From 98423148c5cf6de759cba74a78ade7b7c1da81ed Mon Sep 17 00:00:00 2001 From: Valery Sizov Date: Thu, 22 Jan 2015 18:39:05 -0800 Subject: allow to use http in redirect url --- config/initializers/doorkeeper.rb | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/config/initializers/doorkeeper.rb b/config/initializers/doorkeeper.rb index 23d9852725b..4819ab273dc 100644 --- a/config/initializers/doorkeeper.rb +++ b/config/initializers/doorkeeper.rb @@ -36,6 +36,12 @@ Doorkeeper.configure do # Issue access tokens with refresh token (disabled by default) use_refresh_token + # Forces the usage of the HTTPS protocol in non-native redirect uris (enabled + # by default in non-development environments). OAuth2 delegates security in + # communication to the HTTPS protocol so it is wise to keep this enabled. + # + force_ssl_in_redirect_uri false + # Provide support for an owner to be assigned to each registered application (disabled by default) # Optional parameter :confirmation => true (default false) if you want to enforce ownership of # a registered application -- cgit v1.2.1