Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

feat(jans-auth-server): disable issuing AT by refresh token if user status = INACTIVE #1093

Closed
yuriyz opened this issue Mar 22, 2022 · 1 comment
Assignees
Labels
comp-jans-auth-server Component affected by issue or PR kind-enhancement Issue or PR is an enhancement to an existing functionality

Comments

@yuriyz
Copy link
Contributor

yuriyz commented Mar 22, 2022

Description

Currently AS returns AT by refresh token even if underlying user status is changed to INACTIVE. We should give ability to disable issuing new AT by AT if user is disabled.

@yuriyz yuriyz added kind-enhancement Issue or PR is an enhancement to an existing functionality comp-jans-auth-server Component affected by issue or PR labels Mar 22, 2022
@yuriyz yuriyz self-assigned this Mar 22, 2022
yuriyz added a commit to GluuFederation/oxAuth that referenced this issue Apr 6, 2022
@yuriyz
Copy link
Contributor Author

yuriyz commented Apr 14, 2022

Done in oxauth 4.4, master and jans.

@yuriyz yuriyz closed this as completed Apr 14, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
comp-jans-auth-server Component affected by issue or PR kind-enhancement Issue or PR is an enhancement to an existing functionality
Projects
None yet
Development

No branches or pull requests

1 participant