view mod_groups_oidc/README.md @ 5681:8cb3da7df521

mod_http_oauth2: Restrict introspection to clients own tokens The introspection code was added before the client hash was added in 0860497152af which allows connecting tokens to clients.
author Kim Alvefur <zash@zash.se>
date Sun, 29 Oct 2023 11:20:15 +0100
parents e1422ae7e4de
children
line wrap: on
line source

---
summary: OIDC group membership in UserInfo
labels:
- Stage-Alpha
rockspec:
  dependencies:
  - mod_http_oauth2 >= 200
  - mod_groups_internal
---

This module exposes [mod_groups_internal] groups to
[OAuth 2.0][mod_http_oauth2] clients via a `groups` scope/claim.