Uploaded image for project: 'CXF'
  1. CXF
  2. CXF-4051

Custom OAuth scopes are not supported

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • None
    • 2.5.3, 2.6
    • JAX-RS
    • None
    • Unknown

    Description

      Clients can include custom scopes ("x-oauth-scope" in CXF (OAuth 1.0 extension), "scope" in OAuth 2.0).
      This does not get passed via Authorization header, mainly due to the bug in the Google lib.
      Another bug is that on the server side the custom form payload is assumed to be part of the OAuth payload.

      Attachments

        Activity

          People

            sergey_beryozkin Sergey Beryozkin
            sergey_beryozkin Sergey Beryozkin
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: