[3.0] [OAuth] .well-known must be mounted under / #606

Closed
opened 2022-01-08 12:09:10 +01:00 by nik · 18 comments
Owner

The discovery info URL (/.well-known/...) must be mounted under the root of the domain.

You must make sure that:

  • /.well-known is mounted under root, without the oauth/ part
  • It still delivers all other URLs with the oauth/ part
  • The issuer is delivered as https://example.com/ without the oauth/ part
The discovery info URL (`/.well-known/...`) must be mounted under the root of the domain. You must make sure that: * [ ] `/.well-known` is mounted under root, **without** the `oauth/` part * [ ] It still delivers all other URLs **with** the `oauth/` part * [ ] The issuer is delivered as `https://example.com/` **without** the `oauth/` part
Author
Owner

assigned to @debdolph

assigned to @debdolph
Author
Owner

changed the description

changed the description
Owner

changed the description

changed the description
Owner

marked the checklist item /.well-known is mounted under root, without the oauth/ part as completed

marked the checklist item **`/.well-known` is mounted under root, **without** the `oauth/` part** as completed
Owner

marked the checklist item The issuer is delivered as https://example.com/ without the oauth/ part as completed

marked the checklist item **The issuer is delivered as `https://example.com/` **without** the `oauth/` part** as completed
Owner

marked the checklist item It still delivers all other URLs with the oauth/ part as completed

marked the checklist item **It still delivers all other URLs **with** the `oauth/` part** as completed
Owner

created merge request !2618 to address this issue

created merge request !2618 to address this issue
Owner

mentioned in merge request !2618

mentioned in merge request !2618
Owner

"Ja hier muss ich hier selber noch überlegen, was ich will"

"Ja hier muss ich hier selber noch überlegen, was ich will"
Owner

assigned to @nik and unassigned @debdolph

assigned to @nik and unassigned @debdolph
Owner

marked the checklist item The issuer is delivered as https://example.com/ without the oauth/ part as incomplete

marked the checklist item **The issuer is delivered as `https://example.com/` **without** the `oauth/` part** as incomplete
Owner

marked the checklist item It still delivers all other URLs with the oauth/ part as incomplete

marked the checklist item **It still delivers all other URLs **with** the `oauth/` part** as incomplete
Owner

marked the checklist item /.well-known is mounted under root, without the oauth/ part as incomplete

marked the checklist item **`/.well-known` is mounted under root, **without** the `oauth/` part** as incomplete
Owner

Decision: We will introduce this breaking change in AlekSIS 3.0

Decision: We will introduce this breaking change in AlekSIS 3.0
Owner

changed title from [OAuth] .well-known must be mounted under / to {+[3.0] +}[OAuth] .well-known must be mounted under /

changed title from **[OAuth] .well-known must be mounted under /** to **{+[3.0] +}[OAuth] .well-known must be mounted under /**
Author
Owner

assigned to @debdolph and unassigned @nik

assigned to @debdolph and unassigned @nik
Author
Owner

assigned to @nik and unassigned @debdolph

assigned to @nik and unassigned @debdolph
nik closed this issue 2023-02-13 22:14:21 +01:00
Author
Owner

mentioned in commit 4c25042f2e

mentioned in commit 4c25042f2e599ef8a398f13cc4fa409c72ccefcf
Sign in to join this conversation.
No milestone
No project
No assignees
2 participants
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
aleksis/AlekSIS-Core#606
No description provided.