Code
Hub
Workspaces
Following
Trending
Connect
MCP
copy
Create free account
hub
/
github.com/zitadel/oidc
/ functions
Functions
1,804 in github.com/zitadel/oidc
⨍
Functions
1,804
◇
Types & classes
360
↓ 1 callers
Method
CreateCookie
(name, value string)
pkg/http/cookie.go:118
↓ 1 callers
Function
CreateJWT
(ctx context.Context, issuer string, tokenRequest TokenRequest, exp time.Time, id string, client AccessTokenCl
pkg/op/token.go:145
↓ 1 callers
Function
CreateRouter
(o OpenIDProvider, interceptors ...HttpInterceptor)
pkg/op/op.go:126
↓ 1 callers
Method
CreateSecureCookie
(r *http.Request, name, value string)
pkg/http/cookie.go:135
↓ 1 callers
Method
CreateTokenExchangeRequest
CreateTokenExchangeRequest will be called after parsing and validating token exchange request. Stored request is not accessed later by op - so it is u
pkg/op/storage.go:106
↓ 1 callers
Method
Crypto
()
pkg/op/token_revocation.go:16
↓ 1 callers
Method
Crypto
()
pkg/op/auth_request.go:53
↓ 1 callers
Method
Crypto
()
pkg/op/userinfo.go:15
↓ 1 callers
Method
Crypto
()
pkg/op/token.go:14
↓ 1 callers
Method
Decoder
()
pkg/op/token_revocation.go:15
↓ 1 callers
Method
Decoder
()
pkg/op/auth_request.go:50
↓ 1 callers
Method
Decoder
()
pkg/op/token_intospection.go:13
↓ 1 callers
Method
Decoder
()
pkg/op/session.go:16
↓ 1 callers
Method
Decoder
()
pkg/op/userinfo.go:14
↓ 1 callers
Method
Decoder
()
pkg/op/client.go:133
↓ 1 callers
Method
Decrypt
(s string)
pkg/op/crypto.go:103
↓ 1 callers
Function
DecryptBytesAES
(cipherText []byte, key string)
pkg/crypto/crypto.go:53
↓ 1 callers
Function
DefaultACRVerifier
DefaultACRVerifier implements `ACRVerifier` returning an error if none of the provided values matches the acr claim
pkg/oidc/verifier.go:101
↓ 1 callers
Function
DefaultISSVerifier
DefaultISSVerifier implements `ISSVerifier` returning an error if the iss claim doesn't match the expected issuer.
pkg/oidc/verifier.go:87
↓ 1 callers
Method
DefaultLogoutRedirectURI
()
pkg/op/session.go:19
↓ 1 callers
Function
DeviceAccessToken
DeviceAccessToken attempts to obtain tokens from a Device Authorization, by means of polling as defined in RFC, section 3.3 and 3.4: https://www.rfc-e
pkg/client/rp/device.go:66
↓ 1 callers
Function
DeviceAuthorization
DeviceAuthorization starts a new Device Authorization flow as defined in RFC 8628, section 3.1 and 3.2: https://www.rfc-editor.org/rfc/rfc8628#section
pkg/client/rp/device.go:40
↓ 1 callers
Function
DeviceAuthorization
(w http.ResponseWriter, r *http.Request, o OpenIDProvider)
pkg/op/device.go:66
↓ 1 callers
Function
DeviceClient
DeviceClient creates a device client with Basic authentication.
example/server/storage/client.go:197
↓ 1 callers
Method
DeviceToken
DeviceToken handles the OAuth 2.0 Device Authorization Grant It is called by the Token endpoint handler when grant_type has the value urn:ietf:params:
pkg/op/server.go:125
↓ 1 callers
Method
EXPECT
EXPECT returns an object that allows the caller to indicate expected use.
pkg/op/mock/discovery.mock.go:34
↓ 1 callers
Method
EXPECT
EXPECT returns an object that allows the caller to indicate expected use.
pkg/op/mock/key.mock.go:34
↓ 1 callers
Method
Encrypt
(string)
pkg/op/crypto.go:12
↓ 1 callers
Method
Encrypt
(s string)
pkg/op/crypto.go:99
↓ 1 callers
Function
EncryptBytesAES
(plainText []byte, key string)
pkg/crypto/crypto.go:23
↓ 1 callers
Function
EndSession
(w http.ResponseWriter, r *http.Request, ender SessionEnder)
pkg/op/session.go:30
↓ 1 callers
Method
EndSession
EndSession handles the OpenID Connect RP-Initiated Logout. https://openid.net/specs/openid-connect-rpinitiated-1_0.html There are no response requirem
pkg/op/server.go:145
↓ 1 callers
Method
Endpoints
()
pkg/op/server_legacy.go:21
↓ 1 callers
Method
ErrorHandler
ErrorHandler returns the handler used for callback errors
pkg/client/rp/relying_party.go:81
↓ 1 callers
Method
ExampleClientID
()
example/server/storage/user.go:40
↓ 1 callers
Function
Exchange
Exchange performs a token exchange appropriate for the grant type
pkg/op/token_request.go:40
↓ 1 callers
Function
ExchangeToken
ExchangeToken sends a token exchange request (rfc 8693) to te's token endpoint. SubjectToken and SubjectTokenType are required parameters.
