Skip to content

Updates for release v1.15.x - #1268

Draft
enricovianello wants to merge 23 commits into
developfrom
v1.15.x
Draft

Updates for release v1.15.x #1268
enricovianello wants to merge 23 commits into
developfrom
v1.15.x

Conversation

@enricovianello

Copy link
Copy Markdown
Member

No description provided.

rmiccoli and others added 23 commits June 18, 2026 18:19
Add support for Explicit Client Registration (ECR) for OpenID
Federation Relying Parties (RP).

This change introduces the components required to register and manage
RP clients through OpenID Federation metadata and trust chains.

Main changes:
- implement Explicit Client Registration flows for RP entities
- integrate RP registration with IAM client management
- add request object signature validation
- extend OP Entity Configuration metadata
- support dynamic client configuration resolution
- improve endpoint handling and URL validation
- refactor registration and client resolution logic
- add integration and unit tests
when building entity statement during explicit client registration
from remote OP for debugging purposes
Use the IAM issuer instead of the IAM base URL when
validating the subject.

Also make the audience validation stricter, as the
spec states that the "aud" value MUST be the Entity
Identifier of the RP and MUST NOT include any other
values.
* Fixed db migration by deleting unique constraint on client_id and adding it on entity_id
* Service renamed
by fixing time handling
from federated client collection tables
to avoid MySQL key length limitations
on large VARCHAR columns.
@sonarqubecloud

Copy link
Copy Markdown

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants