update oidc scope
passport-openidconnect adds the 'openid' scope to the request, regardless of if its already there. removed 'openid' scope removed unused 'groups' scope
This commit is contained in:
parent
cae47b89a4
commit
c8774e700b
|
@ -6902,7 +6902,7 @@ module.exports.CreateWebServer = function (parent, db, args, certificates, doneF
|
||||||
userInfoURL: domain.authstrategies.oidc.userinfourl,
|
userInfoURL: domain.authstrategies.oidc.userinfourl,
|
||||||
clientID: domain.authstrategies.oidc.clientid,
|
clientID: domain.authstrategies.oidc.clientid,
|
||||||
clientSecret: domain.authstrategies.oidc.clientsecret,
|
clientSecret: domain.authstrategies.oidc.clientsecret,
|
||||||
scope: ['openid profile email groups'],
|
scope: ['profile email'],
|
||||||
};
|
};
|
||||||
var OIDCStrategy = require('passport-openidconnect');
|
var OIDCStrategy = require('passport-openidconnect');
|
||||||
if (typeof domain.authstrategies.oidc.callbackurl == 'string') { options.callbackURL = domain.authstrategies.oidc.callbackurl; } else { options.callbackURL = url + 'oidc-callback'; }
|
if (typeof domain.authstrategies.oidc.callbackurl == 'string') { options.callbackURL = domain.authstrategies.oidc.callbackurl; } else { options.callbackURL = url + 'oidc-callback'; }
|
||||||
|
|
Loading…
Reference in New Issue