Replies: 1 comment
-
see https://www.ietf.org/archive/id/draft-ietf-oauth-v2-1-11.html#section-7.13 |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
In changeling of release 2.4.16.1:
to require the Provider to pass the iss value in authorization responses, mitigating the OP mixup attack
Can you explain what's going on and how to use response_require_iss ?
Beta Was this translation helpful? Give feedback.
All reactions