All Classes
-
All Classes Interface Summary Class Summary Enum Summary Class Description AbstractOAuth2ClientAuthenticableProfileConfiguration Base class for OAuth profile configurations that support OAuth-defined client authentication methods.AbstractOAuth2FlowAwareProfileConfiguration Base class for OIDC protocol configuration, containing configuration bits shared by all flow aware OIDC protocol configurations.AbstractOAuth2TokenValidatingConfiguration Base class for profile configurations that validate previously issued OAuth2 tokens.AbstractOIDCSSOConfiguration Base class for profiles that support OIDC's concept of SSO, which spans multiple endpoints.AccessTokenClaimsSetManipulationStrategyLookupFunction A function that returnsAbstractOIDCSSOConfiguration.getAccessTokenClaimsSetManipulationStrategy(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.AccessTokenLifetimeLookupFunction A function that returnsOAuth2TokenAudienceConfiguration.getAccessTokenLifetime(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.AccessTokenTypeLookupFunction A function that returnsOAuth2TokenAudienceConfiguration.getAccessTokenType(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.AcrClaimAlwaysEssentialLookupFunction A predicate that returnsOIDCAuthorizationConfiguration.isAcrRequestAlwaysEssential(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.AllowPKCEPlainPredicate A predicate implementation that forwards toAbstractOIDCSSOConfiguration.isAllowPKCEPlain(ProfileRequestContext).AlwaysIncludedAttributesLookupFunction A function that obtainsAbstractOIDCSSOConfiguration.getAlwaysIncludedAttributes(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.AttributeConsentFlowEnabledPredicate A predicate implementation that checks if attribute-release is included in the list of post authentication flows returned byPostAuthenticationFlowsLookupFunction.AudienceRestrictionsLookupFunction A function that returns the effective audience restrictions to include in ID tokens, based on combining a relying party's entityID with the result ofAbstractOIDCSSOConfiguration.getAdditionalAudiencesForIdToken(ProfileRequestContext), if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.AuthenticationContextClassReferencePrincipal Principal based on a OIDC Authentication Context Class Reference.AuthorizationCodeClaimsSetManipulationStrategyLookupFunction A function that returnsOIDCAuthorizationConfiguration.getAuthorizationCodeClaimsSetManipulationStrategy(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.AuthorizationCodeFlowEnabledPredicate A predicate implementation that forwards toAbstractOAuth2FlowAwareProfileConfiguration.isAuthorizationCodeFlowEnabled(ProfileRequestContext).AuthzCodeLifetimeLookupFunction A function that returnsOIDCAuthorizationConfiguration.getAuthorizeCodeLifetime(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.ClaimsValidatorLookupFunction A function that obtainsAbstractOAuth2ClientAuthenticableProfileConfiguration.getClaimsValidator(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.DataEncryptionAlgorithmsLookupFunction A function that returnsEncryptionConfiguration.getDataEncryptionAlgorithms()if it is available in the security configuration of the profile configuration.DeniedUserInfoAttributesLookupFunction A function that obtainsOIDCAuthorizationConfiguration.getDeniedUserInfoAttributes(ProfileRequestContext)orOIDCUserInfoConfiguration.getDeniedUserInfoAttributes(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.EncodeConsentPredicate A predicate implementation that forwards toOIDCAuthorizationConfiguration.isEncodeConsentInTokens(ProfileRequestContext).EncodedAttributesLookupFunction A function that obtainsOIDCAuthorizationConfiguration.getEncodedAttributes(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.EncryptionOptionalPredicate A predicate implementation that forwards toAbstractOIDCSSOConfiguration.isEncryptionOptional(ProfileRequestContext)orOIDCUserInfoConfiguration.isEncryptionOptional(ProfileRequestContext).EnforceRefreshTokenRotationPredicate A predicate implementation that forwards toOAuth2TokenConfiguration.isEnforceRefreshTokenRotation(ProfileRequestContext).ForcePKCEPredicate A predicate implementation that forwards toAbstractOIDCSSOConfiguration.isForcePKCE(ProfileRequestContext).GrantTypesLookupFunction A function that obtainsOAuth2TokenConfiguration.getGrantTypes(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.HybridFlowEnabledPredicate A predicate implementation that forwards toAbstractOAuth2FlowAwareProfileConfiguration.isHybridFlowEnabled(ProfileRequestContext).IDTokenLifetimeLookupFunction A function that returnsAbstractOIDCSSOConfiguration.getIDTokenLifetime(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.IDTokenManipulationStrategyLookupFunction A function that returnsAbstractOIDCSSOConfiguration.getIDTokenManipulationStrategy(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.ImplicitFlowEnabledPredicate A predicate implementation that forwards toAbstractOAuth2FlowAwareProfileConfiguration.isImplicitFlowEnabled(ProfileRequestContext).IncludeIssuerInAuthenticationResponsePredicate