Closed Bug 1511490 (bmo-oauth-jwt) Opened 2 years ago Closed 4 months ago

BMO's oauth tokens should be use jwt

Categories

(bugzilla.mozilla.org :: General, enhancement)

Development
enhancement
Not set
normal

Tracking

()

RESOLVED FIXED

People

(Reporter: dylan, Assigned: dkl)

References

Details

Attachments

(2 files)

Note this option should be used: https://metacpan.org/pod/distribution/Net-OAuth2-AuthorizationServer/lib/Net/OAuth2/AuthorizationServer/Manual.pod#jwt_secret

I neglected to notice that in the review. This might require adjusting the schema as jwts can be longer than 255 chars.
Alias: bmo-oauth-jwt
With that option set, we get auth_codes like eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJhdWQiOiJodHRwOlwvXC9sb2NhbGhvc3Q6MjAyMCIsImNsaWVudCI6InhIWVNDNEt2WHlSWEx6WXJJbW13IiwiZXhwIjoxNTQzNjE2NzEyLCJpYXQiOjE1NDM2MTYxMTIsImp0aSI6IkpuT0dLUVVYWklSYmlKcjhhczdybWx2azdUSjBlQ2xLIiwic2NvcGVzIjpbInVzZXI6cmVhZCJdLCJ0eXBlIjoiYXV0aCIsInVzZXJfaWQiOm51bGx9.-zXxphtiO1L0iOrTqmvB8F8qrvyTzN9Ej2fTtAwO3mI
Assignee: nobody → dylan
Depends on: 1513708
Assignee: dylan → dkl
Attached file GitHub Pull Request
Status: NEW → ASSIGNED

Done. Closing.

Status: ASSIGNED → RESOLVED
Closed: 4 months ago
Resolution: --- → FIXED
You need to log in before you can comment on or make changes to this bug.