Index
All Classes and Interfaces|All Packages|Constant Field Values
A
- AbstractAgentAndRelyingPartyContextLookupFunction<ResultType> - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Abstract base class for lookup functions that require access to both
AgentRequestContextandRelyingPartyContextfrom aMessageContext. - AbstractAgentAndRelyingPartyContextLookupFunction() - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Constructor.
- AbstractAgentAndRelyingPartyContextLookupFunction.DDFDirection - Enum Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Either the input or output DDF message from the agent.
- AbstractAuthorizationResponseAction - Class in net.shibboleth.sp.oidc.profile.impl
-
Abstract class for actions based on the
AuthenticationResponselocated under theInOutOperationContext.getInboundMessageContext(). - AbstractAuthorizationResponseAction() - Constructor for class net.shibboleth.sp.oidc.profile.impl.AbstractAuthorizationResponseAction
-
Constructor.
- AbstractHttpOAuthAction<T extends com.nimbusds.oauth2.sdk.Response> - Class in net.shibboleth.sp.oidc.profile.impl
-
An abstract class for OIDC/OAuth actions that make synchronous HTTP requests and return types of
responses. - AbstractHttpOAuthAction() - Constructor for class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
- AbstractProviderMetadataLookupFunction<F extends org.opensaml.messaging.context.BaseContext,
ResultType> - Class in net.shibboleth.sp.oidc.profile.context.navigate -
An abstract base class for pulling out the OpenID Provider metadata.
- AbstractProviderMetadataLookupFunction() - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.AbstractProviderMetadataLookupFunction
-
Constructor.
- AbstractUserInfoResponseTypeCondition - Class in net.shibboleth.sp.oidc.messaging.context.logic
-
Abstract predicate for pulling out the
UserInfoResponseContext. - AbstractUserInfoResponseTypeCondition() - Constructor for class net.shibboleth.sp.oidc.messaging.context.logic.AbstractUserInfoResponseTypeCondition
-
Constructor.
- AbstractUserInfoResponseTypeCondition(Function<ProfileRequestContext, UserInfoResponseContext>) - Constructor for class net.shibboleth.sp.oidc.messaging.context.logic.AbstractUserInfoResponseTypeCondition
-
Constructor.
- AbstractUserInfoTokenResponseLookupStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Base class for looking up the UserInfo token response context.
- AbstractUserInfoTokenResponseLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.AbstractUserInfoTokenResponseLookupStrategy
-
Constructor.
- AbstractUserInfoTokenResponseLookupStrategy(Function<ProfileRequestContext, UserInfoResponseContext>) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.AbstractUserInfoTokenResponseLookupStrategy
-
Constructor.
- accept(JWT, MessageContext) - Method in class net.shibboleth.sp.oidc.messaging.context.navigate.RequestObjectTokenUpdateStrategy
- accept(ProfileRequestContext, JWT) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.UserInfoInUserInfoResponseContextUpdateStrategy
- accept(ProfileRequestContext, String) - Method in class net.shibboleth.sp.oidc.profile.impl.SetIssuerToPeerContextConsumer
- acceptUnfilteredAttributes - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Whether to accept decoded attributes that no filter rules applied to.
- accessTokenResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.PrepareAgentResponse
-
Strategy used to look up the
AccessTokenResponseContext. - accessTokenResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Strategy used to look up the
AccessTokenResponseContext. - addToExistingInboundMessageContextPredicate - Variable in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
-
Should the peer entity context be added to an existing inbound message context or not.
- agentRequestContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Lookup strategy for
AgentRequestContext. - ApplicationMetadataResolverLookupFunction - Class in net.shibboleth.sp.oidc.profile.impl
-
Locates the
ProviderMetadataResolverassociated with theApplicationmaking an agent request. - ApplicationMetadataResolverLookupFunction() - Constructor for class net.shibboleth.sp.oidc.profile.impl.ApplicationMetadataResolverLookupFunction
- apply(ClaimsSet) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidationClaimStrippingSanitizationStrategy
- apply(ClaimsSet, ClaimsSet) - Method in class net.shibboleth.sp.oidc.profile.impl.DefaultClaimMergingStrategy
- apply(OIDCProviderMetadata) - Method in class net.shibboleth.sp.oidc.metadata.impl.RequestObjectSupportedSignatureSigningAlgorithms
- apply(EndUserClaimsContext) - Method in class net.shibboleth.sp.oidc.profile.impl.StandardExtractionStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.messaging.context.navigate.JWTClaimsSetFromRequestObjectLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.messaging.context.navigate.PayloadFromRequestObjectLookupFunction
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.messaging.context.navigate.StateTokenLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.AuthenticationContextClassRefLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.AuthorizationEndpointLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.DisplayParameterLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.ForceAuthnParameterLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.LoginHintLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.MaxAgeLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.NonceLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.PKCEOptionsLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.PromptLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.RedirectUriLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.RequestedClaimsLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.ResourceLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.ResponseModeLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.ResponseTypeLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.ScopeLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.UiLocalesLookupStrategy
- apply(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ApplicationMetadataResolverLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.messaging.context.navigate.StateFromResponseLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.RedirectUriLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AuthenticationRequestFromOutboundLookupStrategy
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AuthenticationRequestTimeLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.EncryptedUserInfoJWTLookupStrategy
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.MaxAgeFromAuthenticationRequestLookupFunction
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.PKCECodeVerifierFromStateLookupStrategy
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.RedirectUriFromStateLookupStrategy
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.UserInfoJWTLookupStrategy
- apply(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.AuthenticationRequestStateForStorageStrategy
- apply(ProfileRequestContext, JWTClaimsSet) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.ClientIdBiFunctionLookupStrategy
- apply(ProfileRequestContext, JWTClaimsSet) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.NonceFromAuthenticationRequestStateLookupStrategy
- apply(ProfileRequestContext, JWTClaimsSet) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.RequestedACRClaimsFromStateLookupStrategy
- attributeContext - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Context for externally supplied inbound attributes.
- attributeContextCreationStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Strategy used to create
AttributeContextto hold results. - authenticatableOIDCContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.messaging.context.logic.RequiresSignatureVerificationPredicate
-
Strategy used to lookup the
AbstractAuthenticatableOIDCContextto test. - authenticationAuthorityLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.AuthenticationRequestStateForStorageStrategy
-
Strategy to locate authentication authority, that is the issuer of the eventual authentication response.
- AuthenticationContextClassRefLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
A strategy function that extracts requested Authentication Context Class References (ACRs) from the inbound
MessageContextand returns them as a list ofACRobjects. - AuthenticationContextClassRefLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.AuthenticationContextClassRefLookupStrategy
- AuthenticationRequestFromOutboundLookupStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Lookup strategy that returns the
OIDCAuthenticationRequestfrom the outbound message context. - AuthenticationRequestFromOutboundLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.AuthenticationRequestFromOutboundLookupStrategy
- authenticationRequestLookupStrategy - Variable in class net.shibboleth.sp.oidc.messaging.context.navigate.JWTClaimsSetFromRequestObjectLookupFunction
-
Strategy used to locate the
OIDCAuthenticationRequestto sign. - authenticationRequestLookupStrategy - Variable in class net.shibboleth.sp.oidc.messaging.context.navigate.PayloadFromRequestObjectLookupFunction
-
Strategy used to locate the
OIDCAuthenticationRequestto sign. - authenticationRequestLookupStrategy - Variable in class net.shibboleth.sp.oidc.messaging.context.navigate.RequestObjectTokenUpdateStrategy
-
Strategy used to locate the
OIDCAuthenticationRequestto sign. - authenticationRequestLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.AuthenticationRequestStateForStorageStrategy
-
Strategy to locate the authentication request.
- AuthenticationRequestStateData - Class in net.shibboleth.sp.oidc.profile
-
A DTO class that carries OIDC specific authentication request information that needs to be recovered to validate the authentication response.
- AuthenticationRequestStateData() - Constructor for class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
- AuthenticationRequestStateForStorageStrategy - Class in net.shibboleth.sp.oidc.profile.impl
-
A
Functionthat producesStateDatarepresenting authentication request state that is required for validating the authentication response. - AuthenticationRequestStateForStorageStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.impl.AuthenticationRequestStateForStorageStrategy
- AuthenticationRequestTimeLookupFunction - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Lookup function that returns the time at which the RP sent the authentication request, as taken from the authentication request state object recovered when the response delivered via the Agent.
- AuthenticationRequestTimeLookupFunction() - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.AuthenticationRequestTimeLookupFunction
-
Constructor.
- authenticationResponse - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateAuthenticationResponseResult
-
Context containing the result to examine.
- authenticationStateDataLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.NonceFromAuthenticationRequestStateLookupStrategy
-
The strategy used to lookup the
AuthenticationRequestStateData. - AUTHN_CONTEXT_CLASS_REF - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
authnContextClassRef input parameter.
- AUTHN_STATE_FIELD - Static variable in class net.shibboleth.sp.oidc.profile.OIDCConstants
-
Name of the authentication state token field that references the authentication state in the token manager.
- authnContextClassRefAttributeId - Variable in class net.shibboleth.sp.oidc.profile.impl.StandardExtractionStrategy
-
Attribute ID holding AuthnContext class ref.
- authnInstantAttributeId - Variable in class net.shibboleth.sp.oidc.profile.impl.StandardExtractionStrategy
-
Attribute ID holding authentication instant.
- authnRequest - Variable in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
OIDC authentication request built by the IdP.
- authnResponse - Variable in class net.shibboleth.sp.oidc.profile.impl.AbstractAuthorizationResponseAction
-
OIDC authentication response from upstream OP.
- AuthorizationEndpointLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
Get the OAuth 2.0 authorization endpoint from the OpenID Provider metadata.
- AuthorizationEndpointLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.AuthorizationEndpointLookupStrategy
- AuthTimeRequestedActivationCondition - Class in net.shibboleth.sp.oidc.profile.context.logic
-
Has the auth_time claim been requested? This is taken from the authentication request state.
- AuthTimeRequestedActivationCondition(Function<ProfileRequestContext, StateDataContext>) - Constructor for class net.shibboleth.sp.oidc.profile.context.logic.AuthTimeRequestedActivationCondition
-
Constructor.
- authTimeRequired - Variable in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Has auth_time been requested and is required inside the id_token? either because the max_age parameter was used, or the claims parameter requested auth_time.
B
- BasicOIDCProtocolSupportService - Class in net.shibboleth.sp.oidc
-
A basic implementation of
OIDCProtocolSupportService. - BasicOIDCProtocolSupportService() - Constructor for class net.shibboleth.sp.oidc.BasicOIDCProtocolSupportService
- buildClientAuthenticationJwt(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Build a signed JWT bearer token for client authentication using the populated security parameters.
- buildClientAuthenticationJwtClaims(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Build the claim values required for a client authentication bearer JWT.
- buildErrorResponseString(AuthenticationErrorResponse) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateAuthenticationResponseResult
-
Build an error response string from the
ErrorResponseobject. - BuildRequestObject - Class in net.shibboleth.sp.oidc.profile.impl
-
Action that creates a Request Object
JWT, and sets it to the work contextOIDCAuthenticationRequestlocated underInOutOperationContext.getOutboundMessageContext(). - BuildRequestObject() - Constructor for class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Constructor.
C
- claimMergingStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
The strategy used to merge UserInfo claims with id_token claims.
- claimSanitizationStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
The strategy used to sanitize claims in an input claimset.
- claimsSet - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
-
The parsed claimset.
- claimsSetIsValidPredicate - Variable in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
A hook to allow additional checking of the request object claims after it is built.
- claimsValidator - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
-
The JWT claims validator used to verify the claimsset.
- cleanupHook - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
-
A cleanup hook to execute after either a successful or unsuccessful claims validation.
- clientAuthMethod - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
The stashed client authentication method to use.
- clientCredential - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
The stashed client_secret to use if required.
- clientId - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
The stashed client identifier for this request.
- ClientIdBiFunctionLookupStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
A strategy that adapts a
Functioninto aBiFunctionfor clientId lookup. - ClientIdBiFunctionLookupStrategy(Function<ProfileRequestContext, String>) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.ClientIdBiFunctionLookupStrategy
-
Constructor.
- clientIdLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.ClientIdBiFunctionLookupStrategy
-
The delegated to clientId lookup strategy.
- clockSkew - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.AuthenticationRequestTimeLookupFunction
-
A clock skew to apply to the authentication request time.
- contextClassLookupStrategy - Variable in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Strategy to resolve the context class to add the resolved metadata too.
- copyContextStrategy - Variable in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Optional strategy for resolving an existing metadata context from which to copy data.
- CorrelationCookieStateContext - Class in net.shibboleth.sp.oidc.context
-
A context to hold the browser bound correlation cookie referenced from the OAuth state.
- CorrelationCookieStateContext() - Constructor for class net.shibboleth.sp.oidc.context.CorrelationCookieStateContext
- CreateAuthenticationStateData - Class in net.shibboleth.sp.oidc.profile.impl
-
An action that looks up
StateDatausing a configured lookup strategy and adds it to aStateDataContextobtained from the profile request context using a configured creation strategy. - CreateAuthenticationStateData() - Constructor for class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
-
Constructor.
- customClaimsStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
A strategy hook to add custom claims to the claims set.
D
- dataSealer - Variable in class net.shibboleth.sp.oidc.profile.impl.PrepareAgentResponse
-
Optional data sealer to use.
- DDFDirection() - Constructor for enum class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction.DDFDirection
- decodeAttribute(AttributeTranscoderRegistry, ProfileRequestContext, JSONObject, Multimap<String, IdPAttribute>) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Access the registry of transcoding rules to transform (decode) the input claims to IdP Attributes.
- DefaultClaimMergingStrategy - Class in net.shibboleth.sp.oidc.profile.impl
-
A default merging strategy for combing claims in the UserInfo response with those from the id_token.
- DefaultClaimMergingStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.impl.DefaultClaimMergingStrategy
- determineIsPassive(OIDCAuthenticationRequest) - Static method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Determine if the authentication request is passive by checking if the prompt parameter contains "none".
- DISPLAY - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
Display input parameter.
- DisplayParameterLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
Retrieve the 'display' parameter from either the
DDFif present, or the profile configuration. - DisplayParameterLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.DisplayParameterLookupStrategy
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ExchangeCodeForAccessToken
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeAuthorizationRequest
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOutboundMessageContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializePeerEntityContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.UserInfoEndpointLookup
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateAuthenticationResponseResult
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateOAuthAccessTokenResponse
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
- doExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
- doInitialize() - Method in class net.shibboleth.sp.oidc.BasicOIDCProtocolSupportService
-
.
- doInitialize() - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
- doInitialize() - Method in class net.shibboleth.sp.oidc.profile.impl.AuthenticationRequestStateForStorageStrategy
- doInitialize() - Method in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
- doInitialize() - Method in class net.shibboleth.sp.oidc.profile.impl.InitializePeerEntityContext
- doInitialize() - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
- doInitialize() - Method in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
- doInitialize() - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
- doInvoke(MessageContext) - Method in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
- doInvoke(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractAuthorizationResponseAction
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeAuthorizationRequest
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOutboundMessageContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareAgentResponse
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateAuthenticationResponseResult
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
- doPreExecute(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
- doPreInvoke(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
- doTest(ProfileRequestContext, UserInfoResponseContext) - Method in class net.shibboleth.sp.oidc.messaging.context.logic.AbstractUserInfoResponseTypeCondition
-
Implementations should override this method to provide necessary logic.
- doTest(ProfileRequestContext, UserInfoResponseContext) - Method in class net.shibboleth.sp.oidc.messaging.context.logic.UserInfoPlainResponseTypeCondition
E
- EncryptedUserInfoJWTLookupStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Function that extracts the UserInfo JWT from the
UserInfoResponseContextiff it is anEncryptedJWTtype. - EncryptedUserInfoJWTLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.EncryptedUserInfoJWTLookupStrategy
-
Constructor.
- EncryptedUserInfoJWTLookupStrategy(Function<ProfileRequestContext, UserInfoResponseContext>) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.EncryptedUserInfoJWTLookupStrategy
-
Constructor.
- endUserClaimsContext - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Context containing the claims(s) to process.
- endUserClaimsContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Strategy used to look up
EndUserClaimsContextto operate on. - endUserClaimsContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Strategy used to look up the
EndUserClaimsContextto set the parameters for. - equals(Object) - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
- ExchangeCodeForAccessToken - Class in net.shibboleth.sp.oidc.profile.impl
-
Action to exchange the authorization code in the authentication response for an OAuth access token which contains an OIDC id_token.
- ExchangeCodeForAccessToken() - Constructor for class net.shibboleth.sp.oidc.profile.impl.ExchangeCodeForAccessToken
-
Constructor.
- executeHttpRequest(ClassicHttpRequest, AbstractAuthenticatableOIDCContext) - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Performs a call to an Http endpoint using the configured HttpClient, HttpClientResponseHandler, and security parameters.
- ExtractOIDCClaims - Class in net.shibboleth.sp.oidc.profile.impl
-
An action that extracts OIDC End-User claims from the combined id_token and UserInfo response claims in the
EndUserClaimsContext. - ExtractOIDCClaims() - Constructor for class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Constructor.
