Hi Maduranga,Prasad,
I need to clarify some thing about the fix you did for 'Key length
exceeded' error on CON_APP_KEY of IDN_OAUTH2_ACCESS_TOKEN table in ORACLE
DB" issue[1]. I went through pull request(
https://github.com/wso2/carbon-identity/pull/452) as well.

With this approach i can see toke scope filed changed to token scope hash.
So that means do we have any other place where we store token scopes and
hashed values?

Also if we introduced this change in upcoming release we need to provide
migration tools for this and new schemas for DB changes(generate hash and
store it). I cannot see those in merge request. So please provide migration
scripts and schemas as well.

There are some scope validation implementations available in different
components including APIM,IS etc. Did we consider those places while doing
this fix?

[1]https://wso2.org/jira/browse/Identity-3132

Thanks,
sanjeewa.
-- 

*Sanjeewa Malalgoda*
WSO2 Inc.
Mobile : +94713068779

<http://sanjeewamalalgoda.blogspot.com/>blog
:http://sanjeewamalalgoda.blogspot.com/
<http://sanjeewamalalgoda.blogspot.com/>
_______________________________________________
Dev mailing list
[email protected]
http://wso2.org/cgi-bin/mailman/listinfo/dev

Reply via email to