-
Notifications
You must be signed in to change notification settings - Fork 276
Open
Labels
release-noteNote this issue in the milestone's release notesNote this issue in the milestone's release notes
Milestone
Description
Related Issues
Summary
Support for RFC7636 (PKCE) for OIDC Auth Providers
Support was added to the Generic, Cognito and Keycloak OIDC providers to allow enabling S256 (SHA 256) PKCE token verification.
This provides a way to mitigate authorization code interception attacks on OIDC authentication flows.
Only the S256 PKCE verification method is currently supported.
It can be enabled by editing the authentication provider.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
release-noteNote this issue in the milestone's release notesNote this issue in the milestone's release notes