F
- filterAttributes(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Check for inbound attributes and apply filtering.
- FORCE_AUTHN - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
ForceAuthn input parameter.
- ForceAuthnParameterLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
Retrieve the ForceAuthn parameter.
- ForceAuthnParameterLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.ForceAuthnParameterLookupStrategy
- formatErrorResponse(ErrorObject) - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Format an error message string from the
ErrorObjectprovided. - from(OIDCAuthenticationRequest, String) - Static method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Create an instance of this class from the given authentication request and authentication authority.
G
- generateRandom(Integer) - Static method in class net.shibboleth.sp.oidc.profile.OIDCSupport
-
Generates a secure random identifier, encoded in Hex..
- getAgent(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Gets the
Agentfor this request. - getAgentRequestContext(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Invokes the installed lookup function to locate the
AgentRequestContext. - getApplication(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Gets the
Applicationfor this request. - getAuthenticationResponse() - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractAuthorizationResponseAction
-
Returns the authentication response from the upstream OP.
- getCorrelationCookieValue() - Method in class net.shibboleth.sp.oidc.context.CorrelationCookieStateContext
-
Get the cookie value as a JSON object.
- getDDF(MessageContext, AbstractAgentAndRelyingPartyContextLookupFunction.DDFDirection) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Gets the
DDFfor this request, either the input from the agent or the output for the agent. - getHttpRequestEncoderStrategy() - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Get the HTTP request encoder strategy.
- getHttpResponseDecoderStrategy() - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Get the HTTP response decoder/handler strategy.
- getMaxAge() - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Set the maxAge, a null value indicates no maxAge was specified in the authentication request.
- getMetadataResolver() - Method in class net.shibboleth.sp.oidc.BasicOIDCProtocolSupportService
-
Gets the default
ProviderMetadataResolverservice to use. - getMetadataResolver() - Method in interface net.shibboleth.sp.oidc.OIDCProtocolSupportService
-
Gets the default
ProviderMetadataResolverservice to use. - getNonce() - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Get the nonce expected in the id_token response.
- getOIDCRelyingPartyProfileConfiguration(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Extracts the
OIDCAuthenticationRelyingPartyProfileConfigurationfrom the givenMessageContext. - getPkceCodeVerifier() - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Get the PKCE code verifier used to generate the code challenge in the authentication request.
- getProviderMetadata(MessageContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractProviderMetadataLookupFunction
-
Gets the
OIDCProviderMetadatafor this request. - getProviderMetadataContext() - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractAuthorizationResponseAction
-
Returns the OIDC provider metadata context.
- getSessionData(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareAgentResponse
- getState() - Method in class net.shibboleth.sp.oidc.context.OAuthStateContext
-
Gets the raw OAuth 2.0 state string.
- getState(MessageContext) - Static method in class net.shibboleth.sp.oidc.profile.OIDCSupport
-
Extracts the state parameter value from an
AuthenticationResponse. - getStateJson() - Method in class net.shibboleth.sp.oidc.context.OAuthStateContext
-
Gets the decoded OAuth 2.0 state as a JSON object.
- getUserInfoResponseContextLookupStrategy() - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractUserInfoTokenResponseLookupStrategy
-
Get the UserInfo response context lookup strategy.
- getVersion() - Static method in class net.shibboleth.sp.oidc.conf.Version
-
Get the version of the IdP.
H
- handleRequest(ProfileRequestContext, AbstractAuthenticatableOIDCContext) - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Encode the request using the supplied request encoder strategy, execute a synchronous HTTP request and decode the response using the supplied Http client response decoder strategy/handler.
- hashCode() - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
- httpClient - Variable in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Http client for contacting the endpoint.
- httpClientSecurityParameters - Variable in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
HTTP client security parameters.
- httpRequestEncoderStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
The message encoder to encode the HTTP request into a
HttpUriRequest. - httpResponseDecoderStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
The message decoder (Http response handler) to decode the HTTP response.
I
- idTokenClaims - Variable in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
The stashed id_token claims.
- idTokenClaims - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
The stashed id_token claims.
- InitializeAuthorizationRequest - Class in net.shibboleth.sp.oidc.profile.impl
-
An action that creates an
OIDCAuthenticationRequestshell to populate in future steps, and sets it to the outbound message context. - InitializeAuthorizationRequest() - Constructor for class net.shibboleth.sp.oidc.profile.impl.InitializeAuthorizationRequest
-
Constructor.
- InitializeOAuth2ClientAuthenticationMethodHandler - Class in net.shibboleth.sp.oidc.profile.impl
-
An
actionthat resolves the Client Authentication method for the chosen OpenID Provider (issuer) from the profile configuration, and adds it to theOAuth2ClientAuthenticationContext. - InitializeOAuth2ClientAuthenticationMethodHandler() - Constructor for class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Constructor.
- InitializeOAuth2ClientContext - Class in net.shibboleth.sp.oidc.profile.impl
-
An
actionthat resolves the client identifier and redirect URI for the chosen provider (issuer). - InitializeOAuth2ClientContext() - Constructor for class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
Constructor.
- InitializeOutboundMessageContext - Class in net.shibboleth.sp.oidc.profile.impl
-
Initialize an outbound message context with an OIDC peer entity context ready for an authorization/authentication request to be built.
- InitializeOutboundMessageContext() - Constructor for class net.shibboleth.sp.oidc.profile.impl.InitializeOutboundMessageContext
-
Constructor.
- InitializePeerEntityContext - Class in net.shibboleth.sp.oidc.profile.impl
-
An action that initializes the
OIDCPeerEntityContextbased on the issuer value from theStateData. - InitializePeerEntityContext() - Constructor for class net.shibboleth.sp.oidc.profile.impl.InitializePeerEntityContext
-
Constructor.
- InitializeRelyingPartyContextFromOIDCPeer - Class in net.shibboleth.sp.oidc.profile.impl
-
Action that adds a
RelyingPartyContextto the currentProfileRequestContexttree via a creation function. - InitializeRelyingPartyContextFromOIDCPeer() - Constructor for class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
Constructor.
- input - Variable in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
-
The stashed input DDF from the Agent.
- INPUT - Enum constant in enum class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction.DDFDirection
-
The input message from the agent.
- IS_PASSIVE - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
IsPassive input parameter.
- isAuthTimeRequired() - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Is auth_time required inside the id_token? either because the max_age parameter was used, or the claims parameter requested it.
- isAuthTimeRequired(OIDCAuthenticationRequest) - Static method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Determine if auth_time is required inside the id_token either because the max_age parameter was used, or the claims parameter requested it as an ESSENTIAL claim.
- isFeatureDisallowed(int, MessageContext) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Determine if the feature is disallowed for the current relying party configuration.
- issuerAttributeId - Variable in class net.shibboleth.sp.oidc.profile.impl.StandardExtractionStrategy
-
Attribute ID holding issuer.
- issuerLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Function used to obtain the issuer ID.
- issuerLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Strategy used to obtain the request issuer value.
- issuerLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
Strategy used to obtain the request issuer value.
J
- jwtBearerClientAuthSecurityParameters - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Stashed security parameters context for JWT Bearer Token client authentication methods.
- jwtBearerExpiryOffset - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
The offset to add to the 'exp' claim time for JWT client authentication methods.
- JWTBearerTokenForClientAuthenticationPredicate - Class in net.shibboleth.sp.oidc.messaging.context.logic
-
A predicate that determines if the client authentication method chosen is a JWT type.
- JWTBearerTokenForClientAuthenticationPredicate() - Constructor for class net.shibboleth.sp.oidc.messaging.context.logic.JWTBearerTokenForClientAuthenticationPredicate
- JWTClaimsSetFromRequestObjectLookupFunction - Class in net.shibboleth.sp.oidc.messaging.context.navigate
-
Extract the
Payloadfrom the Request Object inside theOIDCAuthenticationRequest. - JWTClaimsSetFromRequestObjectLookupFunction() - Constructor for class net.shibboleth.sp.oidc.messaging.context.navigate.JWTClaimsSetFromRequestObjectLookupFunction
-
Constructor.
- jwtLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
-
Strategy used to pull out a JWT to validate from the context.
