Hi, I'm trying to change the issuer value returned by the id token but it always returns the IP address ... "iss": https://<ip_address>:9443/oauth2/token<https://%3cip_address%3e:9443/oauth2/token> ...
I would like to have ... "iss": https://<hostname>:9443/oauth2/token<https://%3chostname%3e:9443/oauth2/token> ... I tried changing the <HostName> element in carbon.xml and also changed the IDTokenIssuerID value at repository/conf/identity/identity.xml. <OpenIDConnect> <IDTokenBuilder>org.wso2.carbon.identity.openidconnect.DefaultIDTokenBuilder</IDTokenBuilder> <SignatureAlgorithm>NONE</SignatureAlgorithm> <!-- Comment out to add Audience values to the JWT token (id_token) --> <!--Audiences> <Audience>${carbon.protocol}://${carbon.host}:${carbon.management.port}/oauth2/token</Audience> </Audiences --> <!-- Default value for IDTokenIssuerID, is OAuth2TokenEPUrl. If that doesn't satisfy uncomment the following config and explicitly configure the value --> <IDTokenIssuerID>https://myhost:9443/oauth2/token</IDTokenIssuerID> <IDTokenCustomClaimsCallBackHandler>org.wso2.carbon.identity.openidconnect.SAMLAssertionClaimsCallback</IDTokenCustomClaimsCallBackHandler> <IDTokenExpiration>3600</IDTokenExpiration> <UserInfoEndpointClaimRetriever>org.wso2.carbon.identity.oauth.endpoint.user.impl.UserInfoUserStoreClaimRetriever</UserInfoEndpointClaimRetriever> <UserInfoEndpointRequestValidator>org.wso2.carbon.identity.oauth.endpoint.user.impl.UserInforRequestDefaultValidator</UserInfoEndpointRequestValidator> <UserInfoEndpointAccessTokenValidator>org.wso2.carbon.identity.oauth.endpoint.user.impl.UserInfoISAccessTokenValidator</UserInfoEndpointAccessTokenValidator> <UserInfoEndpointResponseBuilder>org.wso2.carbon.identity.oauth.endpoint.user.impl.UserInfoJSONResponseBuilder</UserInfoEndpointResponseBuilder> <SkipUserConsent>true</SkipUserConsent> </OpenIDConnect> Any ideas? Thanks, Javier Vazquez If you wish to unsubscribe from receiving commercial electronic messages from TD Bank Group, please click here or go to the following web address: www.td.com/tdoptout Si vous souhaitez vous désabonner des messages électroniques de nature commerciale envoyés par Groupe Banque TD veuillez cliquer ici ou vous rendre à l'adresse www.td.com/tddesab NOTICE: Confidential message which may be privileged. Unauthorized use/disclosure prohibited. If received in error, please go to www.td.com/legal for instructions. AVIS : Message confidentiel dont le contenu peut être privilégié. Utilisation/divulgation interdites sans permission. Si reçu par erreur, prière d'aller au www.td.com/francais/avis_juridique pour des instructions.
_______________________________________________ Dev mailing list [email protected] http://wso2.org/cgi-bin/mailman/listinfo/dev
