MCPcopy Create free account

hub / github.com/zitadel/oidc / functions

Functions1,804 in github.com/zitadel/oidc

↓ 2 callersFunctionCreateJWTTokenResponse
CreateJWTTokenResponse creates an access_token response for a JWT Profile Grant request by default the access_token is an opaque string, but can be sp
pkg/op/token_jwt_profile.go:63
↓ 2 callersFunctionCreateTokenExchangeRequest
( ctx context.Context, oidcTokenExchangeRequest *oidc.TokenExchangeRequest, client Client, exchanger Excha
pkg/op/token_exchange.go:232
↓ 2 callersFunctionCreateTokenExchangeResponse
( ctx context.Context, tokenExchangeRequest TokenExchangeRequest, client Client, creator TokenCreator, )
pkg/op/token_exchange.go:373
↓ 2 callersFunctionDecryptAES
(data string, key string)
pkg/crypto/crypto.go:41
↓ 2 callersMethodDeleteAuthRequest
(context.Context, string)
pkg/op/storage.go:19
↓ 2 callersMethodDeleteCookie
(w http.ResponseWriter, name string)
pkg/http/cookie.go:185
↓ 2 callersMethodDenyDeviceAuthorization
DenyDeviceAuthorization marks a device authorization entry as Denied.
example/server/exampleop/device.go:31
↓ 2 callersFunctionDeviceAccessToken
(w http.ResponseWriter, r *http.Request, exchanger Exchanger)
pkg/op/device.go:200
↓ 2 callersMethodDeviceAuthorization
DeviceAuthorization initiates the device authorization flow. https://datatracker.ietf.org/doc/html/rfc8628#section-3.1 The recommended Response Data t
pkg/op/server.go:72
↓ 2 callersFunctionDeviceAuthorizationHandler
(o OpenIDProvider)
pkg/op/device.go:58
↓ 2 callersFunctionDiscover
(w http.ResponseWriter, config *oidc.DiscoveryConfiguration)
pkg/op/discovery.go:32
↓ 2 callersMethodEXPECT
EXPECT returns an object that allows the caller to indicate expected use.
pkg/op/mock/client.mock.go:35
↓ 2 callersFunctionEncryptAES
(data string, key string)
pkg/crypto/crypto.go:14
↓ 2 callersFunctionEndSession
(ctx context.Context, rp RelyingParty, idToken, optionalRedirectURI, optionalState, optionalLogoutHint string,
pkg/client/rp/relying_party.go:913
↓ 2 callersMethodErrorHandler
()
pkg/client/rp/relying_party.go:180
↓ 2 callersFunctionFromEnvVars
FromEnvVars loads configuration parameters from environment variables. If there is no such variable defined, then use default values.
example/server/config/config.go:21
↓ 2 callersMethodGetAMR
()
pkg/op/token.go:193
↓ 2 callersMethodGetAccessTokenHash
()
pkg/oidc/verifier.go:37
↓ 2 callersMethodGetActor
()
pkg/op/token.go:142
↓ 2 callersMethodGetAddress
GetAddress is a safe getter that takes care of a possible nil value.
pkg/oidc/userinfo.go:55
↓ 2 callersMethodGetAudience
()
pkg/op/token.go:19
↓ 2 callersMethodGetAuthenticationContextClassReference
()
pkg/oidc/verifier.go:24
↓ 2 callersMethodGetCodeChallenge
()
pkg/op/auth_request.go:30
↓ 2 callersMethodGetExchangeActor
()
pkg/op/token_exchange.go:29
↓ 2 callersMethodGetExchangeSubject
()
pkg/op/token_exchange.go:24
↓ 2 callersMethodGetExpiration
()
pkg/oidc/verifier.go:21
↓ 2 callersMethodGetID
()
pkg/op/token.go:24
↓ 2 callersMethodGetIssuedAt
()
pkg/oidc/verifier.go:22
↓ 2 callersMethodGetNonce
()
pkg/oidc/verifier.go:23
↓ 2 callersMethodGetPrivateClaimsFromScopes
(ctx context.Context, userID, clientID string, scopes []string)
pkg/op/storage.go:136
↓ 2 callersMethodGetSubject
()
pkg/client/rp/relying_party.go:645
↓ 2 callersFunctionGetTokenIDAndSubjectFromToken