L
- log - Variable in class net.shibboleth.sp.oidc.messaging.context.logic.JWTBearerTokenForClientAuthenticationPredicate
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.messaging.context.logic.RequiresSignatureVerificationPredicate
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.messaging.context.navigate.JWTClaimsSetFromRequestObjectLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.messaging.context.navigate.PayloadFromRequestObjectLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.messaging.context.navigate.RequestObjectTokenUpdateStrategy
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.logic.RequestedACRValidationActivationCondition
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.logic.RequestObjectRequiredAndSupported
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.navigate.AuthenticationContextClassRefLookupStrategy
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.navigate.ForceAuthnParameterLookupStrategy
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.navigate.LoginHintLookupStrategy
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.navigate.PromptLookupStrategy
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.navigate.RedirectUriLookupStrategy
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.navigate.RequestedClaimsLookupStrategy
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.navigate.ResourceLookupStrategy
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.config.navigate.ScopeLookupStrategy
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.context.logic.AuthTimeRequestedActivationCondition
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.EncryptedUserInfoJWTLookupStrategy
-
Logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.RedirectUriFromStateLookupStrategy
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.UserInfoInUserInfoResponseContextUpdateStrategy
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.AbstractAuthorizationResponseAction
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.ApplicationMetadataResolverLookupFunction
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.AuthenticationRequestStateForStorageStrategy
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.DefaultClaimMergingStrategy
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.ExchangeCodeForAccessToken
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeAuthorizationRequest
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOutboundMessageContext
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializePeerEntityContext
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.PrepareAgentResponse
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.SetIssuerToPeerContextConsumer
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.StandardExtractionStrategy
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.UserInfoEndpointLookup
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateAuthenticationResponseResult
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateOAuthAccessTokenResponse
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
-
Class logger.
- log - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
Class logger.
- LOGIN_HINT - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
Login_hint input parameter.
- LoginHintLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
Retrieve the 'login_hint' parameter from the
DDFif it is present and the Hub configuration has not disallowed the Agent from setting it. - LoginHintLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.LoginHintLookupStrategy
M
- main(String[]) - Static method in class net.shibboleth.sp.oidc.conf.Version
-
Main entry point to program.
- MAX_AGE - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
Login_hint input parameter.
- maxAge - Variable in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
The optional max authentication age.
- maxAgeDefault - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.MaxAgeFromAuthenticationRequestLookupFunction
-
Default max authentication age if none can be found on the profile context.
- MaxAgeFromAuthenticationRequestLookupFunction - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Locate the maximum authentication age from the authentication request state.
- MaxAgeFromAuthenticationRequestLookupFunction(Duration) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.MaxAgeFromAuthenticationRequestLookupFunction
-
Constructor.
- MaxAgeLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
Retrieve the max_age parameter from the
DDFif present. - MaxAgeLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.MaxAgeLookupStrategy
- metadataResolver - Variable in class net.shibboleth.sp.oidc.BasicOIDCProtocolSupportService
-
Metadata source.
- metadataResolverLookupStrategy - Variable in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Resolver used to look up OIDC metadata.
N
- net.shibboleth.sp.oidc - package net.shibboleth.sp.oidc
-
Supporting APIs and classes for OIDC protocol support in the SP Hub.
- net.shibboleth.sp.oidc.conf - package net.shibboleth.sp.oidc.conf
-
Module/plugin implementations for SP OIDC support.
- net.shibboleth.sp.oidc.context - package net.shibboleth.sp.oidc.context
-
Context classes for RP-specific information needed by profile actions.
- net.shibboleth.sp.oidc.messaging.context.logic - package net.shibboleth.sp.oidc.messaging.context.logic
-
Predicates related to message context content.
- net.shibboleth.sp.oidc.messaging.context.navigate - package net.shibboleth.sp.oidc.messaging.context.navigate
-
Functions to navigate message contexts.
- net.shibboleth.sp.oidc.metadata.impl - package net.shibboleth.sp.oidc.metadata.impl
- net.shibboleth.sp.oidc.profile - package net.shibboleth.sp.oidc.profile
-
API classes for SP profile actions.
- net.shibboleth.sp.oidc.profile.config.logic - package net.shibboleth.sp.oidc.profile.config.logic
-
Predicates for configuration logic.
- net.shibboleth.sp.oidc.profile.config.navigate - package net.shibboleth.sp.oidc.profile.config.navigate
- net.shibboleth.sp.oidc.profile.context.logic - package net.shibboleth.sp.oidc.profile.context.logic
-
Predicates related to profile context content.
- net.shibboleth.sp.oidc.profile.context.navigate - package net.shibboleth.sp.oidc.profile.context.navigate
-
Functions that navigate profile contexts.
- net.shibboleth.sp.oidc.profile.impl - package net.shibboleth.sp.oidc.profile.impl
-
OIDC Relying Party profile implementation classes.
- nonce - Variable in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
The id_token nonce value.
- NonceFromAuthenticationRequestStateLookupStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Lookup strategy that finds the id_token nonce from the
AuthenticationRequestStateData. - NonceFromAuthenticationRequestStateLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.NonceFromAuthenticationRequestStateLookupStrategy
-
Constructor.
- NonceFromAuthenticationRequestStateLookupStrategy(Function<ProfileRequestContext, AuthenticationRequestStateData>) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.NonceFromAuthenticationRequestStateLookupStrategy
-
Constructor.
- NonceLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
A simple strategy that uses a secure random implementation to generate a nonce of length 16.
- NonceLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.NonceLookupStrategy
O
- oauth2ClientAuthenticationContext - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
The stashed OAuth2 client authentication context.
- oauth2ClientAuthenticationContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
The strategy used to lookup or create the
OAuth2ClientAuthenticationContextfor storing the client authentication. - oauth2ClientContext - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeAuthorizationRequest
-
The stashed OAuth2 client context.
- oauth2ClientContext - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
The stashed OAuth2 client context.
- oauth2ClientContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeAuthorizationRequest
-
The strategy used to lookup or create the
OAuth2ClientContextfor storing the client_id. - oauth2ClientContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
The strategy used to lookup or create the
OAuth2ClientContextfor storing the client_id. - OAuthStateContext - Class in net.shibboleth.sp.oidc.context
-
A context to store information pertaining to the OAuth2 state parameter.
- OAuthStateContext() - Constructor for class net.shibboleth.sp.oidc.context.OAuthStateContext
- oidcClientMetadataCtxLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOutboundMessageContext
-
Strategy function to lookup the
OIDCMetadataContextthat represents this client during communication with the given OIDC peer. - OIDCConstants - Class in net.shibboleth.sp.oidc.profile
-
OIDC related constants.
- OIDCConstants() - Constructor for class net.shibboleth.sp.oidc.profile.OIDCConstants
-
Private constructor.
- OIDCInitiatorConstants - Class in net.shibboleth.sp.oidc.profile
-
Constants for OIDC session initiator operations.
- OIDCInitiatorConstants() - Constructor for class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
Private constructor.
- OIDCModule - Class in net.shibboleth.sp.oidc.conf
-
IdPModuleimplementation. - OIDCModule() - Constructor for class net.shibboleth.sp.oidc.conf.OIDCModule
-
Constructor.
- oidcPeerEntityContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Strategy to resolve the OIDC entity context class.
- OIDCPlugin - Class in net.shibboleth.sp.oidc.conf
-
Details about the SP OIDC protocol plugin.
- OIDCPlugin() - Constructor for class net.shibboleth.sp.oidc.conf.OIDCPlugin
-
Constructor.
- OIDCProtocolSupportService - Interface in net.shibboleth.sp.oidc
-
OIDC subinterface of
ProtocolSupportServiceto add any OIDC-specific features or services. - oidcProviderMetadataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.config.logic.RequestObjectRequiredAndSupported
-
Strategy that will return
OIDCProviderMetadata. - oidcProviderMetadataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
Strategy that will return
OIDCMetadataContext. - OIDCProviderMetadataLookupHandler - Class in net.shibboleth.sp.oidc.metadata.impl
-
Handler for inbound OIDC protocol messages that attempts to locate OIDC metadata for a OP (issuer), and attaches it with a
OIDCMetadataContextas a child of a pre-existing instance ofMessageContext. - OIDCProviderMetadataLookupHandler() - Constructor for class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Constructor.
- OIDCSupport - Class in net.shibboleth.sp.oidc.profile
-
Support class for OIDC related implementations.
- OIDCSupport() - Constructor for class net.shibboleth.sp.oidc.profile.OIDCSupport
-
Private constructor.
- outMessageContext - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeAuthorizationRequest
-
The stashed outbound message context.
- OUTPUT - Enum constant in enum class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction.DDFDirection
-
The output message for the agent.
P
- parseResponseMode(String) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.ResponseModeLookupStrategy
-
Parse the
responseModeFromProfileinto a knownResponseMode. - parseResponseType(String) - Method in class net.shibboleth.sp.oidc.profile.config.navigate.ResponseTypeLookupStrategy
-
Parse a
response_typeinto a knownResponseType. - PayloadFromRequestObjectLookupFunction - Class in net.shibboleth.sp.oidc.messaging.context.navigate
-
Extract the
Payloadfrom the Request Object inside theOIDCAuthenticationRequest. - PayloadFromRequestObjectLookupFunction() - Constructor for class net.shibboleth.sp.oidc.messaging.context.navigate.PayloadFromRequestObjectLookupFunction
-
Constructor.
