| Age | Commit message (Collapse) | Author | Files | Lines | |
|---|---|---|---|---|---|
| 2013-05-26 | fixes #27 - adds way to pass in custom clientassertiontype to server object | Brent Shaffer | 1 | -11/+21 | |
| 2013-05-25 | adds ability to pass headers explicitly to Request object | Brent Shaffer | 1 | -4/+5 | |
| 2013-05-25 | fixes #137 - allows for multiple request_uris and adds tests for this | Brent Shaffer | 2 | -3/+17 | |
| 2013-05-21 | fixes hardcoded error message in TokenController, adds test coverage for ↵ | Brent Shaffer | 1 | -1/+1 | |
| error case | |||||
| 2013-05-16 | standardizes doc blocks | Brent Shaffer | 32 | -67/+153 | |
| 2013-05-13 | fixes spacing issues (psr2) | Brent Shaffer | 1 | -3/+2 | |
| 2013-05-13 | Merge pull request #125 from F21/token_controller_client_id_scope_exists | Brent Shaffer | 2 | -2/+13 | |
| TokenController now passes clientId into scopeExists(). | |||||
| 2013-05-13 | TokenController now passes clientId into scopeExists(). Tests have been | F21 | 2 | -2/+13 | |
| added for this. | |||||
| 2013-05-13 | improves documentation for addStorage function | Brent Shaffer | 1 | -3/+10 | |
| 2013-05-13 | fixes typehint for setAuthorizeController | Brent Shaffer | 1 | -1/+1 | |
| 2013-05-09 | rolling back OAuth2_Server fix due to php5.2 interface incompatibilities | Brent Shaffer | 1 | -6/+6 | |
| 2013-05-09 | better name for variables in AuthorizeController | Brent Shaffer | 1 | -2/+2 | |
| 2013-05-09 | adds defaults for OAuth2_Response objects back to the server class | Brent Shaffer | 3 | -20/+27 | |
| 2013-05-09 | cherry-picks redis class | 大兵 | 2 | -1/+196 | |
| 2013-05-09 | fixes fatal error and adds test to catch it next time | Brent Shaffer | 1 | -1/+1 | |
| 2013-05-09 | allows for injection of tokenType into the server object | Brent Shaffer | 1 | -26/+24 | |
| 2013-05-09 | ** BC-BREAKING CHANGES ** - changes TokenController constructor so ↵ | Brent Shaffer | 2 | -11/+20 | |
| ClientAssertionType is now the third parameter instead of the first, and it no longer accepts Storage_ClientCredentials, but has to be ClientAssertionTypeInterface | |||||
| 2013-05-09 | adds 'createDefault' methods for all controllers - more accurate naming of ↵ | Brent Shaffer | 1 | -32/+47 | |
| functions | |||||
| 2013-05-09 | adds setters for controller classes, standardises order of the controller ↵ | Brent Shaffer | 1 | -85/+112 | |
| classes, moves protected methods to bottom | |||||
| 2013-05-09 | ** BC-BREAKING CHANGE - accessTokenResponseType parameter in server class is ↵ | Brent Shaffer | 1 | -22/+18 | |
| redundant. This can be derived from the responseType parameter already passed in. Getting rid of it | |||||
| 2013-05-09 | updates readme and docblocks for response refactor | Brent Shaffer | 3 | -5/+10 | |
| 2013-05-09 | fixes variable names | Brent Shaffer | 1 | -2/+2 | |
| 2013-05-06 | fixes php 5.2 issue with interfaces sharing method names | Brent Shaffer | 3 | -6/+29 | |
| 2013-05-06 | cleans up ResponseInterface | Brent Shaffer | 4 | -11/+12 | |
| 2013-05-06 | BC-BREAKING CHANGE - Updates AuthorizeControllerInterface, ResponseInterface | Brent Shaffer | 11 | -185/+45 | |
| 2013-05-05 | BCBREAKING CHANGE - Updates to AuthorizeControllerInterface, ↵ | Brent Shaffer | 7 | -55/+41 | |
| ResourceControllerInterface, TokenTypeInterface | |||||
| 2013-05-05 | all GrantType tests pass | Brent Shaffer | 4 | -46/+57 | |
| 2013-05-05 | BC BREAKING CHANGES - Refactors interfaces for GrantType, ↵ | Brent Shaffer | 11 | -249/+309 | |
