-
Notifications
You must be signed in to change notification settings - Fork 84
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
feat(jans-auth-server): add restriction for request_uri
parameter (blocklist/filter)
#1503
Labels
comp-jans-auth-server
Component affected by issue or PR
kind-feature
Issue or PR is a new feature request
Milestone
Comments
We can add allowed |
yuriyz
added a commit
to GluuFederation/oxAuth
that referenced
this issue
Jun 9, 2022
yuriyz
added a commit
to GluuFederation/oxAuth
that referenced
this issue
Jun 9, 2022
…allowed list) (4.5) JanssenProject/jans#1503 (cherry picked from commit c567baf)
yuriyz
added a commit
to GluuFederation/community-edition-setup
that referenced
this issue
Jun 9, 2022
yuriyz
added a commit
to GluuFederation/community-edition-setup
that referenced
this issue
Jun 9, 2022
JanssenProject/jans#1503 (cherry picked from commit c03fe1c)
Configuration property is called |
yuriyz
added a commit
to GluuFederation/oxAuth
that referenced
this issue
Jun 10, 2022
yuriyz
added a commit
to GluuFederation/oxAuth
that referenced
this issue
Jun 10, 2022
JanssenProject/jans#1503 (cherry picked from commit bcbabc1)
yuriyz
added a commit
that referenced
this issue
Jun 15, 2022
feat(jans-auth-server): added restriction for request_uri parameter (blocklist and allowed client.request_uri) #1503
Done in jans, 4.4.1 and oxauth master. |
request_uri
parameter (blacklist/filter)request_uri
parameter (blocklist/filter)
yuriyz
added a commit
to GluuFederation/community-edition-setup
that referenced
this issue
Jun 16, 2022
yuriyz
added a commit
to GluuFederation/community-edition-setup
that referenced
this issue
Jun 16, 2022
yuriyz
added a commit
to GluuFederation/community-edition-setup
that referenced
this issue
Jun 16, 2022
yuriyz
added a commit
to GluuFederation/community-edition-setup
that referenced
this issue
Jun 16, 2022
This was referenced Aug 30, 2022
This was referenced Aug 30, 2022
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
comp-jans-auth-server
Component affected by issue or PR
kind-feature
Issue or PR is a new feature request
Description
feat(jans-auth-server): add restriction for
request_uri
parameter (blocklist/filter).We should not allow RP initiate call to any provided url send to AS.
Note: must be done in oxauth as well (4.4.1)
Mike: let’s call it
request_uri_blocked_list
The text was updated successfully, but these errors were encountered: