How do I go about setting up OAuth on this particular platform
Start writing a post
News

How do I go about setting up OAuth on this particular platform

Setting up OAuth on this particular platform

11
How do I go about setting up OAuth on this particular platform

In order to use an OAuth Provider to authenticate your app, a sequence of configuration actions must be completed by several roles (Site Administrator, Business Administrator, API Provider, and App Developer).

An overview OAuth Configuration of the general process and roles involved in each job is provided as part of this quick start.

The OAuth 2.0 Provider Service Configuration

  • Right-click on the Add a Service button in the AM console and select Realms.
  • Finally, press the Create button without filling out any other fields.
  • There is an OAuth 2.0 provider page on the site.

The following is further information:

The UMA's Grant Flow

Configure your environment's Response Type Plugins in accordance with the grant type flows you permit. Tokenization plugins allow the provider to issue access tokens, ID tokens and other types of tokens.

With the id token and none response types in place, OpenID Connect processes can use either of these methods.

  • The grant of an authorisation code makes use of the code response type.
  • The response type device code is utilised in the device grant flow.
  • In order to issue access and refresh tokens, the token response type is needed by all flows.
  • (Optional) Please refer to the "Additional Configuration" section for additional options.

Additions to the Settings

Changing the attribute used to retrieve a user's profile in OAuth 2.0

AM authentication must be configured for external identity repositories where users log in using their e-mail address or other profile characteristic instead of their username.

Use the following steps, for example, to set up AM such that OAuth 2.0 resource owners can log in with their email addresses stored in the LDAP profile attribute mail:

OAuth2 provider Advanced tab: Add LDAP profile attribute to User Profile Attribute(s) Resource Owner is Authenticated On list, then save your modifications.

Go to the Authentication Configuration page in Realm Name > Identity Stores > Identity Store Name.

Set the required LDAP property in the Authentication Naming Attribute box. For instance, you can send a letter.

Use an LDAP authentication module or an LDAP decision node to connect the identity repository to the LDAP directory service.

Create the following values in the following fields in both scenarios:

Select mail as the attribute in the Attribute Used to Retrieve User Profile area.

Make sure you save your modifications before exiting the application.

Ensuring that the resource owners utilise the LDAP module or node where you have configured the authentication tree or chain is essential.

REST request for a specific access token.

Configure the auth chain setting.

Overrides the realm-level setting below for each realm.

Set the Password Grant Authentication Service property in the Realms > Realm Name > OAuth2 Provider > Advanced.

Dedicated to a specific area.

For example, go to the realm name, authentication, settings, and select the core option for organisation authentication configuration, as shown below.

For everyone and everything.

Go to Configuration > Core Attributes>Core, and set the Organization Authentication Configuration property there.

Report this Content
This article has not been reviewed by Odyssey HQ and solely reflects the ideas and opinions of the creator.
houses under green sky
Photo by Alev Takil on Unsplash

Small towns certainly have their pros and cons. Many people who grow up in small towns find themselves counting the days until they get to escape their roots and plant new ones in bigger, "better" places. And that's fine. I'd be lying if I said I hadn't thought those same thoughts before too. We all have, but they say it's important to remember where you came from. When I think about where I come from, I can't help having an overwhelming feeling of gratitude for my roots. Being from a small town has taught me so many important lessons that I will carry with me for the rest of my life.

Keep Reading...Show less
​a woman sitting at a table having a coffee
nappy.co

I can't say "thank you" enough to express how grateful I am for you coming into my life. You have made such a huge impact on my life. I would not be the person I am today without you and I know that you will keep inspiring me to become an even better version of myself.

Keep Reading...Show less
Student Life

Waitlisted for a College Class? Here's What to Do!

Dealing with the inevitable realities of college life.

91308
college students waiting in a long line in the hallway
StableDiffusion

Course registration at college can be a big hassle and is almost never talked about. Classes you want to take fill up before you get a chance to register. You might change your mind about a class you want to take and must struggle to find another class to fit in the same time period. You also have to make sure no classes clash by time. Like I said, it's a big hassle.

This semester, I was waitlisted for two classes. Most people in this situation, especially first years, freak out because they don't know what to do. Here is what you should do when this happens.

Keep Reading...Show less
a man and a woman sitting on the beach in front of the sunset

Whether you met your new love interest online, through mutual friends, or another way entirely, you'll definitely want to know what you're getting into. I mean, really, what's the point in entering a relationship with someone if you don't know whether or not you're compatible on a very basic level?

Consider these 21 questions to ask in the talking stage when getting to know that new guy or girl you just started talking to:

Keep Reading...Show less
Lifestyle

Challah vs. Easter Bread: A Delicious Dilemma

Is there really such a difference in Challah bread or Easter Bread?

66701
loaves of challah and easter bread stacked up aside each other, an abundance of food in baskets
StableDiffusion

Ever since I could remember, it was a treat to receive Easter Bread made by my grandmother. We would only have it once a year and the wait was excruciating. Now that my grandmother has gotten older, she has stopped baking a lot of her recipes that require a lot of hand usage--her traditional Italian baking means no machines. So for the past few years, I have missed enjoying my Easter Bread.

Keep Reading...Show less

Subscribe to Our Newsletter

Facebook Comments