Kévin Chalet
|
af9f6a66a2
|
Update the System.Net.Http integrations to support HttpRequestMessage.VersionPolicy
|
4 years ago |
Kévin Chalet
|
7bb02a43bd
|
Allow determining the token format dynamically and automatically add a jti claim to JWT access tokens
|
4 years ago |
Kévin Chalet
|
3ff021a3e4
|
Revamp HTTP response extraction to support WWW-Authenticate and enforce Content-Type validation
|
4 years ago |
Kévin Chalet
|
120a29fe47
|
Revamp the challenge responses handling logic
|
4 years ago |
Kévin Chalet
|
a2116511c4
|
Update the nullability attributes of OpenIddictRequest.Audiences/Resources to indicate that null values can be present in the returned array
|
4 years ago |
Kévin Chalet
|
80f29a7f54
|
Update the documentation to clarify that state validation also helps mitigate authorization code injection attacks
|
4 years ago |
Kévin Chalet
|
190e85ea2c
|
Implement built-in redirect_uri validation directly in the client
|
4 years ago |
Kévin Chalet
|
49c82b1eb7
|
Bring back issuer validation in the ValidateIssuer handler
|
4 years ago |
Kévin Chalet
|
e1436f7f59
|
Add native support for private_key_jwt in the client
|
4 years ago |
Kévin Chalet
|
5758c4a6d9
|
Make the OpenIddict client stack stateful by default and introduce OpenIddict.Client.DataProtection
|
4 years ago |
Kévin Chalet
|
f14005f85d
|
Handle network errors and HTTP response deserialization exceptions more gracefully
|
5 years ago |
Kévin Chalet
|
96bd92a1b8
|
Optimize OpenIddictParameter.Count to avoid serialization for JsonValue instances wrapping a JsonElement or a primitive type
|
5 years ago |
Kévin Chalet
|
68bd5d5e34
|
Support additional integer claim value types
|
5 years ago |
Kévin Chalet
|
7222d95025
|
React to the removal of the !! operator in C# 11
|
5 years ago |
Kévin Chalet
|
a25cb52830
|
Don't throw an exception if the address of the userinfo endpoint is not available
|
5 years ago |
Kévin Chalet
|
3de3d8bbcb
|
Make the userinfo and token endpoints configurable per authentication demand
|
5 years ago |
Kévin Chalet
|
4010563966
|
Update the client OWIN host to restore AuthenticationProperties.RedirectUri
|
5 years ago |
Kévin Chalet
|
0db0007f31
|
Add native OWIN support for the OpenIddict client
|
5 years ago |
Kévin Chalet
|
1fc1a3e12d
|
Use RuntimeHelpers.EnsureSufficientExecutionStack() in OpenIddictParameter
|
5 years ago |
Kévin Chalet
|
f09329af41
|
Don't use custom JsonSerializerOptions instances in OpenIddictParameter
|
5 years ago |
Kévin Chalet
|
0737996382
|
Introduce specialized event handlers for validating discovery parameters
|
5 years ago |
Kévin Chalet
|
ec32cfa6e5
|
Add System.Text.Json.Nodes support and revamp the OpenIddictParameter primitive
|
5 years ago |
Kévin Chalet
|
5fb23d5779
|
Use <see langword="*"/> instead of <c>*</c>
|
5 years ago |
Kévin Chalet
|
255fc64caf
|
Fix incorrect error messages in the client stack and use ?? for null checks where appropriate
|
5 years ago |
Kévin Chalet
|
66745bc4ae
|
Update CodeAnalysis.ruleset to ignore CA2254 information messages
|
5 years ago |
Kévin Chalet
|
823e05fc50
|
Remove unwanted empty lines and fix typos
|
5 years ago |
Kévin Chalet
|
46a4c00895
|
Use constants instead of hardcoded header names
|
5 years ago |
Kévin Chalet
|
62f3e6ff85
|
Bump the .NET SDK to 7.0.100-preview.2.22153.17 and modernize the code base
|
5 years ago |
Kévin Chalet
|
5ec1ce631d
|
Implement grant_type=refresh_token support in the OpenIddict client
|
5 years ago |
Kévin Chalet
|
a1215728db
|
Implement "iss" support in the server stack and update the token validation logic to support issuers that don't end with a trailing slash
|
5 years ago |
Kévin Chalet
|
cf0e49a3b8
|
Use Uri.OriginalString for issuer comparison
|
5 years ago |
Kévin Chalet
|
fdf34448f2
|
Add userinfo support
|
5 years ago |
Kévin Chalet
|
3bf51e1600
|
Introduce the first bits of the OpenIddict client
|
7 years ago |
Kévin Chalet
|
f8a42391cb
|
Remove a duplicate assertion in the AttachQueryStringParameters handler
|
5 years ago |
Kévin Chalet
|
b898e2d21f
|
Cross-compile OpenIddict.Validation.SystemNetHttp for .NET Core 3.1/5.0/6.0 to support HttpClient.DefaultRequestVersion
|
5 years ago |
Kévin Chalet
|
0a8b416311
|
Remove the .NET Core 2.1 TFMs
|
5 years ago |
Kévin Chalet
|
23fd89e9eb
|
Add .NET 6.0 TFMs and bump the .NET SDK/packages to 6.0
|
6 years ago |
Kévin Chalet
|
26b8414114
|
Remove unnecessary usings
|
5 years ago |
Kévin Chalet
|
540194f3f3
|
Add a new filter to allow excluding handlers when token lifetime validation is disabled
|
5 years ago |
Kévin Chalet
|
fdba933332
|
Update the package description of OpenIddict.AspNetCore and tweak nullable references
|
5 years ago |
Kévin Chalet
|
deee5e5b92
|
Update the code base to use implicit global usings
|
5 years ago |
Kévin Chalet
|
148a987a23
|
Update the code base to use file-scoped namespaces
|
5 years ago |
Kévin Chalet
|
5f154b9f05
|
Refactor custom parameters handling during challenge/sign-in/sign-out
|
5 years ago |
Kévin Chalet
|
cda55862bc
|
Update HandleLogoutRequestContext to allow attaching custom sign-out parameters
|
5 years ago |
Kévin Chalet
|
ab84147548
|
Remove OpenIddictServerOwinProperties and OpenIddictValidationOwinProperties
|
5 years ago |
Kévin Chalet
|
e0c748f046
|
Introduce a simpler way to return additional parameters from the Handle*Request events that trigger a sign-in response
|
5 years ago |
Kévin Chalet
|
9af02669b2
|
Remove ApplyAuthorizationResponseContext/ApplyTokenResponseContext.Principal
|
5 years ago |
Kévin Chalet
|
95ad492100
|
Update OpenIddictServerBuilder.AllowImplicitFlow()/AllowPasswordFlow() to indicate that the implicit and password flows are not recommended for new applications
|
5 years ago |
Kévin Chalet
|
f83b5732f9
|
Add a SignIn method to HandleVerificationRequestContext
|
5 years ago |
Kévin Chalet
|
2297abe1bb
|
Simplify Data Protection's ValidateToken helper signature
|
5 years ago |