Documentation
¶
Overview ¶
Package oidcstate holds the browser-flow state shared by the HTTP layer and the engine: the pending-login record and PKCE generation. Providers themselves live in provider.
Index ¶
Constants ¶
This section is empty.
Variables ¶
This section is empty.
Functions ¶
func GeneratePKCE ¶
GeneratePKCE returns a verifier and S256 challenge suitable for the auth request.
Types ¶
type StateData ¶
type StateData struct {
Provider string
Verifier string
Nonce string
RedirectURI string
LinkUserID string
LinkSessionID string
LinkAuthenticatedAt time.Time
ReturnTo string
AccountInviteToken string
// StepUp* fields identify a step-up authentication flow for an existing
// session. Login/link flows leave these empty.
StepUpUserID string
StepUpSessionID string
StepUpReturnTo string
StepUpStartedAt time.Time
UI string // "popup" to trigger popup HTML callback; else redirect
PopupNonce string // echoed in popup postMessage for opener validation
}
StateData is what we persist for a pending OIDC login.
Click to show internal directories.
Click to hide internal directories.