【问题标题】:WebSphere Liberty Profile OIDC Client URLWebSphere Liberty Profile OIDC 客户端 URL
【发布时间】:2016-11-10 23:28:03
【问题描述】:

我正在尝试使用 WebSphere Liberty Profile OIDC 客户端功能。我已经安装并配置了该功能,但我对应该使用哪个 URL 来连接它感到困惑。在 WLP 知识中心,它显示了一个这样的示例:

https://server.example.com:443/oidc/endpoint/PROVIDER_NAME/authorize

但是当我的 WLP 服务器启动时,我在日志中看到以下 URL:

com.ibm.ws.webcontainer.osgi.DynamicVirtualHost              I addWebApplication SRVE0250I: Web Module OpenID Connect Client Redirect Servlet has been bound to default_host.
com.ibm.ws.http.internal.VirtualHostImpl                     A CWWKT0016I: Web application available (default_host): http://ibm669-r9v0dvb:11080/oidcclient/

我不知道是使用“oidcclient”(可能)还是“oidc”。我也不知道应该把什么作为 PROVIDER_NAME。我尝试使用我的 OIDCClient 的 ID:

<openidConnectClient id="oidcRP"
                     clientId="${oauth.client.id}"
                     clientSecret="${oauth.client.secret}"
                     authorizationEndpointUrl="${oauth.authorize.endpoint}"
                     tokenEndpointUrl="${oauth.token.endpoint}"
                     httpsRequired="false"
                     redirectToRPHostAndPort="https://myhost.com:443">

我尝试连接这个,但没有找到它:

http://ibm669-r9v0dvb:11080/oidcclient/endpoint/oidcRP/authorize?scope=openid&response_type=code&client_id=XXX&redirect_uri=https://myhost.com:443

com.ibm.ws.webcontainer.extension.DefaultExtensionProcessor  W handleRequest SRVE0190E: File not found: /endpoint/oidcRP/authorize

谁能告诉我应该使用哪个 URL 连接到客户端?

【问题讨论】:

    标签: oauth websphere-liberty openid-connect


    【解决方案1】:

    Liberty openidConnectClient 功能使 Liberty 作为客户端连接到 openid 连接提供程序。 openidConnectClient 内部的配置参数是关于 openidConnectProvider 的信息,例如 openidConnect 提供者的授权端点和令牌端点。 您的 openid 连接提供商是什么? Liberty 也可以配置为 openid Connect 提供程序。如果您还想使用 Liberty 作为 openid 连接提供程序,您可以创建另一个 Liberty 实例并启用 openidConnectProvider 功能。

    【讨论】:

    • 谢谢春龙。我不想使用 WLP 作为提供者,我们已经有另一个服务作为提供者。但我不禁认为,我需要连接到 WLP 中的 OIDC 客户端的 URL 必须来自客户端中众所周知的 URL PATH 以及我原始问题中显示的配置参数。我只需要知道连接到客户端所需的 URL。
    • 没关系。我现在看到 WLP 日志中显示的 URL 是重定向 URI。
    猜你喜欢
    • 1970-01-01
    • 1970-01-01
    • 1970-01-01
    • 1970-01-01
    • 2013-02-03
    • 1970-01-01
    • 1970-01-01
    • 1970-01-01
    • 1970-01-01
    相关资源
    最近更新 更多