Sha256: a9c58826ba534108478c1af5991da97d783342bc6102be6d3dce26dd7b93e2f4

Contents?: true

Size: 1.15 KB

Versions: 23

Compression:

Stored size: 1.15 KB

Contents

### 0.4.0 (13/11/2020)

#### Features

* A new method, `get_additional_param(account, claim)`, is now exposed; this method will be called whenever non-OIDC scopes are requested in the emission of the ID token.

* The `form_post` response is now supported, either by passing the `response_mode=form_post` request param in the authorization URL, or by setting `oauth_response_mode "form_post"` option. This improves the overall security of an Authorization server even more, as authorization codes are sent to client applications via a POST request to the redirect URI.


#### Improvements

* For the OIDC `address` scope, proper claims are now emitted as per the standard, i.e. the "formatted", "street_address", "locality", "region", "postal_code", "country". These will be the ones referenced in the `get_oidc_param` method.

#### Bugfixes

* The rails templates were missing declarations from a few params, which made some of the flows (the PKCE for example) not work out-of-the box;
* rails tests were silently not running in CI;
* The CI suite was revamped, so that all Oauth tests would be run under rails as well. All versions from rails equal or above 5.0 are now targeted;

Version data entries

23 entries across 23 versions & 1 rubygems

Version Path
rodauth-oauth-1.6.3 doc/release_notes/0_4_0.md
rodauth-oauth-1.6.2 doc/release_notes/0_4_0.md
rodauth-oauth-1.6.0 doc/release_notes/0_4_0.md
rodauth-oauth-1.5.0 doc/release_notes/0_4_0.md
rodauth-oauth-1.4.0 doc/release_notes/0_4_0.md
rodauth-oauth-1.3.2 doc/release_notes/0_4_0.md
rodauth-oauth-1.3.1 doc/release_notes/0_4_0.md
rodauth-oauth-1.3.0 doc/release_notes/0_4_0.md
rodauth-oauth-1.2.0 doc/release_notes/0_4_0.md
rodauth-oauth-1.1.0 doc/release_notes/0_4_0.md
rodauth-oauth-1.0.0 doc/release_notes/0_4_0.md
rodauth-oauth-1.0.0.pre.beta2 doc/release_notes/0_4_0.md
rodauth-oauth-1.0.0.pre.beta1 doc/release_notes/0_4_0.md
rodauth-oauth-0.10.4 doc/release_notes/0_4_0.md
rodauth-oauth-0.10.3 doc/release_notes/0_4_0.md
rodauth-oauth-0.10.2 doc/release_notes/0_4_0.md
rodauth-oauth-0.10.1 doc/release_notes/0_4_0.md
rodauth-oauth-0.10.0 doc/release_notes/0_4_0.md
rodauth-oauth-0.9.3 doc/release_notes/0_4_0.md
rodauth-oauth-0.9.2 doc/release_notes/0_4_0.md