Mandatory PKCE

This commit is contained in:
Éloi Rivard 2020-08-25 15:39:44 +02:00
parent 2777013ad0
commit 467c6b80bc

View file

@ -279,7 +279,7 @@ def config_oauth(app):
authorization.register_grant(
AuthorizationCodeGrant,
[OpenIDCode(require_nonce=True), CodeChallenge(required=False)],
[OpenIDCode(require_nonce=True), CodeChallenge(required=True)],
)
authorization.register_grant(OpenIDImplicitGrant)
authorization.register_grant(OpenIDHybridGrant)