| ClientAssertionType, and TokenController | |||||
| 2013-05-05 | moves private method to bottom | Brent Shaffer | 1 | -44/+44 | |
| 2013-05-05 | adds typehinting for getJWTData | Brent Shaffer | 1 | -1/+1 | |
| 2013-05-05 | refactors scope validation and adds scope testing for all grant types | Brent Shaffer | 8 | -33/+45 | |
| 2013-05-05 | addresses #88 - 'FromRequest' does not really make sense, as there are ↵ | Brent Shaffer | 9 | -13/+13 | |
| multiple places this data is stored | |||||
| 2013-05-05 | TokenController cleanup | Brent Shaffer | 2 | -23/+25 | |
| 2013-05-05 | addresses #113 - refactors grant types - they are much cleaner and intuitive now | Brent Shaffer | 8 | -227/+103 | |
| 2013-04-29 | Update Server.php | Brent Shaffer | 1 | -4/+0 | |
| **BC-BREAKING CHANGE** - addresses #108 - removes default jwt granting, as "audience" is required. This needs to be set using `addGrantType` instead. | |||||
| 2013-04-29 | Merge pull request #112 from rjmackay/develop | Brent Shaffer | 3 | -22/+32 | |
| **BC-BREAKING CHANGE** - moves `checkRestrictedGrantType` from `ClientCredentialsInterface` to `ClientCredentialsInterface`. See #111 and #112 | |||||
| 2013-04-29 | Merge pull request #109 from bojanz/unbounded_scopes | Brent Shaffer | 5 | -38/+30 | |
| Better support for unbounded scopes. | |||||
| 2013-04-29 | Fix undefined index 'client_id' errors in OAuth2_Server_Authorize_* Tests | Robbie Mackay | 1 | -2/+2 | |
| 2013-04-29 | Move checkRestrictedGrantType() to ClientInterface | Robbie Mackay | 3 | -20/+20 | |
| Make more sense to have checkRestrictedGrantType in ClientInterface instead of ClientCredentialsInterface as its not really anything to do with 'credentials'. Revert AuthorizeController $clientStorage parameter to ClientInterface | |||||
| 2013-04-29 | Check client's allowed grant types for authorize requests #111 | Robbie Mackay | 1 | -4/+14 | |
| Add checks for restricted grant type to Authorize Controller. Means that clients need 'implicit' grant type to use implicit flow, and clients that can't use auth code flow get bumped on the authorization step not the token step. | |||||
| 2013-04-29 | Better support for unbounded scopes. | Bojan Zivanovic | 5 | -38/+30 | |
| 2013-04-28 | Change Statuscode 400 to 405 if POST-Request is required | steffkes | 1 | -1/+2 | |
| As per http://www.w3.org/Protocols/rfc2616/rfc2616-sec10.html#sec10.4.6 change the statuscode from 400 to 405 and include `Allow`-header indicating that POST must be used to grant an access token. | |||||
| 2013-04-24 | Update Pdo.php | Brent Shaffer | 1 | -2/+3 | |
| fixed #106 | |||||
| 2013-04-20 | fixes #86 - makes http basic authentication POST check optional and removes ↵ | Brent Shaffer | 2 | -11/+16 | |
| GET check | |||||
| 2013-04-16 | User details must have a 'user_id' field, to store in token data | Julien Chaumond | 1 | -1/+4 | |
| 2013-04-16 | Use spaces instead of tabs, to be consistent with the rest of the lib. | Julien Chaumond | 1 | -237/+237 | |
| 2013-04-16 | Make OAuth2_Storage_Mongo properties protected | Julien Chaumond | 1 | -2/+2 | |
| 2013-04-16 | Fix MongoDB server string | Julien Chaumond | 1 | -1/+1 | |
| 2013-04-06 | Merge pull request #89 from bojanz/fix-config-references | Brent Shaffer | 1 | -2/+2 | |
| Fix incorrect references to config variables. | |||||
| 2013-04-04 | Merge pull request #95 from itsmrwave/develop | Brent Shaffer | 1 | -2/+2 | |
| Wrap realm & scope values in "" on 401 errors | |||||