- peerEntityContext - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
The stashed peer entity context.
- peerEntityContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
Strategy used to look up the
OIDCPeerEntityContextto draw from. - peerEntityCtx - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOutboundMessageContext
-
The
OIDCPeerEntityContextto base the outbound context on. - peerEntityCtx - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
OIDC peer entity context to populate from.
- peerIdentifier - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
The stashed identifier of the OIDC entity.
- pkceCodeVerifier - Variable in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
The optional PKCE code verifier.
- PKCECodeVerifierFromStateLookupStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
A lookup strategy that retrieves the PKCE Code verifier from the
AuthenticationRequestStateDatastored in theStateDataContextassociated with aProfileRequestContext. - PKCECodeVerifierFromStateLookupStrategy(Function<ProfileRequestContext, StateDataContext>) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.PKCECodeVerifierFromStateLookupStrategy
-
Constructor.
- PKCEOptionsLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
A strategy function that looks up
PKCEOptionsfrom aMessageContextby consulting theOIDCAuthenticationRelyingPartyProfileConfigurationassociated with the current request context. - PKCEOptionsLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.PKCEOptionsLookupStrategy
- populateFilterContext(ProfileRequestContext, AttributeFilterContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Fill in the filter context data.
- PRC_LOOKUP - Static variable in class net.shibboleth.sp.oidc.messaging.context.navigate.StateTokenLookupStrategy
-
Lookup function for parent ProfileRequestContext.
- PRC_LOOKUP - Static variable in class net.shibboleth.sp.oidc.profile.config.navigate.ResponseTypeLookupStrategy
-
Lookup function for parent
ProfileRequestContext. - PRC_LOOKUP - Static variable in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Lookup function for parent ProfileRequestContext.
- PRC_LOOKUP - Static variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Lookup function for parent ProfileRequestContext.
- PrepareAgentResponse - Class in net.shibboleth.sp.oidc.profile.impl
-
OIDC-specific subclass of a token consumer response action.
- PrepareAgentResponse() - Constructor for class net.shibboleth.sp.oidc.profile.impl.PrepareAgentResponse
-
Constructor.
- PrepareOIDCInboundMessageContext - Class in net.shibboleth.sp.oidc.profile.impl
-
Action that adds an inbound
MessageContextand aOIDCPeerEntityContextto theProfileRequestContextbased on the identity of a relying party. - PrepareOIDCInboundMessageContext() - Constructor for class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
-
Constructor.
- processAttributes(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Process the inbound OIDC Claims.
- ProcessEndUserClaims - Class in net.shibboleth.sp.oidc.profile.impl
-
Process the end-user claims from the id_token and possible UserInfo claims sets.
- ProcessEndUserClaims() - Constructor for class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Constructor.
- profileConfiguration - Variable in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
-
Applicable stashed profile configuration.
- profileConfiguration - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Store off profile config.
- profileConfiguration - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Applicable stashed profile configuration.
- profileConfiguration - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
Applicable stashed profile configuration.
- PROMPT - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
Prompt parameter.
- PromptLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
Retrieve the Prompt parameter from the
DDF. - PromptLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.PromptLookupStrategy
- PROTOCOL_ID - Static variable in interface net.shibboleth.sp.oidc.OIDCProtocolSupportService
-
Key of the map entry for this subtype.
- providerMetadata - Variable in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
OpenID Provider metadata .
- providerMetadata - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
The stashed provider metadata.
- providerMetadataContext - Variable in class net.shibboleth.sp.oidc.profile.impl.AbstractAuthorizationResponseAction
-
OIDC Metadata context.
- providerMetadataLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractProviderMetadataLookupFunction
-
Lookup strategy to locate the OpenID Provider metadata to use.
- providerMetadataLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.AbstractAuthorizationResponseAction
-
Lookup strategy to locate the OP metadata to use.
- providerMetadataLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Lookup strategy to locate the OpenID Provider metadata to use.
- providerMetadataLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Lookup strategy to locate the OP metadata to use.
R
- RedirectUriFromStateLookupStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
A lookup strategy that retrieves the response location from the
AuthenticationRequestStateDatastored in theStateDataContextassociated with aProfileRequestContext, converts it to a redirect_uri and returns it. - RedirectUriFromStateLookupStrategy(Function<ProfileRequestContext, StateDataContext>) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.RedirectUriFromStateLookupStrategy
-
Constructor.
- RedirectUriLookupFunction - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
Pull a redirect_uri from the Relying Party profile config if present.
- RedirectUriLookupFunction() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.RedirectUriLookupFunction
- RedirectUriLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
Retrieve the 'redirect_uri' parameter from the 'response_url' in the
DDF. - RedirectUriLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.RedirectUriLookupStrategy
- redirectUriOverrideLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
A redirect_uri lookup strategy which can pull out an override redirect_uri from the profile request context.
- relyingPartyContextCreationStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
Strategy that will return or create a
RelyingPartyContext. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.config.logic.RequestedACRValidationActivationCondition
-
Lookup function for relying party context.
- relyingPartyContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Strategy used to look up a
RelyingPartyContextfor configuration options. - relyingPartyContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Lookup function for relying party context.
- relyingPartyContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
Lookup function for relying party context.
- relyingPartyCtxLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOutboundMessageContext
-
Strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - relyingPartyId - Variable in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
-
The identifier of the OP/RP to base the inbound context on.
- relyingPartyLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
-
Strategy to lookup the identifier of the OP/RP to base the inbound context on.
- RequestedACRClaimsFromStateLookupStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Strategy that looks up any requested ACR claims from the saved off authentication request state.
- RequestedACRClaimsFromStateLookupStrategy(Function<ProfileRequestContext, StateDataContext>) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.RequestedACRClaimsFromStateLookupStrategy
-
Constructor.
- RequestedACRValidationActivationCondition - Class in net.shibboleth.sp.oidc.profile.config.logic
-
An activation condition that activates if the profile configuration indicates that ACR value in the id_token should be validated against those in the request.
- RequestedACRValidationActivationCondition(Function<ProfileRequestContext, RelyingPartyContext>) - Constructor for class net.shibboleth.sp.oidc.profile.config.logic.RequestedACRValidationActivationCondition
-
Constructor.
- RequestedClaimsLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
A lookup strategy that resolves an
OIDCClaimsRequestfrom the currentMessageContext. - RequestedClaimsLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.RequestedClaimsLookupStrategy
- requesterLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Function used to obtain the requester ID.
- RequestObjectRequiredAndSupported - Class in net.shibboleth.sp.oidc.profile.config.logic
-
A predicate that tests whether a request object should be built based on what is configured in the profile configuration and whether the OP supports it.
- RequestObjectRequiredAndSupported() - Constructor for class net.shibboleth.sp.oidc.profile.config.logic.RequestObjectRequiredAndSupported
-
Constructor.
- RequestObjectSupportedSignatureSigningAlgorithms - Class in net.shibboleth.sp.oidc.metadata.impl
-
Pull out the request object supported signature signing algorithms from the metadata.
- RequestObjectSupportedSignatureSigningAlgorithms() - Constructor for class net.shibboleth.sp.oidc.metadata.impl.RequestObjectSupportedSignatureSigningAlgorithms
- requestObjectToBeSignedPredicate - Variable in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Is the request object going to be signed? if so the 'iss' and 'aud' claims will be set.
- RequestObjectTokenUpdateStrategy - Class in net.shibboleth.sp.oidc.messaging.context.navigate
-
Consumer that adds the
JWTback to the Request Object in theOIDCAuthenticationRequest. - RequestObjectTokenUpdateStrategy() - Constructor for class net.shibboleth.sp.oidc.messaging.context.navigate.RequestObjectTokenUpdateStrategy
-
Constructor.
- RequiresSignatureVerificationPredicate - Class in net.shibboleth.sp.oidc.messaging.context.logic
-
Is successful TLS credential verification enough to validate the JWT in question or should JWT signature validation be applied? Defaults to true — signature verification is required.
- RequiresSignatureVerificationPredicate(Function<MessageContext, AbstractAuthenticatableOIDCContext>) - Constructor for class net.shibboleth.sp.oidc.messaging.context.logic.RequiresSignatureVerificationPredicate
-
Constructor.
- resolveAttributes(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Perform internal attribute resolution using the
Application-associatedAttributeResolverservice. - resolveClaimsSet(UserInfoResponse) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
Resolve the UserInfo claims from the user info response.
- resolveExisting(MessageContext, String) - Method in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Attempt to resolve an existing
OIDCProviderMetadataContextfrom which to copy. - RESOURCE - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
Resource parameter.
- ResourceLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
A strategy function that extracts and validates resource indicators from the inbound
MessageContextand returns them as a list ofURIobjects. - ResourceLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.ResourceLookupStrategy
- ResponseModeLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
A lookup strategy that resolves an OpenID Connect
ResponseModefrom theOIDCAuthenticationRelyingPartyProfileConfiguration. - ResponseModeLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.ResponseModeLookupStrategy
- ResponseTypeLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
A lookup strategy that resolves an OpenID Connect
ResponseTypefrom theOIDCAuthenticationRelyingPartyProfileConfiguration. - ResponseTypeLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.ResponseTypeLookupStrategy
- RFP_FIELD - Static variable in class net.shibboleth.sp.oidc.profile.OIDCConstants
-
Name of the Request Forgery Protection (nonce) field.
S
- SCOPE - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
Scope parameter.
- ScopeLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
A strategy function that extracts Scope from the inbound
MessageContextand returns them as a set ofStrings. - ScopeLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.ScopeLookupStrategy
- securityParametersContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Strategy used to look up the
SecurityParametersContextto set the parameters for. - setAcceptUnfilteredAttributes(boolean) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Set whether to accept decoded
IdPAttributeobjects pulled from the assertions if no filtering rule applied to them. - setAccessTokenResponseContextLookupStrategy(Function<ProfileRequestContext, AccessTokenResponseContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareAgentResponse
-
Set the strategy used to look up a
AccessTokenResponseContext. - setAccessTokenResponseContextLookupStrategy(Function<ProfileRequestContext, AccessTokenResponseContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Set the strategy used to look up a
AccessTokenResponseContext. - setAddToExistingInboundMessageContext(boolean) - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
-
Set whether to append any defined subcontexts to the existing inbound message context, or to a new one.
- setAddToExistingInboundMessageContextPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
-
Set a predicate to determine whether to append any defined subcontexts to the existing inbound message context, or to a new one.
- setAgentRequestContextLookupStrategy(Function<MessageContext, AgentRequestContext>) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction
-
Sets the lookup strategy for the
AgentRequestContext. - setAttributeContextCreationStrategy(Function<ProfileRequestContext, AttributeContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Set the strategy used to create the
AttributeContextto hold results. - setAuthenticationAuthorityLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.sp.oidc.profile.impl.AuthenticationRequestStateForStorageStrategy
-
Set the authentication authority lookup strategy to use.
- setAuthenticationRequestLookupStrategy(Function<MessageContext, OIDCAuthenticationRequest>) - Method in class net.shibboleth.sp.oidc.messaging.context.navigate.JWTClaimsSetFromRequestObjectLookupFunction
-
Set the strategy used to locate the
OIDCAuthenticationRequestto use. - setAuthenticationRequestLookupStrategy(Function<MessageContext, OIDCAuthenticationRequest>) - Method in class net.shibboleth.sp.oidc.messaging.context.navigate.PayloadFromRequestObjectLookupFunction
-
Set the strategy used to locate the
OIDCAuthenticationRequestto use. - setAuthenticationRequestLookupStrategy(Function<MessageContext, OIDCAuthenticationRequest>) - Method in class net.shibboleth.sp.oidc.messaging.context.navigate.RequestObjectTokenUpdateStrategy
-
Set the strategy used to locate the
OIDCAuthenticationRequestto use. - setAuthenticationRequestLookupStrategy(Function<ProfileRequestContext, OIDCAuthenticationRequest>) - Method in class net.shibboleth.sp.oidc.profile.impl.AuthenticationRequestStateForStorageStrategy
-
Set the authentication request lookup strategy to use.
- setAuthnContextClassRefAttributeId(String) - Method in class net.shibboleth.sp.oidc.profile.impl.StandardExtractionStrategy
-
Set
IdPAttributeID for 'acr' claim. - setAuthnInstantAttributeId(String) - Method in class net.shibboleth.sp.oidc.profile.impl.StandardExtractionStrategy
-
Set
IdPAttributeID for the 'auth_time' claim. - setAuthTimeRequired(boolean) - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Set if auth_time is required inside the id_token either because the max_age parameter was used, or the claims parameter requested it.
- setClaimIfPresent(ClaimsSet, String, Object) - Method in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Set the claim onto the claims set if not
null. - setClaimMergingStrategy(BinaryOperator<ClaimsSet>) - Method in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Set the strategy used to merge UserInfo claims with id_token claims.
- setClaimSanitizationStrategy(UnaryOperator<ClaimsSet>) - Method in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Set the strategy used to sanitize claims from both the id_token and UserInfo claims set to produce a clean claims set.
- setClaimsSetIsValidPredicate(Predicate<ClaimsSet>) - Method in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Set a hook that allows the built request object to be validated before it is used.
- setClaimsValidator(ClaimsValidator) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
-
Set the JWT claims verifier to use.
- setCleanupHook(Consumer<ProfileRequestContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
-
Set the cleanup hook to execute after either a successful or unsuccessful claims validation.
- setClockSkew(Duration) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AuthenticationRequestTimeLookupFunction
-
Set the clock skew.
- setContextClassLookupStrategy(Function<MessageContext, ? extends AbstractOIDCEntityContext>) - Method in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Set the context class lookup strategy.
- setCopyContextStrategy(Function<MessageContext, OIDCProviderMetadataContext>) - Method in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Set the optional strategy for resolving an existing metadata context from which to copy data.
- setCustomClaimsStrategy(BiConsumer<ProfileRequestContext, ClaimsSet>) - Method in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Set a bi-consumer hook to add custom claims to the request object.
- setDataSealer(DataSealer) - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareAgentResponse
-
Sets
DataSealerto use. - setEnableClaimSanitizationStrategy(boolean) - Method in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Set whether to enable claim sanitization.
- setEndUserClaimsContextLookupStrategy(Function<ProfileRequestContext, EndUserClaimsContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Set the strategy used to lookup a
EndUserClaimsContext. - setEndUserClaimsContextLookupStrategy(Function<ProfileRequestContext, EndUserClaimsContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Set the strategy used to lookup a
EndUserClaimsContext. - setHttpClient(HttpClient) - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Set the
HttpClientto use. - setHttpClientSecurityParameters(HttpClientSecurityParameters) - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Set the optional client security parameters.
- setHttpRequestEncoderStrategy(Function<ProfileRequestContext, ClassicHttpRequest>) - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Set the strategy used to map a HTTP request to a
ClassicHttpRequestobject. - setHttpResponseDecoderStrategy(HttpClientResponseHandler<T>) - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractHttpOAuthAction
-
Set the strategy (Http client response handler) used to map a HTTP response the response type.
- setIssuerAttributeId(String) - Method in class net.shibboleth.sp.oidc.profile.impl.StandardExtractionStrategy
-
Set
IdPAttributeID for the 'iss' claim. - setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Set the strategy used to locate the attribute issuer ID for filtering.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Set the strategy used to locate the issuer value to use.
- setIssuerLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
Set the strategy used to locate the issuer value to use.
- SetIssuerToPeerContextConsumer - Class in net.shibboleth.sp.oidc.profile.impl
-
A consumer that sets the decoded issuer value onto the
OIDCPeerEntityContext(creating a peer entity context if none already exists). - SetIssuerToPeerContextConsumer() - Constructor for class net.shibboleth.sp.oidc.profile.impl.SetIssuerToPeerContextConsumer
- setJwtBearerExpiryOffset(Duration) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Set the JWT expiry time offset for appropriate client authentication methods.
- setJwtLookupStrategy(Function<ProfileRequestContext, JWT>) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
-
Set the lookup strategy that locates the JWT to validate from the context.
- setMaxAge(Duration) - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
set the maxAge, a null value indicates no maxAge was specified in the authentication request.
- setMetadataResolver(ReloadableService<ProviderMetadataResolver>) - Method in class net.shibboleth.sp.oidc.BasicOIDCProtocolSupportService
-
Sets the
ProviderMetadataResolverto use. - setNonce(String) - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Set the nonce expected in the id_token response.
- setOAuth2ClientAuthenticationContextLookupStrategy(Function<MessageContext, OAuth2ClientAuthenticationContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Set the strategy to lookup the
OAuth2ClientAuthenticationContextfrom theMessageContext. - setOAuth2ClientContextLookupStrategy(Function<ProfileRequestContext, OAuth2ClientContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeAuthorizationRequest
-
Set the strategy to lookup the
OAuth2ClientContextfrom theProfileRequestContext. - setOAuth2ClientContextLookupStrategy(Function<ProfileRequestContext, OAuth2ClientContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
Set the strategy to lookup the
OAuth2ClientContextfrom theProfileRequestContext. - setOIDCClientMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCMetadataContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOutboundMessageContext
-
Set the strategy to lookup the
OIDCMetadataContextfrom theProfileRequestContext. - setOidcPeerEntityContextLookupStrategy(Function<MessageContext, OIDCPeerEntityContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Set the lookup strategy to find the
OIDCPeerEntityContext. - setOidcProviderMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCProviderMetadataContext>) - Method in class net.shibboleth.sp.oidc.profile.config.logic.RequestObjectRequiredAndSupported
-
Set the lookup strategy to use to locate the
OIDCProviderMetadataContext. - setOidcProviderMetadataContextLookupStrategy(Function<ProfileRequestContext, OIDCProviderMetadataContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
Set the strategy used to return the
OIDCProviderMetadataContext. - setPeerEntityContextLookupStrategy(Function<ProfileRequestContext, OIDCPeerEntityContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
Set the strategy used to look up the
OIDCPeerEntityContextto draw from. - setPkceCodeVerifier(String) - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
-
Set the PKCE code verifier used to generate the code challenge in the authentication request.
- setProviderMetadataLookupStrategy(Function<MessageContext, OIDCProviderMetadataContext>) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractProviderMetadataLookupFunction
-
Set the lookup strategy to locate the OpenID providers metadata.
- setProviderMetadataLookupStrategy(Function<MessageContext, OIDCProviderMetadataContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Set the lookup strategy to locate the OpenID providers metadata.
- setProviderMetadataLookupStrategy(Function<ProfileRequestContext, OIDCProviderMetadataContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.AbstractAuthorizationResponseAction
-
Set the lookup strategy to locate the OpenID providers metadata.
- setProviderMetadataLookupStrategy(Function<ProfileRequestContext, OIDCProviderMetadataContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Set the lookup strategy to locate the OpenID providers metadata.
- setProviderMetadataResolver(ProviderMetadataResolver) - Method in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Set the
ProviderMetadataResolverto use. - setProviderMetadataResolverLookupStrategy(Function<MessageContext, ProviderMetadataResolver>) - Method in class net.shibboleth.sp.oidc.metadata.impl.OIDCProviderMetadataLookupHandler
-
Set the lookup strategy for the
ProviderMetadataResolverto use. - setRedirectUriOverrideLookupStrategy(Function<ProfileRequestContext, URI>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
Set the redirect_uri lookup strategy to locate an explicitly set redirect_uri.
- setRelyingPartyContextCreationStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeRelyingPartyContextFromOIDCPeer
-
Set the strategy used to return or create the
RelyingPartyContext. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Set the strategy used to return the
RelyingPartyContextfor configuration options. - setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Set lookup strategy for relying party context.
- setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientContext
-
Set lookup strategy for relying party context.
- setRelyingPartyContextLookupStrategy(Function<ProfileRequestContext, RelyingPartyContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOutboundMessageContext
-
Set the strategy used to locate the
RelyingPartyContextassociated with a givenProfileRequestContext. - setRelyingPartyLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.sp.oidc.profile.impl.PrepareOIDCInboundMessageContext
-
Set the lookup strategy to identify the OP/RP.
- setRequesterLookupStrategy(Function<ProfileRequestContext, String>) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Set the strategy used to locate the attribute requester ID for filtering.
- setRequestObjectToBeSignedPredicate(Predicate<ProfileRequestContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Set a predicate to determine if the request object will be 'eventually' signed.
- setSecurityParametersContextLookupStrategy(Function<MessageContext, SecurityParametersContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Set the strategy used to look up the
SecurityParametersContext. - setStandardExtractionStrategy(Function<EndUserClaimsContext, Collection<IdPAttribute>>) - Method in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Set the strategy function to call for "standard" attribute extraction, if enabled.
- setState(String) - Method in class net.shibboleth.sp.oidc.context.OAuthStateContext
-
Sets the raw OAuth 2.0 state string.
- setStateDataContextCreationStrategy(Function<ProfileRequestContext, StateDataContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
-
Sets the strategy used to create the
StateDataContext. - setStateDataContextLookupStrategy(Function<ProfileRequestContext, StateDataContext>) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.AuthenticationRequestTimeLookupFunction
-
Set the strategy used to locate the
StateDataContextto use. - setStateDataContextLookupStrategy(Function<ProfileRequestContext, StateDataContext>) - Method in class net.shibboleth.sp.oidc.profile.context.navigate.MaxAgeFromAuthenticationRequestLookupFunction
-
Set the authentication request lookup strategy to use.
- setStateDataContextLookupStrategy(Function<ProfileRequestContext, StateDataContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.InitializePeerEntityContext
-
Set the strategy used to locate the
StateDataContextto pull the issuer out of. - setStateDataLookupStrategy(Function<ProfileRequestContext, StateData>) - Method in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
-
Sets the lookup strategy for obtaining the
StateDataof the state token. - setStateJson(JSONObject) - Method in class net.shibboleth.sp.oidc.context.OAuthStateContext
-
Sets the decoded OAuth 2.0 state as a JSON object.
- setTokenResponseContextLookupStrategy(Function<ProfileRequestContext, AccessTokenResponseContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ExchangeCodeForAccessToken
-
Set the strategy used to look up a
AccessTokenResponseContext. - setTokenResponseContextLookupStrategy(Function<ProfileRequestContext, AccessTokenResponseContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateOAuthAccessTokenResponse
-
Set the strategy used to look up a
AccessTokenResponseContext. - setTokenResponseContextLookupStrategy(Function<ProfileRequestContext, AccessTokenResponseContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
Set the strategy used to look up a
AccessTokenResponseContext. - setUserInfoResponseContextLookupStrategy(Function<ProfileRequestContext, UserInfoResponseContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Set the strategy used to look up a
UserInfoResponseContext. - setUserInfoResponseContextLookupStrategy(Function<ProfileRequestContext, UserInfoResponseContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.UserInfoEndpointLookup
-
Set the strategy used to look up a
UserInfoResponseContext. - setUserInfoResponseContextLookupStrategy(Function<ProfileRequestContext, UserInfoResponseContext>) - Method in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
Set the strategy used to look up a
UserInfoResponseContext. - setValue(JSONObject) - Method in class net.shibboleth.sp.oidc.context.CorrelationCookieStateContext
-
Set the correlation cookie value JSON.
- standardExtractionStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
Strategy for pulling out "standard" data from the id_token.
- StandardExtractionStrategy - Class in net.shibboleth.sp.oidc.profile.impl
-
Function to perform "standard" extraction of data into attributes.
- StandardExtractionStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.impl.StandardExtractionStrategy
- state - Variable in class net.shibboleth.sp.oidc.context.OAuthStateContext
-
The OAuth 2.0 state string.
- STATE_FIELD - Static variable in class net.shibboleth.sp.oidc.profile.OIDCConstants
-
Name of the state field to add to the state JSON object.
- stateDataContext - Variable in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
-
The stashed state data context.
- stateDataContextCreationStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
-
Strategy used to locate or create the
StateDataContextto populate. - stateDataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.messaging.context.navigate.StateTokenLookupStrategy
-
Strategy used to locate the
StateDataContext. - stateDataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.logic.AuthTimeRequestedActivationCondition
-
Strategy to find the state data context.
- stateDataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.AuthenticationRequestTimeLookupFunction
-
Strategy used to locate the
StateDataContext. - stateDataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.MaxAgeFromAuthenticationRequestLookupFunction
-
Strategy used to locate the
StateDataContext. - stateDataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.PKCECodeVerifierFromStateLookupStrategy
-
Strategy used to locate the
StateDataContext. - stateDataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.RedirectUriFromStateLookupStrategy
-
Strategy used to locate the
StateDataContext. - stateDataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.RequestedACRClaimsFromStateLookupStrategy
-
Strategy used to locate the
StateDataContext. - stateDataContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.InitializePeerEntityContext
-
Strategy used to locate the
StateDataContext. - stateDataLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.CreateAuthenticationStateData
-
Lookup strategy for the contents of the state token, as stored in a
StateDataor subclass thereof. - StateFromResponseLookupFunction - Class in net.shibboleth.sp.oidc.messaging.context.navigate
-
Lookup strategy that extracts the OAuthn 2.0 authentication response 'state' parameter.
- StateFromResponseLookupFunction() - Constructor for class net.shibboleth.sp.oidc.messaging.context.navigate.StateFromResponseLookupFunction
- stateJson - Variable in class net.shibboleth.sp.oidc.context.OAuthStateContext
-
Optionally the decoded state as a JSON object.
