OAI / OAI/sig-security

Security Schemes for different roles and environments

Open
#31 4 comments 4 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
No language data
Stars
6
Forks
3
Avg merge
1h 54m
Merged PRs (30d)
1

Description

Hi,

at the moment, if we use a relative URL in openIdConnectUrl, it uses the URLs defined in servers. But these URLs are usually the URLs of the API or API Gateway. The OpenId Server URLs are usually different.

Thanks

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

The issue does not identify a source file, test, or entry point. Start by locating the handling of openIdConnectUrl and servers, then clarify how different roles and environments should select OpenID Server URLs and define tests that demonstrate the intended behavior.

Written by the indexing model from the issue text.

Assessment

Tech stack
openapi
Domain
api, authentication, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Quiet
Clarity
Needs clarification
Newbie friendliness
30/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.