization function for decoding the request URI into claims set within OAuth2 PAR.
StorageServicePushedAuthorizationRequestUriDeserializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriDeserializationFunction
 
StorageServicePushedAuthorizationRequestUriSerializationFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
A serialization function for the request URI claims set within OAuth2 PAR.
StorageServicePushedAuthorizationRequestUriSerializationFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
Constructor.
StoreClientInformation - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that stores the ClientInformation from the OIDCClientRegistrationResponseContext to the associated ClientInformationManager.
StoreClientInformation() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.StoreClientInformation
Constructor.
StoreDPoPProofKeyThumbprint - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Stores the dpop_jkt parameter from the incoming authorization request.
StoreDPoPProofKeyThumbprint() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.StoreDPoPProofKeyThumbprint
Constructor.
strictScopeValidationCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Condition whether to apply strict scope validation, i.e.
sub - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet.Builder
Subject claim value of the authenticated user.
SUB_CLAIM_NAME - Static variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
Name of the sub claim.
SUB_FORMAT - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
The subject format (public/pairwise).
SUB_VALUE - Static variable in class net.shibboleth.idp.plugin.oidc.op.audit.AuditFields
The subject value.
subject - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Subject generated for response.
subject - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
The subject value.
subject - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
The subject value.
subject(String) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Set the subject value.
SubjectActivationCondition - Class in net.shibboleth.idp.plugin.oidc.op.profile.logic
Activation condition returning true if subject cannot be located from oidc response context.
SubjectActivationCondition() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.logic.SubjectActivationCondition
 
subjectContextCreationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ProcessRpInitiatedLogoutRequest
Creation/lookup function for SubjectContext.
subjectCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Subject context.
subjectCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Subject context.
subjectLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
Strategy used to obtain the subject.
subjectType - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Subject type, public or pairwise.
SubjectTypeAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
Function that returns the type of the subject from OIDCAuthenticationResponseContext.
SubjectTypeAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectTypeAuditExtractor
Constructor.
SubjectTypeAuditExtractor(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectTypeAuditExtractor
Constructor.
subjectTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSectorIdentifierForAttributeResolution
Strategy used to obtain subject type.
subjectTypeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
Strategy used to obtain subject type.
subjectTypeStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetSubjectToResponseContext
Strategy used to determine the subject type to try.
SubjectValueAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
Function that returns the value of the subject from OIDCAuthenticationResponseContext.
SubjectValueAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectValueAuditExtractor
Constructor.
SubjectValueAuditExtractor(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.SubjectValueAuditExtractor
Constructor.
supportedDecryptionAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
List of supported key transport algorithms obtained from the security configuration.
supportedDecryptionEncs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
List of supported data decryption algorithms obtained from the security configuration.
supportedEncryptionAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
List of supported key transport algorithms obtained from the security configuration.
supportedEncryptionEncs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
List of supported data encryption algorithms obtained from the security configuration.
supportedGrantTypes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddGrantTypeToClientMetadata
Map of supported grant types and their corresponding predicates.
supportedResponseTypes - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddResponseTypesToClientMetadata
Map of supported response types and their corresponding predicates.
supportedSignatureValidationAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddRequestObjectSecurityConfigurationToClientMetadata
List of supported signature validation algorithms obtained from the security configuration.
supportedSigningAlgs - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddSecurityConfigurationToClientMetadata
List of supported signing algorithms obtained from the security configuration.
supportLogoutPropagation(boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
Set the flag whether the session allows for logout propagation.
supportsLogoutPropagation - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession.Builder
The flag whether the session allows for logout propagation.
supportsLogoutPropagation - Variable in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
The flag whether the session allows for logout propagation.
supportsLogoutPropagation() - Method in class net.shibboleth.idp.plugin.oidc.op.session.OIDCRPSession
 
switchIntoCustomResource(HTTPRequest) - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
Switches the 'resource' parameter values in the given HTTP request body to contain a custom parameter prefix.
syntaxValidator - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
The generic syntax validator for the policy.

T

targetIDToken - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
Whether we are adding claims to ID Token.
test(String, SPSession) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultLogoutHintMatchingPredicate
 
test(URI, ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataPolicyRedirectUriValidator
test(Map<String, UnregisteredClientPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
 
test(Pair<AuthorizationRequest, Boolean>, String) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.DefaultUseOnlyRequestObjectPredicate
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.RequestedGrantTypesCondition
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeConsentEnabledInTokenClaimsSetPredicate
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAuthorizationRequestTypeValidationStrategy
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultEnforceSelfAudienceCondition
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultRevokeConsentPredicate
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DPoPAccessTokenInRequestCondition
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.IssueIDTokenCondition
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.MetadataValueEqualsCondition
 
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.OfflineAccessScopeCondition
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PairwiseSubjectActivationCondition
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.PublicSubjectActivationCondition
test(ProfileRequestContext) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.SubjectActivationCondition
test(ProfileRequestContext, JWTClaimsSet) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeTokenRevocationCondition
test(ProfileRequestContext, URI) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPostLogoutRedirectURIValidationPredicate
 
toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.FrontChannelLogoutPropagationResponse
Returns an HTTP response for this logout propagation response by using HTTP 302 redirection.
toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.impl.RpInitiatedLogoutResponse
Returns an HTTP response for this logout response.
toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONErrorResponse
Deprecated.
toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
Deprecated.
toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationErrorResponse
toHTTPResponse() - Method in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.impl.OAuth2RevocationSuccessResponse
tokenClaimsContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
tokenClaimsContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
tokenClaimsContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
tokenClaimsContextLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
tokenClaimsCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenDeliveryAttributesToClaimsSet
delivery claims to copy to claims set.
tokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.messaging.context.OAuth2TokenMgmtResponseContext
The token claim set.
tokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Authorize Code / Refresh Token the access token is based on, if any.
tokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Authorize Code / Refresh Token the refresh token will be based on.
tokenClaimsSet - Variable in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Claims set for the claim.
TokenClaimsSet - Class in net.shibboleth.idp.plugin.oidc.op.token.support
Class to extend for token claims sets.
TokenClaimsSet() - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Default constructor for some subclasses.
TokenClaimsSet(JWTClaimsSet) - Constructor for class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Constructor.
TokenClaimsSet.Builder<T extends TokenClaimsSet> - Class in net.shibboleth.idp.plugin.oidc.op.token.support
Abstract builder to extend builders from that are instantiating claims sets extending TokenClaimsSet.
tokenClaimsSetManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
Lookup function to supply strategy bi-function for manipulating token claims set.
tokenClaimsSetManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
Lookup function to supply strategy bi-function for manipulating token claims set.
tokenClaimsSetManipulationStrategyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Lookup function to supply strategy bi-function for manipulating token claims set.
tokenCtx - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAccessTokenToResponseContext
Token context.
tokenEndpointAuthMethodsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
Strategy to obtain enabled token endpoint authentication methods.
tokenEndpointAuthMethodsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddTokenEndpointAuthMethodsToClientMetadata
Strategy to obtain enabled token endpoint authentication methods.
TokenExtensionFactory - Class in net.shibboleth.idp.plugin.oidc.op.profile.spring
Factory used for obtaining token extension beans of the desired type, identifier and scope.
TokenExtensionFactory(String, TokenExtensionFactory.TokenExtensionType, boolean) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory
Constructor.
TokenExtensionFactory.TokenExtensionType - Enum Class in net.shibboleth.idp.plugin.oidc.op.profile.spring
Enumeration of the supported token extension types.
TokenExtensionType() - Constructor for enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
 
tokenLifetime - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
The token lifetime.
tokenLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
Lookup function for the token lifetime.
tokenMetadataPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeRegistrationMetadataPolicyContext
The strategy used to locate the request metadata policy encoded in the access token.
TokenRequestAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns a copy of requested resource list from a TokenRequest.
TokenRequestAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
TokenRequestAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestAudienceLookupFunction
 
TokenRequestAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAudienceLookupFunction
Deprecated.
 
TokenRequestAuthorizationCodeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
TokenRequestAuthorizationCodeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAuthorizationCodeLookupFunction
Deprecated.
 
TokenRequestAuthTimeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For Token and UserInfo end points.
TokenRequestAuthTimeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestAuthTimeLookupFunction
 
TokenRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
For Token, Revocation and other end points supporting client authentication.
TokenRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
TokenRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestClientIDLookupFunction
 
TokenRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestClientIDLookupFunction
Deprecated.
 
TokenRequestConsentedAttributesLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For Token and UserInfo end points.
TokenRequestConsentedAttributesLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestConsentedAttributesLookupFunction
 
TokenRequestDeliveryClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For Token and UserInfo end points.
TokenRequestDeliveryClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestDeliveryClaimsLookupFunction
 
TokenRequestIDTokenDeliveryClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For Token end point.
TokenRequestIDTokenDeliveryClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestIDTokenDeliveryClaimsLookupFunction
 
TokenRequestNonceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For Token and UserInfo end points.
TokenRequestNonceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestNonceLookupFunction
 
TokenRequestRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
For Token endpoint.
TokenRequestRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
TokenRequestRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestRedirectURILookupFunction
 
TokenRequestRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRedirectURILookupFunction
Deprecated.
 
TokenRequestRequestedClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For Token and UserInfo end points.
TokenRequestRequestedClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestRequestedClaimsLookupFunction
 
TokenRequestScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate
A function that returns a copy of requested scopes from a TokenRequest.
TokenRequestScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
Deprecated, for removal: This API element is subject to removal in a future version.
TokenRequestScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.TokenRequestScopeLookupFunction
 
TokenRequestScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestScopeLookupFunction
Deprecated.
 
TokenRequestSessionIdLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For Token and UserInfo end points.
TokenRequestSessionIdLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestSessionIdLookupFunction
 
TokenRequestSubjectLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For Token and UserInfo end points.
TokenRequestSubjectLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestSubjectLookupFunction
 
TokenRequestTokenClaimsSetLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A bi-function that returns value for the given claim via a lookup function.
TokenRequestTokenClaimsSetLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestTokenClaimsSetLookupFunction
 
TokenRequestUserInfoDeliveryClaimsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For user info end point.
TokenRequestUserInfoDeliveryClaimsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestUserInfoDeliveryClaimsLookupFunction
 
TokenRequestValidRequestURIsLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For Token and UserInfo end points.
TokenRequestValidRequestURIsLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.TokenRequestValidRequestURIsLookupFunction
 
tokenRevocationCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Predicate used to indicate whether the authorization code or refresh token is revoked.
tokenRevocationCondition - Variable in class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.TokenRevocationConditionValidator
Token revocation condition to use.
TokenRevocationConditionValidator - Class in net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl
Verifies the claims set against configurable token revocation condition.
TokenRevocationConditionValidator() - Constructor for class net.shibboleth.idp.plugin.oidc.op.security.jwt.claims.impl.TokenRevocationConditionValidator
 
tokenRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.RevokeToken
Lookup function to supply token revocation lifetime.
tokenRevocationLifetimeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
Lookup function to supply token revocation lifetime.
toString() - Method in class net.shibboleth.idp.plugin.oidc.op.criterion.IssuerCriterion
toString() - Method in class net.shibboleth.idp.plugin.oidc.op.messaging.JSONSuccessResponse
Deprecated.
toString(HTTPRequest) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
Helper method to print request to string for logging.
toString(HTTPRequest, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.decoding.impl.RequestUtil
Helper method to print request to string for logging.
toString(HTTPResponse) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method to print response to string for logging.
toString(HTTPResponse, ObjectMapper) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method to print response to string for logging.
toString(HttpServletResponse, String) - Static method in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.ResponseUtil
Helper method to print response to string for logging.
transcoderRegistry - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddAttributesToClaimsSet
Transcoder registry service object.
transcoderRegistry - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRequestedClaimsToResponseContext
Transcoder registry service object.
transcoderRegistry - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesToResponseContext
Transcoder registry service object.
transcoderRegistry - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.AttributeResolutionSubjectLookupFunction
Transcoder registry service object.
transformResourceParameter(String) - Static method in class net.shibboleth.idp.plugin.oidc.op.oauth2.decoding.impl.BaseOAuth2RequestDecoder
Transforms the 'resource' parameter values in the given input to contain a prefix defined by DefaultRequestAudienceLookupFunction.CUSTOM_RESOURCE_PARAM_PREFIX.
typeHeaderLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenSerializationFunction
Strategy used to lookup the type header value for the JWT.
typeHeaderValidationStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultJwtRefreshTokenDeserializationFunction
Strategy used to validate the incoming JWT type header value.