- StateTokenLookupStrategy - Class in net.shibboleth.sp.oidc.messaging.context.navigate
-
A strategy function that looks up the state value from the token stored in the
StateDataContext. - StateTokenLookupStrategy(Function<ProfileRequestContext, StateDataContext>) - Constructor for class net.shibboleth.sp.oidc.messaging.context.navigate.StateTokenLookupStrategy
-
Constructor.
T
- test(MessageContext) - Method in class net.shibboleth.sp.oidc.messaging.context.logic.JWTBearerTokenForClientAuthenticationPredicate
- test(MessageContext) - Method in class net.shibboleth.sp.oidc.messaging.context.logic.RequiresSignatureVerificationPredicate
- test(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.messaging.context.logic.AbstractUserInfoResponseTypeCondition
- test(ProfileRequestContext) - Method in class net.shibboleth.sp.oidc.profile.config.logic.RequestObjectRequiredAndSupported
- test(ProfileRequestContext, JWTClaimsSet) - Method in class net.shibboleth.sp.oidc.profile.config.logic.RequestedACRValidationActivationCondition
- test(ProfileRequestContext, JWTClaimsSet) - Method in class net.shibboleth.sp.oidc.profile.context.logic.AuthTimeRequestedActivationCondition
- tokenResponseContext - Variable in class net.shibboleth.sp.oidc.profile.impl.PrepareAgentResponse
-
The stashed token response context.
- tokenResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ExchangeCodeForAccessToken
-
Strategy used to look up the
AccessTokenResponseContextto set the parameters for. - tokenResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateOAuthAccessTokenResponse
-
Strategy used to look up the
AccessTokenResponseContextto validate. - tokenResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
Strategy used to look up the
AccessTokenResponseContext. - toString() - Method in class net.shibboleth.sp.oidc.profile.AuthenticationRequestStateData
U
- UI_LOCALES - Static variable in class net.shibboleth.sp.oidc.profile.OIDCInitiatorConstants
-
ui_locales parameter.
- UiLocalesLookupStrategy - Class in net.shibboleth.sp.oidc.profile.config.navigate
-
A strategy function that extracts ui_locales from the inbound
MessageContextand returns them as a List ofStrings. - UiLocalesLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.config.navigate.UiLocalesLookupStrategy
- unprocessedIdTokenClaims - Variable in class net.shibboleth.sp.oidc.profile.impl.ExtractOIDCClaims
-
The set of id_token claims before they are processed.
- userInfo - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
The stashed user info response.
- userInfoClaims - Variable in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
The stashed UserInfo claims.
- userInfoCtx - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
The stashed user info response context.
- UserInfoEndpointLookup - Class in net.shibboleth.sp.oidc.profile.impl
-
Request information from the UserInfo OAuth2.0 endpoint using the access_token already present in the context.
- UserInfoEndpointLookup() - Constructor for class net.shibboleth.sp.oidc.profile.impl.UserInfoEndpointLookup
-
Constructor.
- UserInfoInUserInfoResponseContextUpdateStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Consumer strategy to update the UserInfo JWT in the
UserInfoResponseContext. - UserInfoInUserInfoResponseContextUpdateStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.UserInfoInUserInfoResponseContextUpdateStrategy
-
Constructor.
- UserInfoInUserInfoResponseContextUpdateStrategy(Function<ProfileRequestContext, UserInfoResponseContext>) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.UserInfoInUserInfoResponseContextUpdateStrategy
-
Constructor.
- UserInfoJWTLookupStrategy - Class in net.shibboleth.sp.oidc.profile.context.navigate
-
Function that extracts the UserInfo claims as a JWT from the
UserInfoResponseContext. - UserInfoJWTLookupStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.UserInfoJWTLookupStrategy
-
Constructor.
- UserInfoJWTLookupStrategy(Function<ProfileRequestContext, UserInfoResponseContext>) - Constructor for class net.shibboleth.sp.oidc.profile.context.navigate.UserInfoJWTLookupStrategy
-
Constructor.
- UserInfoPlainResponseTypeCondition - Class in net.shibboleth.sp.oidc.messaging.context.logic
-
Condition that returns true if the UserInfo response was an plain JSON type i.e.
- UserInfoPlainResponseTypeCondition() - Constructor for class net.shibboleth.sp.oidc.messaging.context.logic.UserInfoPlainResponseTypeCondition
-
Constructor.
- UserInfoPlainResponseTypeCondition(Function<ProfileRequestContext, UserInfoResponseContext>) - Constructor for class net.shibboleth.sp.oidc.messaging.context.logic.UserInfoPlainResponseTypeCondition
-
Constructor.
- userInfoResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.messaging.context.logic.AbstractUserInfoResponseTypeCondition
-
Strategy used to look up the
UserInfoResponseContext. - userInfoResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.AbstractUserInfoTokenResponseLookupStrategy
-
Strategy used to look up the
UserInfoResponseContext. - userInfoResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.context.navigate.UserInfoJWTLookupStrategy
-
Strategy used to look up the
UserInfoResponseContext. - userInfoResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ProcessEndUserClaims
-
Strategy used to look up the
UserInfoResponseContext. - userInfoResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.UserInfoEndpointLookup
-
Strategy used to look up the
AccessTokenResponseContextto set the parameters for. - userInfoResponseContextLookupStrategy - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
Strategy used to look up the
UserInfoResponseContext.
V
- ValidateAuthenticationResponseResult - Class in net.shibboleth.sp.oidc.profile.impl
-
An action that checks the inbound authentication response indicated success as opposed to an error.
- ValidateAuthenticationResponseResult() - Constructor for class net.shibboleth.sp.oidc.profile.impl.ValidateAuthenticationResponseResult
- ValidateOAuthAccessTokenResponse - Class in net.shibboleth.sp.oidc.profile.impl
-
Validation action that validates the OAuth Access Token Response against RFC 6749 section 5.1 and OpenID Connect Core 1.0 section 3.1.3.3.
- ValidateOAuthAccessTokenResponse() - Constructor for class net.shibboleth.sp.oidc.profile.impl.ValidateOAuthAccessTokenResponse
-
Constructor.
- validateRequestObject(ProfileRequestContext, ClaimsSet) - Method in class net.shibboleth.sp.oidc.profile.impl.BuildRequestObject
-
Ensure the request object is valid by assessing the claims are correct.
- ValidateTokenClaims - Class in net.shibboleth.sp.oidc.profile.impl
-
Action that validates the claims of a JWT using the supplied
claims validator. - ValidateTokenClaims() - Constructor for class net.shibboleth.sp.oidc.profile.impl.ValidateTokenClaims
- ValidateUserInfoJSONObjectClaims - Class in net.shibboleth.sp.oidc.profile.impl
-
Validate a successful UserInfo JSON Object Response according to section 5.3.2 of OpenID Connect Core 1.0.
- ValidateUserInfoJSONObjectClaims() - Constructor for class net.shibboleth.sp.oidc.profile.impl.ValidateUserInfoJSONObjectClaims
-
Constructor.
- validationClaims - Variable in class net.shibboleth.sp.oidc.profile.impl.ValidationClaimStrippingSanitizationStrategy
-
The set of validation claims to filter out of the input claims.
- ValidationClaimStrippingSanitizationStrategy - Class in net.shibboleth.sp.oidc.profile.impl
-
Produce a claims set from the JWT claims set without either the validation claims or claims with null values.
- ValidationClaimStrippingSanitizationStrategy() - Constructor for class net.shibboleth.sp.oidc.profile.impl.ValidationClaimStrippingSanitizationStrategy
-
Constructor.
- value - Variable in class net.shibboleth.sp.oidc.context.CorrelationCookieStateContext
-
The correlation cookie value as a JSON object.
- valueOf(String) - Static method in enum class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction.DDFDirection
-
Returns the enum constant of this class with the specified name.
- values() - Static method in enum class net.shibboleth.sp.oidc.profile.context.navigate.AbstractAgentAndRelyingPartyContextLookupFunction.DDFDirection
-
Returns an array containing the constants of this enum class, in the order they are declared.
- verifySuitableClientSecretJWTSecurityContext() - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Check the populated security context is using the correct algorithm family for client_secret_jwt client authentication.
- verifySuitablePrivateKetJWTSecurityContext() - Method in class net.shibboleth.sp.oidc.profile.impl.InitializeOAuth2ClientAuthenticationMethodHandler
-
Check the populated security context is using the correct algorithm family for private_key_jwt client authentication.
- Version - Class in net.shibboleth.sp.oidc.conf
-
Class for getting and printing the version of the plugin.
- Version() - Constructor for class net.shibboleth.sp.oidc.conf.Version
-
Constructor.
- VERSION - Static variable in class net.shibboleth.sp.oidc.conf.Version
-
Plugin version.
All Classes and Interfaces|All Packages|Constant Field Values