Class ClientRegistration.ProviderDetails
java.lang.Object
com.codename1.backend.security.oauth2.client.ClientRegistration.ProviderDetails
- Enclosing class:
ClientRegistration
Where the provider is.
-
Method Summary
Modifier and TypeMethodDescriptionString[]The names of the algorithms an ID token may be signed with, or null for what the metadata says, and RS256 and ES256 when there is none.For a provider that issues under one address per tenant: the issuer with{tenantid}where the token'stidclaim goes.Theissevery ID token must carry, or null.Where the keys that sign ID tokens are published, or null.The attribute that names the user;subfor an OpenID Connect provider that says nothing else.Where the user's attributes are read from, or null.booleanWhether the provider says it names itself in every answer it sends back with the browser: theissparameter of RFC 9207, announced in its metadata asauthorization_response_iss_parameter_supported.booleanWhetherissueris this provider: itsgetIssuerUri(), character for character, or for a provider with one issuer per tenant itsgetIssuerTemplate()with a tenant id where{tenantid}is.
-
Method Details
-
getAuthorizationUri
-
getTokenUri
-
getUserInfoUri
Where the user's attributes are read from, or null. -
getUserEmailsUri
The attribute that names the user;subfor an OpenID Connect provider that says nothing else. Where the provider lists the user's email addresses and says which of them it has verified, for one whose user info says nothing of that: GitHub's/user/emails. Null for a provider that has none. It answers a JSON array of{"email", "primary", "verified"}, andLinkingOAuth2UserServicereads the primary verified one from it. -
getUserNameAttributeName
-
getJwkSetUri
Where the keys that sign ID tokens are published, or null. -
getIssuerUri
Theissevery ID token must carry, or null. -
getIssuerTemplate
For a provider that issues under one address per tenant: the issuer with{tenantid}where the token'stidclaim goes. Null otherwise. -
getIdTokenAlgorithms
The names of the algorithms an ID token may be signed with, or null for what the metadata says, and RS256 and ES256 when there is none. -
isAuthorizationResponseIssParameterSupported
public boolean isAuthorizationResponseIssParameterSupported()Whether the provider says it names itself in every answer it sends back with the browser: theissparameter of RFC 9207, announced in its metadata asauthorization_response_iss_parameter_supported. An answer without one is then refused. -
isIssuer
Whetherissueris this provider: itsgetIssuerUri(), character for character, or for a provider with one issuer per tenant itsgetIssuerTemplate()with a tenant id where{tenantid}is. False when the registration names no issuer at all.
-