U

unregisteredClientAllowedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultAllowedScopeLookupFunction
Lookup strategy for fetching the allowed scope for unregistered clients.
unregisteredClientIdLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.InitializeOutboundAuthenticationResponseMessageContext
Strategy used to fetch the unregistered client ID value associated with a given ProfileRequestContext.
unregisteredClientPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
Enforcer function for validating client ID against the configured policy.
unregisteredClientPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Enforcer function for validating redirect URI against the configured policy.
unregisteredClientPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Enforcer function for validating response type against the configured policy.
unregisteredClientPolicyEnforcer - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
Enforcer function for fetching allowed scope via the configured policy.
unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
Strategy used to locate the unregistered client policy configured for the profile.
unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Strategy used to locate the unregistered client policy configured for the request.
unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Strategy used to locate the unregistered client policy configured for the profile.
unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientAllowedScopeLookupFunction
Strategy used to locate the unregistered client policy.
unregisteredClientPolicyLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientResponseTypesLookupFunction
Deprecated.
Strategy used to locate the unregistered client policy.
URL_PARAM_CLIENT_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
The URL parameter name for the client identifier.
URL_PARAM_LIFETIME - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
The URL parameter name for the access token lifetime.
URL_PARAM_POLICY_ID - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
The URL parameter name for the relying party identifier.
URL_PARAM_POLICY_LOCATION - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
The URL parameter name for the metadata policy location.
URL_PARAM_REPLACEMENT - Static variable in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
The URL parameter name for the replacement flag.
useOnlyRequestObjectPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.navigate.AbstractAuthorizationRequestLookupFunction
The predicate to decide if the parameter values may only be set in the request object.
userInfo - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
The user info formed.
userinfoClaims - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseTokenClaimsContext
Claims for userinfo only.
userInfoClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.audit.impl.ClaimsAuditExtractor
Lookup strategy for user info claims to read from.
userinfoDeliveryClaimsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetTokenDeliveryAttributesFromTokenToResponseContext
Strategy used to obtain the user info delivery claims.
UserInfoRequestClientIDLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
For UserInfo end point.
UserInfoRequestClientIDLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.UserInfoRequestClientIDLookupFunction
 
UserInfoResponseClaimsSetLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns user info claims set from response context.
UserInfoResponseClaimsSetLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.UserInfoResponseClaimsSetLookupFunction
 
userInfoSigAlgStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.AddUserInfoShell
Strategy used to determine user info response signing algorithm.

V

validate() - Method in class net.shibboleth.idp.plugin.oidc.op.cli.IssueRegistrationAccessTokenArguments
ValidateAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl
Action that validates the claims pulled from an access token as usable for access to the OP's UserInfo endpoint.
ValidateAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.userinfo.profile.impl.ValidateAccessToken
Constructor.
ValidateAudience - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that validates requested resource/audience values against a computed set of "allowed" values and populates the resulting set into the OIDCAuthenticationResponseContext and a ProxiedRequesterContext.
ValidateAudience() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAudience
Constructor.
ValidateAuthorizationRequestType - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
An action that validates the incoming OAuth2 authorization request via configurable strategy.
ValidateAuthorizationRequestType() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateAuthorizationRequestType
Constructor.
ValidateClientAuthenticationType - Class in net.shibboleth.idp.plugin.oidc.op.authn.impl
Validates the client authentication type with the token_endpoint_auth_method stored in the client's metadata and the profile configuration.
ValidateClientAuthenticationType() - Constructor for class net.shibboleth.idp.plugin.oidc.op.authn.impl.ValidateClientAuthenticationType
Constructor.
ValidateClientIDAgainstPolicy - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Validates a client ID against unregistered client policy via configurable policy enforcer.
ValidateClientIDAgainstPolicy() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateClientIDAgainstPolicy
Constructor.
ValidateCodeChallenge - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Validates the presence of PKCE code challenge parameter from the incoming authentication request.
ValidateCodeChallenge() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateCodeChallenge
Constructor.
validatedAudience - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Validated audience values.
ValidatedAudienceLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
ValidatedAudienceLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedAudienceLookupFunction
 
ValidateDPoPProof - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action validates DPoP Proof JWT if already stored to the context.
ValidateDPoPProof() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateDPoPProof
Constructor.
ValidatedRedirectUriAuditExtractor - Class in net.shibboleth.idp.plugin.oidc.op.audit.impl
Looks up the validated redirect URI value from the OIDC authentication response context.
ValidatedRedirectUriAuditExtractor() - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ValidatedRedirectUriAuditExtractor
Constructor.
ValidatedRedirectUriAuditExtractor(Function<ProfileRequestContext, OIDCAuthenticationResponseContext>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.audit.impl.ValidatedRedirectUriAuditExtractor
Constructor.
ValidatedRedirectURILookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
A function that returns validated redirect uri from response context.
ValidatedRedirectURILookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedRedirectURILookupFunction
 
