Class OAuth2PushedAuthorizationRequestAuthenticationToken
java.lang.Object
org.springframework.security.authentication.AbstractAuthenticationToken
org.springframework.security.oauth2.server.authorization.authentication.OAuth2PushedAuthorizationRequestAuthenticationToken
- All Implemented Interfaces:
Serializable,Principal,Authentication,CredentialsContainer
public class OAuth2PushedAuthorizationRequestAuthenticationToken
extends AbstractAuthenticationToken
An
Authentication implementation for the OAuth 2.0 Pushed Authorization Request
used in the Authorization Code Grant.- Since:
- 7.0
- See Also:
-
Nested Class Summary
Nested classes/interfaces inherited from class org.springframework.security.authentication.AbstractAuthenticationToken
AbstractAuthenticationToken.AbstractAuthenticationBuilder<B extends AbstractAuthenticationToken.AbstractAuthenticationBuilder<B>>Nested classes/interfaces inherited from interface org.springframework.security.core.Authentication
Authentication.Builder<B extends Authentication.Builder<B>> -
Constructor Summary
ConstructorsConstructorDescriptionOAuth2PushedAuthorizationRequestAuthenticationToken(String authorizationUri, String clientId, Authentication principal, String redirectUri, String state, Set<String> scopes, Map<String, Object> additionalParameters) Constructs anOAuth2PushedAuthorizationRequestAuthenticationTokenusing the provided parameters.OAuth2PushedAuthorizationRequestAuthenticationToken(String authorizationUri, String clientId, Authentication principal, String requestUri, Instant requestUriExpiresAt, String redirectUri, String state, Set<String> scopes) Constructs anOAuth2PushedAuthorizationRequestAuthenticationTokenusing the provided parameters. -
Method Summary
Modifier and TypeMethodDescriptionReturns the additional parameters.Returns the authorization URI.Returns the client identifier.The credentials that prove the principal is correct.The identity of the principal being authenticated.Returns the redirect uri.Returns therequest_uricorresponding to the authorization request posted.Returns the expiration time on or after which therequest_uriMUST NOT be accepted.Returns the requested (or authorized) scope(s).getState()Returns the state.Methods inherited from class org.springframework.security.authentication.AbstractAuthenticationToken
equals, eraseCredentials, getAuthorities, getDetails, getName, hashCode, isAuthenticated, setAuthenticated, setDetails, toStringMethods inherited from class java.lang.Object
clone, finalize, getClass, notify, notifyAll, wait, wait, waitMethods inherited from interface org.springframework.security.core.Authentication
toBuilder
-
Constructor Details
-
OAuth2PushedAuthorizationRequestAuthenticationToken
public OAuth2PushedAuthorizationRequestAuthenticationToken(String authorizationUri, String clientId, Authentication principal, @Nullable String redirectUri, @Nullable String state, @Nullable Set<String> scopes, @Nullable Map<String, Object> additionalParameters) Constructs anOAuth2PushedAuthorizationRequestAuthenticationTokenusing the provided parameters.- Parameters:
authorizationUri- the authorization URIclientId- the client identifierprincipal- the authenticated client principalredirectUri- the redirect uristate- the statescopes- the requested scope(s)additionalParameters- the additional parameters
-
OAuth2PushedAuthorizationRequestAuthenticationToken
public OAuth2PushedAuthorizationRequestAuthenticationToken(String authorizationUri, String clientId, Authentication principal, String requestUri, Instant requestUriExpiresAt, @Nullable String redirectUri, @Nullable String state, @Nullable Set<String> scopes) Constructs anOAuth2PushedAuthorizationRequestAuthenticationTokenusing the provided parameters.- Parameters:
authorizationUri- the authorization URIclientId- the client identifierprincipal- the authenticated client principalrequestUri- therequest_uricorresponding to the authorization request postedrequestUriExpiresAt- the expiration time on or after which therequest_uriMUST NOT be acceptedredirectUri- the redirect uristate- the statescopes- the authorized scope(s)
-
-
Method Details
-
getRequestUri
Returns therequest_uricorresponding to the authorization request posted.- Returns:
- the
request_uricorresponding to the authorization request posted
-
getRequestUriExpiresAt
Returns the expiration time on or after which therequest_uriMUST NOT be accepted.- Returns:
- the expiration time on or after which the
request_uriMUST NOT be accepted
-
getPrincipal
Description copied from interface:AuthenticationThe identity of the principal being authenticated. In the case of an authentication request with username and password, this would be the username. Callers are expected to populate the principal for an authentication request.The AuthenticationManager implementation will often return an Authentication containing richer information as the principal for use by the application. Many of the authentication providers will create a
UserDetailsobject as the principal.- Returns:
- the
Principalbeing authenticated or the authenticated principal after authentication.
-
getCredentials
Description copied from interface:AuthenticationThe credentials that prove the principal is correct. This is usually a password, but could be anything relevant to theAuthenticationManager. Callers are expected to populate the credentials.- Returns:
- the credentials that prove the identity of the
Principal
-
getAuthorizationUri
Returns the authorization URI.- Returns:
- the authorization URI
-
getClientId
Returns the client identifier.- Returns:
- the client identifier
-
getRedirectUri
Returns the redirect uri.- Returns:
- the redirect uri
-
getState
Returns the state.- Returns:
- the state
-
getScopes
Returns the requested (or authorized) scope(s).- Returns:
- the requested (or authorized) scope(s), or an empty
Setif not available
-
getAdditionalParameters
Returns the additional parameters.- Returns:
- the additional parameters, or an empty
Mapif not available
-