( ctx context.Context, exchanger Exchanger, token string, tokenType oidc.TokenType, isActor bool, )
pkg/op/token_exchange.go:297
↓ 2 callersMethodGetUserByID
(string)
example/server/storage/user.go:38
↓ 2 callersMethodGetUserByUsername
(string)
example/server/storage/user.go:39
↓ 2 callersMethodGrantTypeClientCredentialsSupported
()
pkg/op/config.go:42
↓ 2 callersMethodGrantTypeJWTAuthorizationSupported
()
pkg/op/config.go:41
↓ 2 callersFunctionHashString
(hash hash.Hash, s string, firstHalf bool)
pkg/crypto/hash.go:37
↓ 2 callersMethodIDTokenVerifier
()
pkg/client/rp/relying_party.go:173
↓ 2 callersFunctionIntrospect
Introspect calls the [RFC7662] Token Introspection endpoint and returns the response in an instance of type R. [*oidc.IntrospectionResponse] can be us
pkg/client/rs/resource_server.go:125
↓ 2 callersMethodIntrospectionAuthMethodPrivateKeyJWTSupported
()
pkg/op/config.go:44
↓ 2 callersMethodIntrospectionEndpointSigningAlgorithmsSupported
()
pkg/op/config.go:45
↓ 2 callersFunctionIsConfidentialType
(c Client)
pkg/op/client.go:80
↓ 2 callersMethodIsRedirectDisabled
()
pkg/oidc/error.go:208
↓ 2 callersMethodIsScopeAllowed
(scope string)
pkg/op/client.go:49
↓ 2 callersMethodIsSupported
()
pkg/oidc/token_request.go:62
↓ 2 callersFunctionIssuerFromForwardedOrHost
IssuerFromForwardedOrHost tries to establish the Issuer based on the Forwarded header host field. If multiple Forwarded headers are present, the first
pkg/op/config.go:88
↓ 2 callersFunctionIssuerFromHost
(path string)
pkg/op/config.go:60
↓ 2 callersMethodKeyBindingThumbprint
KeyBindingThumbprint returns the RFC 7638 SHA-256 JWK thumbprint of the binding key. Experimental: OpenID Connect Key Binding 1.0 is a draft standard
pkg/client/rp/key_binding.go:161
↓ 2 callersFunctionKeys
(w http.ResponseWriter, r *http.Request, k KeyProvider)
pkg/op/keys.go:22
↓ 2 callersFunctionMarshalJSONWithStatus
(w http.ResponseWriter, i any, status int)
pkg/http/marshal.go:15
↓ 2 callersFunctionNewAESCrypto
(key [32]byte)
pkg/op/crypto.go:27
↓ 2 callersFunctionNewBsKey
(key string)
pkg/op/crypto_test.go:104
↓ 2 callersFunctionNewClient
(t *testing.T)
pkg/op/mock/client.go:12
↓ 2 callersFunctionNewClientExpectAny
(t *testing.T, appType op.ApplicationType)
pkg/op/mock/client.go:16
↓ 2 callersFunctionNewClientWithConfig
(t *testing.T, uri []string, appType op.ApplicationType, responseTypes []oidc.ResponseType, devMode bool)
pkg/op/mock/client.go:34
↓ 2 callersFunctionNewCompositeCrypto
(encrypter Encrypter, decrypters []Decrypter)
pkg/op/crypto.go:92
↓ 2 callersFunctionNewDeviceCode
NewDeviceCode generates a new cryptographically secure device code as a base64 encoded string. The length of the string is nBytes * 4 / 3. An error is
pkg/op/device.go:168
↓ 2 callersFunctionNewEndpointWithURL
(path, url string)
pkg/op/endpoint.go:17
↓ 2 callersFunctionNewJWTProfileAssertion
(userID, keyID string, audience []string, key []byte, opts ...AssertionOption)
pkg/oidc/token.go:312
↓ 2 callersFunctionNewJWTProfileTokenSource
NewJWTProfileTokenSource returns an implementation of oauth2.TokenSource It will request a token using the OAuth2 JWT Profile Grant, therefore sending
pkg/client/profile/jwt_profile.go:69
↓ 2 callersFunctionNewMaxAge
(i uint)
pkg/oidc/types.go:194
↓ 2 callersFunctionNewMockHasRedirectGlobs
NewMockHasRedirectGlobs creates a new mock instance.
