view mod_http_oauth2/html/style.css @ 5404:1087f697c3f3

mod_http_oauth2: Strip unknown extra fields from client registration We shouldn't sign things we don't understand! RFC 7591 section-2 states: > The authorization server MUST ignore any client metadata sent by the > client that it does not understand (for instance, by silently removing > unknown metadata from the client's registration record during > processing). Prevents grandfathering in of unvalidated data that might become used later, especially since the 'additionalProperties' schema keyword was removed in 698fef74ce53
author Kim Alvefur <zash@zash.se>
date Tue, 02 May 2023 16:23:40 +0200
parents 7acf73d2ebb5
children 7998b49d6512
line wrap: on
line source

body
{
	margin-top:14%;
	text-align:center;
	background-color:#f8f8f8;
	font-family:sans-serif
}

h1
{
	font-size:xx-large;
}

legend {
	font-size:x-large;
}
p
{
	font-size:large;
}

.error
{
	margin: 0.75em;
	background-color: #f8d7da;
	color: #842029;
	border: solid 1px #f5c2c7;
}

input {
	margin: 0.3rem;
	padding: 0.2rem;
	line-height: 1.5rem;
	font-size: 110%;
}
h1, h2 {
	text-align: left;
}

main {
	max-width: 600px;
	padding: 0 1.5em 1.5em 1.5em;
}

dt
{
	font-weight: bold;
	margin: 0.5em 0 0 0;
}

dd
{
	margin: 0;
}

button, input[type=submit]
{
	padding: 0.5rem;
	margin: 0.75rem;
}

@media(prefers-color-scheme:dark)
{
	body
	{
		background-color:#161616;
		color:#eee;
	}

	.error {
		color: #f8d7da;
		background-color: #842029;
	}


	:link
	{
		color: #6197df;
	}

	:visited
	{
		color: #9a61df;
	}
}

@media(min-width: 768px)
{
	main
	{
		margin-left: auto;
		margin-right: auto;
	}

}