validatedScope - Variable in class net.shibboleth.idp.plugin.oidc.op.messaging.context.OIDCAuthenticationResponseContext
Validated scope values.
ValidatedScopeLookupFunction - Class in net.shibboleth.idp.plugin.oidc.op.profile.context.navigate
ValidatedScopeLookupFunction() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.context.navigate.ValidatedScopeLookupFunction
 
validatedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.IssueIDTokenCondition
Lookup strategy for the validated scope.
validatedScopeLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.OfflineAccessScopeCondition
Lookup strategy for the validated scope.
ValidatedScopePredicate - Class in net.shibboleth.idp.plugin.oidc.op.messaging.context.logic
Predicate that evaluates a ProfileRequestContext by looking for the validated Scope that matches one of a designated set of string values, a single value, or a generic predicate.
ValidatedScopePredicate(String) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
Constructor.
ValidatedScopePredicate(Collection<String>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
Constructor.
ValidatedScopePredicate(Predicate<Scope>) - Constructor for class net.shibboleth.idp.plugin.oidc.op.messaging.context.logic.ValidatedScopePredicate
Constructor.
ValidateGrant - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that validates an authorization grant.
ValidateGrant(DataSealer) - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrant
Constructor.
ValidateGrantType - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
An action that validates the grant type is registered to the requesting RP.
ValidateGrantType() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateGrantType
Constructor.
ValidateIdTokenHint - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
Action validates ID token hint in response context.
ValidateIdTokenHint() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidateIdTokenHint
 
validateJWTClaims(ProfileRequestContext, SignedJWT, ClientID) - Method in class net.shibboleth.idp.plugin.oidc.op.authn.impl.JWTCredentialValidator
Validates the contents of the given JWT against the requirements set in the OIDC core specification section 9.
ValidatePKCE - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action performs PKCE (https://oauth.net/2/pkce/) validation.
ValidatePKCE() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidatePKCE
Constructor.
ValidatePostLogoutRedirectURI - Class in net.shibboleth.idp.plugin.oidc.op.logout.profile.impl
Action that validates post redirect URI is expected if it's being requested.
ValidatePostLogoutRedirectURI() - Constructor for class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.ValidatePostLogoutRedirectURI
Constructor.
ValidatePushedAuthorizationClientIDMatch - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Validates the client ID in the incoming authorization request matches with the one used in endpoint authentication.
ValidatePushedAuthorizationClientIDMatch() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidatePushedAuthorizationClientIDMatch
Constructor.
ValidateRedirectURI - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that validates redirect uri is expected.
ValidateRedirectURI() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Constructor.
ValidateRegistrationAccessToken - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action that validates registration access token is a valid one.
ValidateRegistrationAccessToken() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationAccessToken
Constructor.
ValidateRegistrationRequestMetadata - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Validates the incoming dynamic client registration request against the metadata policy stored in the OIDCClientRegistrationMetadataPolicyContext.
ValidateRegistrationRequestMetadata() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.ValidateRegistrationRequestMetadata
Constructor.
validateRemoteJwkSetPredicate - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.AddJwksToClientMetadata
Predicate used to indicate whether contents of remote JWK set should be validated.
ValidateRequestObject - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action validates request object in response context.
ValidateRequestObject() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRequestObject
Constructor.
ValidateResponseMode - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
An action that validates the requested response_mode is compliant with the profile configuration.
ValidateResponseMode() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
Constructor.
ValidateResponseType - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
An action that validates the requested response_type is (1) registered to the requesting RP (or accepted in the policy for unregistered clients) and (2) valid for the protocol used for request.
ValidateResponseType() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Constructor.
ValidateScope - Class in net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl
Action that validates requested and previously granted scopes are also registered in client metadata and stores the resulting set in the response context.
ValidateScope() - Constructor for class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateScope
Constructor.
validRedirectURIsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateRedirectURI
Strategy used to obtain the redirect uris to compare request value to.
validRedirectURIsLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPostLogoutRedirectURIValidationPredicate
Strategy used to obtain the redirect uris to compare request value to.
validResponseModesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseMode
Lookup strategy for fetching the valid response modes.
validResponseTypesLookupStrategy - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.ValidateResponseType
Lookup strategy for fetching the valid response types matching the request message.
VALUE_TYPE_AC - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.AuthorizeCodeClaimsSet
Value of authorize code claims set type.
VALUE_TYPE_AT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.AccessTokenClaimsSet
Value of access token claims set type.
VALUE_TYPE_RF - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RefreshTokenClaimsSet
Value of refresh token claims set type.
VALUE_TYPE_RT - Static variable in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet
Value of initial registration access token claims set type.
valueOf(String) - Static method in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
Returns the enum constant of this class with the specified name.
values() - Static method in enum class net.shibboleth.idp.plugin.oidc.op.profile.spring.TokenExtensionFactory.TokenExtensionType
Returns an array containing the constants of this enum class, in the order they are declared.
velocityEngine - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
Velocity engine used to evaluate the template when using FORM POST response mode.
velocityTemplateId - Variable in class net.shibboleth.idp.plugin.oidc.op.encoding.impl.NimbusResponseEncoder
ID of the Velocity template used when using FORM POST response mode.
verifyClientIdPolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
Verifies that the client_id is specified with one_of or regexp -operators.
verifyEssentiality(Collection<IdPAttribute>) - Method in class net.shibboleth.idp.plugin.oidc.op.attribute.filter.matcher.impl.AttributeInOIDCRequestedClaimsMatcher
Checks whether any of the matching requested claims have the required flag set if necessary.
verifyParsedClaims(String, JWTClaimsSet) - Static method in class net.shibboleth.idp.plugin.oidc.op.token.support.TokenClaimsSet
Helper to verify parsed claims are what is expected.
verifyRedirectUriPolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
Verifies that the redirect_uri is specified with one_of or regexp -operators.
VerifyRequestedSubjectIdentifier - Class in net.shibboleth.idp.plugin.oidc.op.profile.impl
Action verifies that produced subject equals to requested subject if such exists.
VerifyRequestedSubjectIdentifier() - Constructor for class net.shibboleth.idp.plugin.oidc.op.profile.impl.VerifyRequestedSubjectIdentifier
 
verifyResponseTypePolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
Verifies that the response type is specified with one_of -operator.
verifyScopePolicy(MetadataPolicy) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultUnregisteredClientPolicyValidator
Verifies that the scope is specified with value -operator.
verifySectorIdUri(URI, Set<URI>) - Method in class net.shibboleth.idp.plugin.oidc.op.profile.impl.CheckRedirectURIs
Verifies that all the given redirect URIs are found from the contents of the given sector identifier URI.

W

withAcr(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Set the authentication context class reference value of the performed authentication.
withAuthTime(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Set the authentication time of the performed authentication.
withClientId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Set the client identifier.
withExpiration(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Set the expiration time of the token.
withIssuedAt(Instant) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Set the issuance time of the token.
withIssuer(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Sets the issuer of the token.
withMetadata(Map<String, MetadataPolicy>) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Set the allowed metadata values to be issued with the token.
withPrincipal(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Set the principal who issued the token.
withRelyingPartyId(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Set the relying party identifier.
withReplacement(Boolean) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Set the flag to signal replacement use of the token.
withType(String) - Method in class net.shibboleth.idp.plugin.oidc.op.token.support.RegistrationClaimsSet.Builder
Sets the type of the token.

X

xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.admin.impl.IssueRegistrationAccessToken
The xmlSafe-flag passed to the identifier generator.
xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.logout.profile.impl.PrepareBackChannelLogoutRequest
The xmlSafe-flag passed to the identifier generator.
xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.BuildAccessToken
The xmlSafe-flag passed to the identifier generator.
xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.oauth2.profile.impl.SetAuthorizationCodeToResponseContext
The xmlSafe-flag passed to the identifier generator.
xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientID
The xmlSafe-flag passed to the identifier generator.
xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.GenerateClientSecret
The xmlSafe-flag passed to the identifier generator.
xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.impl.SetRefreshTokenToResponseContext
The xmlSafe-flag passed to the identifier generator.
xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.DefaultPushedAuthorizationRequestUriSerializationFunction
The xmlSafe-flag passed to the identifier generator.
xmlSafeIdentifier - Variable in class net.shibboleth.idp.plugin.oidc.op.profile.logic.StorageServicePushedAuthorizationRequestUriSerializationFunction
The xmlSafe-flag passed to the identifier generator.
A B C D E F G H I J K L M N O P R S T U V W X 
All Classes and Interfaces|All Packages|Constant Field Values|Serialized Form