pkg/client/tokenexchange/tokenexchange.go:105
↓ 1 callers
Function
ExpectDecoder
(a op.Authorizer)
pkg/op/mock/authorizer.mock.impl.go:30
↓ 1 callers
Function
ExpectEncoder
(a op.Authorizer)
pkg/op/mock/authorizer.mock.impl.go:35
↓ 1 callers
Function
ExpectInvalidClientID
(s op.Storage)
pkg/op/mock/storage.mock.impl.go:51
↓ 1 callers
Function
ExpectStorage
(a op.Authorizer, t *testing.T)
pkg/op/mock/authorizer.mock.impl.go:83
↓ 1 callers
Function
ExpectValidClientID
(s op.Storage)
pkg/op/mock/storage.mock.impl.go:56
↓ 1 callers
Function
ExpectVerifier
func ExpectSigner(a op.Authorizer, t *testing.T) { mockA := a.(*MockAuthorizer) mockA.EXPECT().Signer().DoAndReturn( func() op.Signer { return
pkg/op/mock/authorizer.mock.impl.go:49
↓ 1 callers
Function
GenerateAndStoreCodeChallenge
GenerateAndStoreCodeChallenge generates a PKCE code challenge and stores its verifier into a secure cookie
pkg/client/rp/relying_party.go:496
↓ 1 callers
Function
GenerateAndStoreCodeChallengeWithRequest
GenerateAndStoreCodeChallenge generates a PKCE code challenge and stores its verifier into a secure cookie
pkg/client/rp/relying_party.go:505
↓ 1 callers
Function
GenerateJWTProfileToken
(assertion *JWTProfileAssertionClaims)
pkg/oidc/token.go:349
↓ 1 callers
Method
GetACR
()
pkg/op/auth_request.go:25
↓ 1 callers
Method
GetAuthTime
()
pkg/op/token.go:195
↓ 1 callers
Method
GetClientID
()
pkg/op/auth_request.go:29
↓ 1 callers
Method
GetClientID
()
pkg/op/token_refresh.go:18
↓ 1 callers
Method
GetDeviceAuthorizationByUserCode
GetDeviceAuthorizationByUserCode returns the current state of the device authorization flow, identified by the user code.
example/server/exampleop/device.go:23
↓ 1 callers
Method
GetDeviceAuthorizationEndpoint
()
pkg/client/client.go:246
↓ 1 callers
Method
GetDeviceAuthorizatonState
GetDeviceAuthorizatonState returns the current state of the device authorization flow in the database. The method is polled until the authorization is
pkg/op/storage.go:202
↓ 1 callers
Method
GetEndSessionEndpoint
()
pkg/client/client.go:101
↓ 1 callers
Function
GetEndpoints
(discoveryConfig *oidc.DiscoveryConfiguration)
pkg/client/rp/relying_party.go:733
↓ 1 callers
Method
GetExchangeSubjectTokenType
()
pkg/op/token_exchange.go:25
↓ 1 callers
Function
GetHashAlgorithm
(sigAlgorithm jose.SignatureAlgorithm)
pkg/crypto/hash.go:16
↓ 1 callers
Method
GetKeyByIDAndClientID
(ctx context.Context, keyID, clientID string)
pkg/op/storage.go:137
↓ 1 callers
Method
GetKeyByIDAndClientID
(ctx context.Context, keyID, clientID string)
pkg/op/verifier_jwt_profile.go:102
↓ 1 callers
Method
GetNonce
()
pkg/op/auth_request.go:31
↓ 1 callers
Method
GetPrivateClaimsFromRequest
(ctx context.Context, request TokenRequest, restrictedScopes []string)
pkg/op/storage.go:157
↓ 1 callers
Method
GetPrivateClaimsFromTokenExchangeRequest
GetPrivateClaimsFromTokenExchangeRequest will be called during access token creation. Claims evaluation can be based on all validated request data ava
pkg/op/storage.go:110
↓ 1 callers
Method
GetRevokeEndpoint
()
pkg/client/client.go:146
↓ 1 callers
Method
GetRevokeEndpoint
GetRevokeEndpoint returns the endpoint to revoke a specific token
pkg/client/rp/relying_party.go:68
↓ 1 callers
Method
GetScopes
()
pkg/op/token_refresh.go:19
↓ 1 callers
Method
GetScopes
()
pkg/op/token_exchange.go:20
↓ 1 callers
Method
GetState
()
pkg/op/auth_request.go:36
↓ 1 callers
Method
GetSubject
()
pkg/op/auth_request.go:37
↓ 1 callers
Method
GetSubject
()
pkg/op/token_exchange.go:21
↓ 1 callers
Method
GetUserInfo
()
pkg/oidc/token.go:170
↓ 1 callers
Method
GrantTypeClientCredentialsSupported
()
pkg/op/token_request.go:22
↓ 1 callers
Method
GrantTypeDeviceCodeSupported
()
pkg/op/token_request.go:23
↓ 1 callers
Method
GrantTypeJWTAuthorizationSupported
()
pkg/op/token_request.go:21
↓ 1 callers
Method
GrantTypeRefreshTokenSupported
()
pkg/op/token_request.go:19
↓ 1 callers
Method
GrantTypeTokenExchangeSupported
()
pkg/op/token_request.go:20
↓ 1 callers
Method
GrantTypes
()
pkg/op/client.go:42
↓ 1 callers
Method
Health
Health returns a status of "ok" once the Server is listening. The recommended Response Data type is [Status].
