summaryrefslogtreecommitdiff
path: root/docs/oauth2
Commit message (Collapse)AuthorAgeFilesLines
* Improved OIDC documentationdoc-oidcJonathan Huot2019-10-289-14/+147
|
* Merge branch 'master' into docs-flows-hooksdocs-flows-hooksJonathan Huot2019-08-011-0/+1
|\
| * Add UserInfoEndpoint to the OIDC Provider support.Jonathan Huot2019-05-131-0/+1
| |
* | Merge branch 'master' into docs-flows-hooksJonathan Huot2019-07-091-8/+9
|\ \ | |/
| * Merge branch 'master' into oidc-hashesJonathan Huot2019-04-261-0/+3
| |\
| * | Renamed fill into finalize to add clarityJonathan Huot2019-03-261-3/+3
| | |
| * | Add technicals fields of `id_token` in oauthlib OIDC supportJonathan Huot2019-02-281-8/+9
| | | | | | | | | | | | A new RequestValidator `fill_id_token` has been introduced to replace `get_id_token`. It aims to have the bare minimum amount of fields to complete a full OIDC id_token support. `get_id_token` is still valid but optional, and if it is implemented, `fill_id_token` will not be called. The current `fill_id_token` came with full support of `aud`, `iat`, `nonce`, `at_hash` and `c_hash`. More could come in the future e.g. `auth_time`, ...
| * | Removed duplicated OIDC members in OAuth2.RequestValidatorJonathan Huot2019-02-281-2/+4
| | |
* | | Add hooks to highlight the possibilities of the frameworkJonathan Huot2019-04-301-18/+69
| |/ |/| | | | | The grey color has been used to show that's optional, and a loop arrow to represent that multiple hooks can be stacked. We can distinctly see three kind of hooks: 1) pre/post+token/auth 2) generate access/refresh tokens 3) code/token modifiers. Also, I have added the optional RequestValidator.rotate_refresh_token callback.
* | Update documentationAbhishek Patel2019-04-231-0/+3
| |
* | Removed duplicated OIDC members in OAuth2.RequestValidatorJonathan Huot2019-02-281-2/+4
|/
* Fixed graphviz/dot graph & improved clarity (#642)Jonathan Huot2019-01-082-27/+80
| | | | | | I fixed graphviz missing output to web responses (see image of https://github.com/oauthlib/oauthlib/pull/639), and I have added a fixed rank (`rank=same`) when functions are achieving an identical goal. E.g. `validate_client_id`, `validate_user`, `validate_bearer_token` are unique for each flows, or, e.g. `confirm_redirect_uri`, `validate_redirect_uri` together, and so on. ![graphviz-0cc58e8637b94d7402eda45a1fef6e68889bd8e1](https://user-images.githubusercontent.com/820496/50830407-042ad600-1348-11e9-936a-03d07f42494f.png)
* Add OAuth2 Provider oauthlib-flowJonathan Huot2018-12-283-6/+263
|
* Merge branch 'master' into add-metadata-docJonathan Huot2018-12-161-0/+11
|\
| * challenge can have a length of 128 when using maximum size of verifier+plain.Jonathan Huot2018-12-131-1/+1
| |
| * Initial OAuth2.0/PKCE Provider supportJonathan Huot2018-11-291-0/+11
| |
* | Add metadata documentation with quick exampleJonathan Huot2018-12-131-0/+72
| |
* | Add OAuth2.0 Authorization Server Metadata documentationJonathan Huot2018-12-131-2/+4
|/
* Add OIDC and id_token as JWT exampleoidc-docJonathan Huot2018-11-233-6/+60
|
* Remove last remaining G+ reference. (#598)Pieter Ennes2018-09-151-1/+1
| | | (Cherry picked from f3ae98cef91e140b10d25fbd496622d879cc0c0c)
* Merge branch 'master' into docs-jwtJonathan Huot2018-08-101-2/+2
|\
| * Removed last occurences of G+ with GitterJonathan Huot2018-08-101-2/+2
| |
* | Added access_token as JWT examples, and updated JWT grant sectionJonathan Huot2018-08-104-11/+131
|/ | | | A confusion between JWT as token and as authentication mechanism was introduced long-time back and I tried to make a bit of clarity to not confuse again the newcomers.
