Class BackchannelAuthenticationRequest
- java.lang.Object
-
- com.authlete.common.dto.BackchannelAuthenticationRequest
-
- All Implemented Interfaces:
Serializable
public class BackchannelAuthenticationRequest extends Object implements Serializable
Request to Authlete's/api/backchannel/authenticationAPI.When the implementation of the backchannel authentication endpoint of the authorization server receives a backchannel authentication request from a client application, the first step is to call Authlete's
/api/backchannel/authenticationAPI. The API will parse the backchannel authentication request on behalf of the implementation of the backchannel authentication endpoint.parameters(REQUIRED)-
Parameters of a backchannel authentication request which are the request parameters that the backchannel authentication endpoint of the OpenID provider implementation received from the client application.
The value of
"parameters"is the entire entity body (which is formatted inapplication/x-www-form-urlencoded) of the request from the client application. clientId(OPTIONAL)-
The client ID extracted from
Authorizationheader of the backchannel authentication request from the client application.If the backchannel authentication endpoint of the OpenID provider implementation supports Basic Authentication as a means of client authentication, and the request from the client application contained its client ID in
Authorizationheader, the value should be extracted and set to this parameter. clientSecret(OPTIONAL)-
The client secret extracted from
Authorizationheader of the backchannel authentication request from the client application.If the backchannel authentication endpoint of the OpenID provider implementation supports Basic Authentication as a means of client authentication, and the request from the client application contained its client secret in
Authorizationheader, the value should be extracted and set to this parameter. clientCertificate(OPTIONAL)-
The client certification used in the TLS connection between the client application and the backchannel authentication endpoint of the OpenID provider.
clientCertificatePath(OPTIONAL)-
The client certificate path presented by the client during client authentication. Each element is a string in PEM format.
oauthClientAttestation(OPTIONAL; Authlete 3.0 onwards)-
The value of the
OAuth-Client-AttestationHTTP header, which is defined in the specification of OAuth 2.0 Attestation-Based Client Authentication. oauthClientAttestationPop(OPTIONAL; Authlete 3.0 onwards)-
The value of the
OAuth-Client-Attestation-PoPHTTP header, which is defined in the specification of OAuth 2.0 Attestation-Based Client Authentication.
- Since:
- 2.32
- See Also:
- Serialized Form
-
-
Constructor Summary
Constructors Constructor Description BackchannelAuthenticationRequest()
-
Method Summary
All Methods Instance Methods Concrete Methods Modifier and Type Method Description StringgetClientCertificate()Get the client certificate used in the TLS connection between the client application and the backchannel authentication endpoint of the OpenID provider.String[]getClientCertificatePath()Get the client certificate path presented by the client during client authentication.StringgetClientId()Get the client ID extracted fromAuthorizationheader of the backchannel authentication request from the client application.StringgetClientSecret()Get the client secret extracted fromAuthorizationheader of the backchannel authentication request from the client application.StringgetOauthClientAttestation()Get the value of theOAuth-Client-AttestationHTTP header.StringgetOauthClientAttestationPop()Get the value of theOAuth-Client-Attestation-PoPHTTP header.StringgetParameters()Get the value ofparameterswhich are the request parameters that the backchannel authentication endpoint of the OpenID provider implementation received from the client application.BackchannelAuthenticationRequestsetClientCertificate(String certificate)Set the client certificate used in the TLS connection between the client application and the backchannel authentication endpoint of the OpenID provider.BackchannelAuthenticationRequestsetClientCertificatePath(String[] path)Set the client certificate path presented by the client during client authentication.BackchannelAuthenticationRequestsetClientId(String clientId)Set the client ID extracted fromAuthorizationheader of the backchannel authentication request from the client application.BackchannelAuthenticationRequestsetClientSecret(String clientSecret)Set the client secret extracted fromAuthorizationheader of the backchannel authentication request from the client application.BackchannelAuthenticationRequestsetOauthClientAttestation(String jwt)Set the value of theOAuth-Client-AttestationHTTP header.BackchannelAuthenticationRequestsetOauthClientAttestationPop(String jwt)Set the value of theOAuth-Client-Attestation-PoPHTTP header.BackchannelAuthenticationRequestsetParameters(String parameters)Set the value ofparameterswhich are the request parameters that the backchannel authentication endpoint of the OpenID provider implementation received from the client application.BackchannelAuthenticationRequestsetParameters(Map<String,String[]> parameters)Set the value ofparameterswhich are the request parameters that the backchannel authentication endpoint of the OpenID provider implementation received from the client application.
