•  
      request #25692 [oidc-client] The OAuth2 flow should use PKCE
    Infos
    #25692
    Manuel Vacelet (vaceletm)
    2022-03-31 10:36
    2022-03-07 10:24
    27225
    Details
    [oidc-client] The OAuth2 flow should use PKCE

    The OAuth2 flow should use PKCE to follow the current OAuth2 best practices. If both nonce and PKCE cannot be implemented PKCE should be preferred https://datatracker.ietf.org/doc/html/draft-ietf-oauth-v2-1-04#section-4.1.1

    Mediawiki Standalone
    development
    Empty
    • [ ] enhancement
    • [ ] internal improvement
    Robert Vogel (rvogel)
    Stage
    Dejan Savuljesku (dsavuljesku)
    Closed
    2022-03-31
    Attachments
    Empty
    References
    References list is empty