Fixing introspect
This commit is contained in:
parent
05c8b59f67
commit
91ddd6bd5e
|
|
@ -84,12 +84,9 @@ func (p *OIDCProvider) Redeem(ctx context.Context, redirectURL, code, codeVerifi
|
||||||
// EnrichSession is called after Redeem to allow providers to enrich session fields
|
// EnrichSession is called after Redeem to allow providers to enrich session fields
|
||||||
// such as User, Email, Groups with provider specific API calls.
|
// such as User, Email, Groups with provider specific API calls.
|
||||||
func (p *OIDCProvider) EnrichSession(ctx context.Context, s *sessions.SessionState) error {
|
func (p *OIDCProvider) EnrichSession(ctx context.Context, s *sessions.SessionState) error {
|
||||||
// ToDo: Vozniak - is this going to break something? tests are fine.
|
err := p.enrichFromIntrospectURL(ctx, s)
|
||||||
if p != nil && p.IntrospectURL != nil && p.IntrospectURL.String() != "" {
|
if err != nil {
|
||||||
err := p.enrichFromIntrospectURL(ctx, s)
|
logger.Errorf("Warning: Introspect URL request failed: %v", err)
|
||||||
if err != nil {
|
|
||||||
logger.Errorf("Warning: Introspect URL request failed: %v", err)
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
|
||||||
// If a mandatory email wasn't set, error at this point.
|
// If a mandatory email wasn't set, error at this point.
|
||||||
|
|
@ -130,7 +127,14 @@ func (p *OIDCProvider) enrichFromIntrospectURL(ctx context.Context, s *sessions.
|
||||||
params.Add("token", s.AccessToken)
|
params.Add("token", s.AccessToken)
|
||||||
basicAuth := b64.StdEncoding.EncodeToString([]byte(fmt.Sprintf("%s:%s", p.ClientID, clientSecret)))
|
basicAuth := b64.StdEncoding.EncodeToString([]byte(fmt.Sprintf("%s:%s", p.ClientID, clientSecret)))
|
||||||
logger.Printf("Requesting introspect")
|
logger.Printf("Requesting introspect")
|
||||||
result := requests.New( /* p.IntrospectURL.String() */ "https://iam-client-test.us-east.philips-healthsuite.com/authorize/oauth2/introspect").
|
if p.IntrospectURL == nil {
|
||||||
|
p.IntrospectURL = &url.URL{
|
||||||
|
Scheme: p.RedeemURL.Scheme,
|
||||||
|
Host: p.RedeemURL.Host,
|
||||||
|
Path: "/authorize/oauth2/introspect",
|
||||||
|
}
|
||||||
|
}
|
||||||
|
result := requests.New(p.IntrospectURL.String()).
|
||||||
WithContext(ctx).
|
WithContext(ctx).
|
||||||
WithMethod("POST").
|
WithMethod("POST").
|
||||||
WithBody(bytes.NewBufferString(params.Encode())).
|
WithBody(bytes.NewBufferString(params.Encode())).
|
||||||
|
|
|
||||||
Loading…
Reference in New Issue