* Merge branch 'master' into oauth2-introspectPieter Ennes2018-05-267-11/+15
|\
| * Rtd docs fix (#515)Jonathan Huot2018-02-286-8/+8
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * Added sphinx build for developers Rationale is to build docs locally to prevent RTD to break later. * Replace manual sphinx into make * Renamed idan URL to oauthlib community * Renamed http into https URLs since http is returning 302 * python requests library renamed its home URL * Add ignore list for "make linkcheck" linkcheck is doing requests to github with anonymous access, however creating an issue require an logged-in account * virtualenv changed its homepage and website. * Fixed broken link
| * Added bottle-oauthlib (#509)Jonathan Huot2018-01-022-3/+7
| |
* | Added initial introspect supportJonathan Huot2017-12-182-1/+31
|/
* Updated docs for custom validatorsBrendan McCollam2016-12-222-1/+7
|
* Docs for custom validator registrationBrendan McCollam2016-12-225-0/+10
|
* Merge pull request #416 from joelstevenson/openid_connectOmer Katz2016-08-283-0/+39
|\ | | | | Openid connect
| * Move the claims handling into OpenIDConnectBase._inflate_claims() and a new ↵Joel Stevenson2016-08-183-0/+39
| | | | | | | | | | | | AuthCodeGrantDispatcher to route requests to either the default AuthorizationCodeGrant or OpenIDConnectAuthCode depending on scope when the request's response_type is a simple (ambiguous) 'code'. Include basic docs about OpenID Connect auth flow support
* | access -> accessedThomas Bartelmess2016-04-131-1/+1
|/
* Code ident in server docYohan Boniface2015-10-261-8/+8
|
* Merge pull request #325 from djmitche/token_generator_fixOmer Katz2015-07-191-1/+3
|\ | | | | Fix documentation for token_generator signature
| * Fix documentation for token_generator signatureDustin J. Mitchell2015-02-271-1/+3
| |
* | more code indent issuesCal Leeming2015-06-191-63/+63
| |
* | Fix documentationshuisman2014-12-091-1/+1
|/ | | typo
* updated token endpoint documentation to reflect current behavior,the token ↵Enrique Garcia2014-10-271-4/+1
| | | | contains a string with the scopes separated by spaces
* Docs updates recovered from a broken git repo.Ib Lundgren2014-10-233-1/+1
| | | | | | | | | | | | | | Draft release process doc to try force myself into more structured releases in the future. A few initial notes on how to report errors. Added a few common exceptions to the FAQ. Removed supported versions from feature matrix. They are all available in setup.py metadata. Move JWT tokens to grant types where it (confusingly) belongs.
* Document environment variablesDavid Baumgold2014-10-163-25/+45
|
* Add documentation of OAUTHLIB_STRICT_TOKEN_TYPEChad Whitacre2014-09-221-0/+9
|
* Fixing some typosKevin O'Connor2014-02-123-6/+6
|
* Fix all application/json mimetypes.Hsiaoming Yang2013-10-121-1/+1
|
* Add installation instructions for pypi, github and a few OSs. Fix #77.Ib Lundgren2013-09-191-1/+1
|
* Remove now obsolete doc files.Ib Lundgren2013-09-193-401/+0
|
* Restructure API docs to mimic code structure more.Ib Lundgren2013-09-1719-320/+791
|
* Brief docs overview of the token revocation endpoint.Ib Lundgren2013-09-171-0/+27
|
* #200 First attempt at API cleanup to match OAuth1.Tyler Jones2013-08-012-31/+26
|
* Outline example view setup for providers.Ib Lundgren2013-05-311-4/+136
|
* Organize documentation into directoriesDevin Sevilla2013-05-3018-0/+823