pkg/op/mock/glob.mock.go:28
↓ 2 callersFunctionNewRelyingPartyOAuth
NewRelyingPartyOAuth creates an (OAuth2) RelyingParty with the given OAuth2 Config and possible configOptions it will use the AuthURL and TokenURL set
pkg/client/rp/relying_party.go:206
↓ 2 callersFunctionNewResourceServerClientCredentials
(ctx context.Context, issuer, clientID, clientSecret string, option ...Option)
pkg/client/rs/resource_server.go:45
↓ 2 callersFunctionParseAuthorizeCallbackRequest
(r *http.Request)
pkg/op/auth_request.go:471
↓ 2 callersFunctionParseAuthorizeRequest
ParseAuthorizeRequest parsed the http request into an oidc.AuthRequest
pkg/op/auth_request.go:154
↓ 2 callersFunctionParseDeviceCodeRequest
(r *http.Request, o OpenIDProvider)
pkg/op/device.go:133
↓ 2 callersFunctionParseJWTProfileGrantRequest
(r *http.Request, decoder httphelper.Decoder)
pkg/op/token_jwt_profile.go:48
↓ 2 callersFunctionParseRequestObject
ParseRequestObject parse the `request` parameter, validates the token including the signature and copies the token claims into the auth request
pkg/op/auth_request.go:169
↓ 2 callersFunctionPollDeviceAccessTokenEndpointWithAuthFn
PollDeviceAccessTokenEndpointWithAuthFn polls the device access token endpoint, accepting an authFn for custom authentication.
pkg/client/client.go:352
↓ 2 callersMethodPostLogoutRedirectURIGlobs
()
pkg/op/client.go:68
↓ 2 callersMethodPostLogoutRedirectURIs
()
pkg/op/client.go:38
↓ 2 callersMethodProbes
()
pkg/op/op.go:112
↓ 2 callersMethodRead
([]byte)
pkg/op/client_test.go:146
↓ 2 callersFunctionRedirectToLogin
RedirectToLogin redirects the end user to the Login UI for authentication
pkg/op/auth_request.go:441
↓ 2 callersMethodRedirectURIGlobs
()
pkg/op/client.go:67
↓ 2 callersFunctionRefreshTokenRequestByRefreshToken
RefreshTokenRequestByRefreshToken returns the RefreshTokenRequest (data representing the original auth request) corresponding to the refresh_token fro
pkg/op/token_refresh.go:144
↓ 2 callersFunctionRefreshTokens
RefreshTokens performs a token refresh. If it doesn't error, it will always provide a new AccessToken. It may provide a new RefreshToken, and if it do
pkg/client/rp/relying_party.go:861
↓ 2 callersFunctionRegisterServer
RegisterServer registers an implementation of Server. The resulting handler takes care of routing and request parsing, with some basic validation of r
pkg/op/server_http.go:22
↓ 2 callersMethodRequestObjectSigningAlgorithmsSupported
()
pkg/op/config.go:49
↓ 2 callersMethodRevocationAuthMethodPrivateKeyJWTSupported
()
pkg/op/config.go:46
↓ 2 callersMethodRevocationEndpointSigningAlgorithmsSupported
()
pkg/op/config.go:47
↓ 2 callersFunctionRevocationError
(err error)
pkg/op/token_revocation.go:146
↓ 2 callersFunctionRunAuthorizationCodeFlow
(t *testing.T, opServer *httptest.Server, clientID, clientSecret string, cookieSpec cookieSpec)
pkg/client/integration_test.go:343
↓ 2 callersMethodScan
(src any)
pkg/oidc/types.go:232
↓ 2 callersMethodSetCurrentScopes
(scopes []string)
pkg/op/token_refresh.go:21
↓ 2 callersMethodSetRequestAwareCookie
(r *http.Request, w http.ResponseWriter, name string, value string)
pkg/http/cookie.go:171
↓ 2 callersMethodSetSignatureAlgorithm
(algorithm jose.SignatureAlgorithm)
pkg/oidc/verifier.go:31
↓ 2 callersMethodSetUserinfoFromRequest
(ctx context.Context, userinfo *oidc.UserInfo, request IDTokenRequest, scopes []string)
pkg/op/storage.go:151
↓ 2 callersMethodSetUserinfoFromScopes
SetUserinfoFromScopes is deprecated and should have an empty implementation for now. Implement SetUserinfoFromRequest instead.
pkg/op/storage.go:133
↓ 2 callersMethodSignDPoPProof
(method, htu, code string)
pkg/client/rp/key_binding.go:68
↓ 2 callersMethodSignatureAlgorithms
(context.Context)
pkg/op/storage.go:68
↓ 2 callersFunctionSignerFromKey
(key SigningKey)
pkg/op/signer.go:17
↓ 2 callersFunctionSignerFromKeyAndKeyID
(key []byte, keyID string)
pkg/client/rp/relying_party.go:441
↓ 2 callersFunctionStaticIssuer
(issuer string)
pkg/op/config.go:131
↓ 2 callersMethodStorage
()
pkg/op/token_revocation.go:17
↓ 2 callersMethodStorage
()
pkg/op/op.go:443
↓ 2 callersMethodStorage
()
pkg/op/session.go:17
↓ 2 callersMethodStorage
()
pkg/op/token.go:13
↓ 2 callersFunctionStoreFromFile
(path string)
example/server/storage/user.go:47
← previousnext →301–400 of 1,804, ranked by callers