pkg/op/server.go:35
↓ 1 callers
Method
HttpClient
()
pkg/client/rs/resource_server.go:17
↓ 1 callers
Method
IDTokenHintVerifier
(context.Context)
pkg/op/auth_request.go:52
↓ 1 callers
Method
IDTokenHintVerifier
(context.Context)
pkg/op/session.go:18
↓ 1 callers
Method
IDTokenUserinfoClaimsAssertion
()
pkg/op/client.go:50
↓ 1 callers
Function
Introspect
(w http.ResponseWriter, r *http.Request, introspector Introspector)
pkg/op/token_intospection.go:30
↓ 1 callers
Method
Introspect
Introspect handles the OAuth 2.0 Token Introspection endpoint. https://datatracker.ietf.org/doc/html/rfc7662 The recommended Response Data type is [oi
pkg/op/server.go:130
↓ 1 callers
Method
IntrospectionURL
()
pkg/client/rs/resource_server.go:15
↓ 1 callers
Method
IsOAuth2Only
IsOAuth2Only specifies whether relaying party handles only oauth2 or oidc calls
pkg/client/rp/relying_party.go:59
↓ 1 callers
Method
IsSetClientAssertion
()
pkg/op/token_request.go:98
↓ 1 callers
Method
IsSetClientIDAndClientSecret
()
pkg/op/token_request.go:99
↓ 1 callers
Function
JWTProfile
JWTProfile handles the OAuth 2.0 JWT Profile Authorization Grant https://tools.ietf.org/html/rfc7523#section-2.1
pkg/op/token_jwt_profile.go:18
↓ 1 callers
Method
JWTProfile
JWTProfile handles the OAuth 2.0 JWT Profile Authorization Grant It is called by the Token endpoint handler when grant_type has the value urn:ietf:par
pkg/op/server.go:101
↓ 1 callers
Function
JWTProfileExchange
JWTProfileExchange handles the oauth2 jwt profile exchange
pkg/client/jwt_profile.go:14
↓ 1 callers
Method
JWTProfileTokenType
(ctx context.Context, request TokenRequest)
pkg/op/storage.go:144
↓ 1 callers
Method
JWTProfileVerifier
(context.Context)
pkg/op/token_revocation.go:25
↓ 1 callers
Method
JWTProfileVerifier
(context.Context)
pkg/op/token_jwt_profile.go:14
↓ 1 callers
Method
LogValue
()
pkg/oidc/authorization.go:102
↓ 1 callers
Method
LogValue
()
pkg/oidc/error.go:263
↓ 1 callers
Method
Logger
Logger returns the logger configured with [WithLogger], or [slog.Default] if none was set. Deprecated: configure logging with [slog.SetDefault].
pkg/client/rp/relying_party.go:85
↓ 1 callers
Method
Logger
Logger returns the logger configured with [WithLogger], or [slog.Default] if none was set. Deprecated: configure logging with [slog.SetDefault].
pkg/client/rp/relying_party.go:196
↓ 1 callers
Method
MarshalJSON
()
pkg/oidc/error.go:141
↓ 1 callers
Method
MarshalText
()
pkg/oidc/types.go:215
↓ 1 callers
Function
MaxAgeToInternal
(maxAge *uint)
example/server/storage/oidc.go:137
← previous
next →
501–600 of 1,804, ranked by callers