Ticket #12 (closed task: fixed)

Opened 2 years ago

Last modified 2 years ago

verify openid.return_to verification against realm

Reported by: mpasternacki Owned by: mpasternacki
Priority: major Milestone:
Component: code Version: 1.0 portable
Keywords: Cc:

Description (last modified by mpasternacki) (diff)

9.2. Realms

When present, the "openid.return_to" URL MUST match the "openid.realm", or the OP MUST return an indirect error response (Indirect Error Responses).

Change History

Changed 2 years ago by mpasternacki

  • status changed from new to assigned
  • description modified (diff)

RP discovery opened as a new bug, leave only return_to matching against the realm here.

Changed 2 years ago by mpasternacki

  • summary changed from openid.return_to verification based on realm, relying party discovery to verify openid.return_to verification against realm

summary update

Changed 2 years ago by mpasternacki

  • version changed from 0.5 nonportable to 1.0 portable
  • milestone HTTP client portability deleted

Changed 2 years ago by mpasternacki

  • status changed from assigned to closed
  • resolution set to fixed

Fixed.

Note: See TracTickets for help on using tickets.