Skip to content
Snippets Groups Projects
  • Richard van der Hoff's avatar
    4575ad0b
    Store an IdP ID in the OIDC session (#9109) · 4575ad0b
    Richard van der Hoff authored
    Again in preparation for handling more than one OIDC provider, add a new caveat to the macaroon used as an OIDC session cookie, which remembers which OIDC provider we are talking to. In future, when we get a callback, we'll need it to make sure we talk to the right IdP.
    
    As part of this, I'm adding an idp_id and idp_name field to the OIDC configuration object. They aren't yet documented, and we'll just use the old values by default.
    Store an IdP ID in the OIDC session (#9109)
    Richard van der Hoff authored
    Again in preparation for handling more than one OIDC provider, add a new caveat to the macaroon used as an OIDC session cookie, which remembers which OIDC provider we are talking to. In future, when we get a callback, we'll need it to make sure we talk to the right IdP.
    
    As part of this, I'm adding an idp_id and idp_name field to the OIDC configuration object. They aren't yet documented, and we'll just use the old values by default.