oauth2-server
oauth2-server copied to clipboard
A spec compliant, secure by default PHP OAuth 2.0 Server
According to RFC674: > The authorization server MAY fully or partially ignore the scope requested by the client, based on the authorization server policy or the resource owner's instructions. If...
Is there any example MySQL schema implementation for v6? Thanks in advance.
So I'm extremely confused about what I should use when instantiating `AuthorizationServer` object. So the [documentation](https://oauth2.thephpleague.com/installation/) directs people to generate public and private keys and then literally says: > The...
Add method to facilitate BearerTokenValidator override when you want to append data to the jwt token
Currently, it's easy to implement the `convertToJWT` method in the `AccessTokenEntityInterface` implementation to add data to the JWT. However, i don't see any solution, except creating a new implementation of...
Hi, I looked up the documentation but could not find anything. Does the server support the JWT Bearer Grant Type [https://tools.ietf.org/html/rfc7523]?
Instead of passing `client_id` and `client_secret` as client authentication a client can make an assertions instead. The following parameters will be passed in: - `client_assertion_type` - e.g. `urn:ietf:params:oauth:client-assertion-type:jet-bearer` - `client_assertion`...
I am using this API in an environment with OpenAM as client, and experience a blocking issue: when your API sends the redirect response, it sends back as code a...
#793 scope param added to a bearer token response
I've been working on the AuthCode flow and I feel like something doesn't quite make sense to me in terms of validating scopes on a per user or per client...
Please add support for token_type: pop https://tools.ietf.org/html/draft-ietf-oauth-pop-architecture-08 https://tools.ietf.org/html/draft-ietf-oauth-pop-key-distribution-02 https://tools.ietf.org/html/rfc7635 Could you please help with few hints? I would see/implement RFC7635 so "token_type: pop" in Auth Server.