-
-
-
Method Detail
-
getParameters
public String getParameters()
Get the value ofparameterswhich are the request parameters that the backchannel authentication endpoint of the OpenID provider implementation received from the client application.- Returns:
- Request parameters in
application/x-www-form-urlencodedformat.
-
setParameters
public BackchannelAuthenticationRequest setParameters(String parameters)
Set the value ofparameterswhich are the request parameters that the backchannel authentication endpoint of the OpenID provider implementation received from the client application.- Parameters:
parameters- Request parameters inapplication/x-www-form-urlencodedformat.- Returns:
thisobject.
-
setParameters
public BackchannelAuthenticationRequest setParameters(Map<String,String[]> parameters)
Set the value ofparameterswhich are the request parameters that the backchannel authentication endpoint of the OpenID provider implementation received from the client application.This method converts the given map into a string in
application/x-www-form-urlencodedand passes it tosetParameters(String)method.- Parameters:
parameters- Request parameters.- Returns:
thisobject.
-
getClientId
public String getClientId()
Get the client ID extracted fromAuthorizationheader of the backchannel authentication request from the client application.- Returns:
- The client ID.
-
setClientId
public BackchannelAuthenticationRequest setClientId(String clientId)
Set the client ID extracted fromAuthorizationheader of the backchannel authentication request from the client application.- Parameters:
clientId- The client ID.- Returns:
thisobject.
-
getClientSecret
public String getClientSecret()
Get the client secret extracted fromAuthorizationheader of the backchannel authentication request from the client application.- Returns:
- The client secret.
-
setClientSecret
public BackchannelAuthenticationRequest setClientSecret(String clientSecret)
Set the client secret extracted fromAuthorizationheader of the backchannel authentication request from the client application.- Parameters:
clientSecret- The client secret.- Returns:
thisobject.
-
getClientCertificate
public String getClientCertificate()
Get the client certificate used in the TLS connection between the client application and the backchannel authentication endpoint of the OpenID provider.- Returns:
- The client certificate.
-
setClientCertificate
public BackchannelAuthenticationRequest setClientCertificate(String certificate)
Set the client certificate used in the TLS connection between the client application and the backchannel authentication endpoint of the OpenID provider.- Parameters:
certificate- The client certificate- Returns:
thisobject.
-
getClientCertificatePath
public String[] getClientCertificatePath()
Get the client certificate path presented by the client during client authentication.- Returns:
- The client certificate path. Each element is a string in PEM format.
-
setClientCertificatePath
public BackchannelAuthenticationRequest setClientCertificatePath(String[] path)
Set the client certificate path presented by the client during client authentication.- Parameters:
path- The client certificate path.- Returns:
thisobject.
-
getOauthClientAttestation
public String getOauthClientAttestation()
Get the value of theOAuth-Client-AttestationHTTP header.- Returns:
- The value of the
OAuth-Client-AttestationHTTP header. - Since:
- 4.3, Authlete 3.0
- See Also:
- OAuth 2.0 Attestation-Based Client Authentication
-
setOauthClientAttestation
public BackchannelAuthenticationRequest setOauthClientAttestation(String jwt)
Set the value of theOAuth-Client-AttestationHTTP header.- Parameters:
jwt- The value of theOAuth-Client-AttestationHTTP header.- Returns:
thisobject.- Since:
- 4.3, Authlete 3.0
- See Also:
- OAuth 2.0 Attestation-Based Client Authentication
-
getOauthClientAttestationPop
public String getOauthClientAttestationPop()
Get the value of theOAuth-Client-Attestation-PoPHTTP header.- Returns:
- The value of the
OAuth-Client-Attestation-PoPHTTP header. - Since:
- 4.3, Authlete 3.0
- See Also:
- OAuth 2.0 Attestation-Based Client Authentication
-
setOauthClientAttestationPop
public BackchannelAuthenticationRequest setOauthClientAttestationPop(String jwt)
Set the value of theOAuth-Client-Attestation-PoPHTTP header.- Parameters:
jwt- The value of theOAuth-Client-Attestation-PoPHTTP header.- Returns:
thisobject.- Since:
- 4.3, Authlete 3.0
- See Also:
- OAuth 2.0 Attestation-Based Client Authentication
-
-