A predicate implementation that forwards toOIDCAuthorizationConfiguration.isIncludeIssuerInResponse(ProfileRequestContext).IssuedClaimsValidatorLookupFunction A function that obtainsAbstractOAuth2TokenValidatingConfiguration.getIssuedClaimsValidator(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.KeyTransportEncryptionAlgorithmsLookupFunction A function that returnsEncryptionConfiguration.getKeyTransportEncryptionAlgorithms()if it is available in the security configuration of the profile configuration.OAuth2ProfileConfiguration Marker interface for OAuth 2 profile configurations.OAuth2TokenAudienceConfiguration Interface for OAuth 2 token "audience" profile configuration.OAuth2TokenConfiguration OIDC-aware OAuth 2 token endpoint profile configuration.OAuth2TokenIntrospectionConfiguration Profile configuration for the OAuth2 Token Introspection.OAuth2TokenRevocationConfiguration Profile configuration for the OAuth2 Token Revocation.OAuth2TokenRevocationConfiguration.OAuth2TokenRevocationMethod Enumeration of the OAuth2 token revocation methods.OAuthAuthorizationRequest An OAuth 2.0 authorization request.OIDCAuthenticationRequest OpenID Connect Authentication Request.OIDCAuthorizationConfiguration Profile configuration for the OpenID Connect authorization endpoint.OIDCAuthorizationConfiguration.OIDCHttpRequestMethod Enumeration of the HTTP methods used in OIDC authentication requests.OIDCDynamicRegistrationConfiguration Profile configuration for the OpenID Connect dynamic client registration.OidcError Supplemental error objects for any missing values in the Nimbus library.OidcEventIds OpenID Connect -specific constants to use forProfileActionEventContexts.OIDCMessageDecoder Marker interface for OIDC Message Decoders.OIDCMessageEncoder An OIDC message encoder interface which requires implementations to test if the request method is supported by the encoder.OIDCProfileConfiguration Marker interface for OIDC-specific profile configurations.OIDCProviderInformationConfiguration Profile configuration for the OpenID Connect Provider Configuration.OIDCPublishKeySetConfiguration Profile configuration for publishing OP key set.OIDCSecurityConfiguration Class extends SecurityConfiguration to support separate configuration for request object decryption and signature validation.OIDCUserInfoConfiguration Profile configuration for the OpenID Connect core protocol userinfo endpoint.RefreshTokenClaimsSetManipulationStrategyLookupFunction A function that returnsOAuth2TokenConfiguration.getRefreshTokenClaimsSetManipulationStrategy(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.RefreshTokenLifetimeLookupFunction A function that returnsAbstractOIDCSSOConfiguration.getRefreshTokenLifetime(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.RefreshTokensEnabledPredicate A predicate implementation that forwards toAbstractOAuth2FlowAwareProfileConfiguration.isRefreshTokensEnabled(ProfileRequestContext).RegistrationMetadataPolicyLookupFunction A function that returnsOIDCDynamicRegistrationConfiguration.getMetadataPolicy(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.RegistrationValidityPeriodLookupFunction A function that returnsOIDCDynamicRegistrationConfiguration.getRegistrationValidityPeriod(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.RequestObjectDecryptionConfigurationLookupFunction A function that returns aEncryptionConfigurationlist for request object decryption by way of various lookup strategies.RequestObjectSignatureValidationConfigurationLookupFunction A function that returns aSignatureSigningConfigurationlist for request object signature validation by way of various lookup strategies.ResolverBasedRegistrationMetadataPolicyLookupFunction A lookup function for the map ofMetadataPolicyobjects, resolved via configurableMetadataPolicyResolverand optionally configurableCriteriaSet.RevocationLifetimeLookupFunction A function that returnsOAuth2TokenRevocationConfiguration.getRevocationLifetime(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.RevocationMethodLookupFunction A function that returnsOAuth2TokenRevocationConfiguration.getRevocationMethod(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.SecretExpirationPeriodLookupFunction A function that returnsOIDCDynamicRegistrationConfiguration.getSecretExpirationPeriod(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.SignatureAlgorithmsLookupFunction A function that returnsSignatureSigningConfiguration.getSignatureAlgorithms()if it is available in the security configuration of the profile configuration.TokenEndpointAuthMethodLookupFunction A function that obtainsAbstractOAuth2ClientAuthenticableProfileConfiguration.getTokenEndpointAuthMethods(ProfileRequestContext)if such a profile is available from aRelyingPartyContextobtained via a lookup function, by default a child of theProfileRequestContext.TokenEndpointJwtSignatureValidationConfigurationLookupFunction A function that returns aSignatureSigningConfigurationlist for token endpoint JWT signature validation by way of various lookup strategies.