Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • Jira Legacy
    serverSystem JIRA
    serverIdf52c7d31-6eab-3f0e-93c3-231b5754d506
    keyJOIDC-72

    • Initial version done: the claims that are included in the metadata policies (via profile config or access token) are stored

  • Jira Legacy
    serverSystem JIRA
    serverIdf52c7d31-6eab-3f0e-93c3-231b5754d506
    keyJOIDC-21

    • Initial version of the issue-registration-token admin-flow and CLI pushed

      • Opaque access token only for now - security configuration wiring for JWT access tokens was not trivial

    • TODO:

      • Try different AdminFlow authentication approaches in practise

      • Wire authentication metadata (acr, principal) to the registration access token

  • Jira Legacy
    serverSystem JIRA
    serverIdf52c7d31-6eab-3f0e-93c3-231b5754d506
    keyJOIDC-76

    • In principle it seems to be possible to add filter-mappings dynamically via ServletContextInitializer

Ian

  • Java 18 now RC1.

  • Spring Framework 5.3.16 addresses SpEL issue (

    Jira Legacy
    serverSystem JIRA
    serverIdf52c7d31-6eab-3f0e-93c3-231b5754d506
    keyIDP-1901
    ).

...

  • Minor maintenance on cpp-linbuild images

  • Trying to find my place again on the Jenkins/Fargate stuff

Marvin

Phil

  • Jira Legacy
    serverSystem JIRA
    serverIdf52c7d31-6eab-3f0e-93c3-231b5754d506
    keyJCOMOIDC-40

    • Have something for decoding unscoped strings. Will review and push next week. Other info in the ticket.

  • Jira Legacy
    serverSystem JIRA
    serverIdf52c7d31-6eab-3f0e-93c3-231b5754d506
    keyJOIDCRP-10

    • Switching the arbitrary client metadata method of registering RP->OP config, to RP profile config.

  • Other

    • UserInfo claims lookup, validation, and merge with id_token claims done.

      • Should support Plain JSON UserInfo response objects along with signed and or encrypted JWTs - when I plugin the TrustEngine.

    • Added attribute filtering after transcoding to the validation stage before claims are exposed as Attribute Principals to the wider IdP.

    • I will work with Tom soon to add RP to Jenkins.

    • Might need a new Git repo for the SWF test classes that are now shared between the Duo plugin and the RP plugin. Something like java-spring-webflow-tests

      • Although it might not be useful to other plugins

...