kanidm/server
Firstyear 51a976fed5 Ignore anonymous in oauth2 read allow access (#3336)
Administrators will sometimes configure oauth2 clients with `idm_all_accounts`
as an allowed scope group. Despite anonymous being *unable* to interact with
oauth2, this still allowed oauth2 clients to be read by anonymous in this
configuration. For some users, this may be considered a public info
disclosure.
2025-01-08 09:40:48 +10:00
..
core Resolve passkey regression (#3343) 2025-01-08 09:40:28 +10:00
daemon Work around systemd race condition (#3262) 2024-12-03 14:00:23 +10:00
lib Ignore anonymous in oauth2 read allow access (#3336) 2025-01-08 09:40:48 +10:00
lib-macros OAuth2 Token Type (#3008) 2024-08-25 23:30:20 +00:00
testkit 20241109 3185 max age (#3196) 2024-11-10 14:06:08 +10:00
testkit-macros CLI integration test beginnings (#2261) 2023-10-30 06:10:54 +00:00
builder.sh 1399 cleanup reorg (#1412) 2023-03-01 13:10:52 +10:00
Dockerfile Remove WASM (#3148) 2024-10-26 17:19:13 +10:00