-
- Downloads
server: fixes for the implicit and hybrid flow
Accept the following response_type for the implicit flow: id_token token id_token And the following for hybrid flow code id_token code token code token id_token This corrects the previous behavior of the implicit flow, which only accepted "token" (now correctly rejected).
Showing
- server/handlers.go 79 additions, 14 deletionsserver/handlers.go
- server/oauth2.go 85 additions, 44 deletionsserver/oauth2.go
- server/oauth2_test.go 149 additions, 0 deletionsserver/oauth2_test.go
- server/rotation.go 1 addition, 0 deletionsserver/rotation.go
- server/server.go 1 addition, 1 deletionserver/server.go
- server/server_test.go 2 additions, 2 deletionsserver/server_test.go
Loading
Please register or sign in to comment