Class GrantTypeVerifierFilter
java.lang.Object
org.forgerock.openig.fapi.resource.grantype.GrantTypeVerifierFilter
- All Implemented Interfaces:
Filter
Verify
grant_type of request on Request server is either authorization_code or
refresh_token.
This type of grant_type is used within the OAuth 2.0 framework to obtain an access token, particularly in
contexts where enhanced security is required, such as in financial services (FAPI).
This filters requires OAuth2Context to have been created by a prior filter, for example, from
OAuth2ResourceServerFilter.
-
Constructor Summary
ConstructorsConstructorDescriptionGrantTypeVerifierFilter(String allowedGrandType) Build aGrantTypeVerifierFilterwith the provided allowedgrant_type. -
Method Summary
-
Constructor Details
-
GrantTypeVerifierFilter
Build aGrantTypeVerifierFilterwith the provided allowedgrant_type.- Parameters:
allowedGrandType- thegrant_typeto allow
-
-
Method Details
-
filter
public Promise<Response,NeverThrowsException> filter(Context context, Request request, Handler next) Description copied from interface:FilterFilters the request and/or response of an exchange. To pass the request to the next filter or handler in the chain, the filter callsnext.handle(context, request).This method may elect not to pass the request to the next filter or handler, and instead handle the request itself. It can achieve this by merely avoiding a call to
next.handle(context, request)and creating its own response object. The filter is also at liberty to replace a response with another of its own by intercepting the response returned by the next handler.
-