Skip to content

CommonOIDCProfileConfiguration

Henri Mikkonen edited this page Mar 13, 2018 · 4 revisions

Current File(s): conf/oidc-relying-party.xml, conf/relying-party.xml

Format: Native Spring

The following configuration options can be used for OIDC core/SSO and dynamic registration profile configurations:

  • authorizationCodeFlowEnabled (Predicate<ProfileRequestContext>): Whether to enable authorization code flow. Default: true.

  • hybridFlowEnabled (Predicate<ProfileRequestContext>): Whether to enable hybrid flow. Default: true.

  • implicitFlowEnabled (Predicate<ProfileRequestContext>): Whether to enable implicit flow. Default: true.

  • refreshTokensEnabled (Predicate<ProfileRequestContext>): Whether to enable refresh tokens support. Default: true.

  • tokenEndpointAuthMethods (Collection<String>): The list of supported _token_endpoint_auth_method_s for this profile. Default: client_secret_basic, client_secret_post, client_secret_jwt and private_key_jwt.