Newest oauth Questions

Q&A for professional and enthusiast programmers

Web API authentication - returning the same OAUTH refresh token

I am pretty new to this.. so any help would be greatly appreciated. I have a WebApi service that uses OAUTH token and refresh token authentication. All works well at the moment: step1: I send in ...

OAuth and Cookie Based Hybrid

My problem description is below, pertinent advice would be greatly appreciated. My team is building a suite of micro services using ASP.NET Web Api. We've developed an OAuth Web Api endpoint ...

External authorization service similar to Oauth

How to build a service without its own authorization? OAuth allows a service without its own authentication to verify a user who is authenticated in another service such as Google, Facebook login ...

Github authentication without backend React/Redux/Webpack

I have a frontend React app with Redux and React-Router. I need to create an authentication with Github account. The user should click 'Login with Github', accept authorization and user data should be ...

Need to retrieve Date of birth from Oauth

I know that this question has been asked many time. The thing is, I am not able to find proper solution. I am trying to retrieve Date of birth of the user who signed in to my app. I have retrieved ...

Making a php OAuth request to Discord

Been struggling for a while. Trying to get my token from discord. Please let me know where I am going wrong. <?php ini_set('display_errors',1); $code = ''; $code = $_GET['code']; if(isset($code)...

Django how to tie device to user using token

I have a django app that uses the Django REST Framework with the Django OAuth Toolkit and django-rest-framework-social-oauth2. Each user has a raspberry pi that can come with a preloaded token. When ...

Tweepy streaming returns 401 Authorization Required

I am trying to connect to the twitter stream api to fetch tweets in realtime. This piece of code was working till 5-6 ago. Suddenly I've started receiving 401 all the time. Strangely this is both ...

Get Google OAuth2 authorised accounts

I have authorised multiple accounts via Google's OAuth2. How do I get a list of accounts that I have authorised? I want to be able to revoke access. To make it clearer, I go through the OAuth2 flow ...

Google Oauth removing scopes from access

Lets say I have an application and my application has been running for years requesting access of users. The application in question was requesting way more access then was needed or the application ...

Trying to retrieve the User ID from discord using Discord OAuth2

I am using the plugin https://github.com/teamreflex/oauth2-discord and I'm able to connect successfully and retrieve the email and username of the connected user. I require the user id though, and ...

UsernamePasswordToken NULL after one request

I created UnitTests for my Symfony app with the REST and OAuthBundle. To test the API behind the firewall, I create in my setUp method a UsernamePasswordToken by $token = new UsernamePasswordToken($...

Unable to find server client secret of my project using Oauth

I am new to android development. I am in a situation where I need the gender and date of birth for the user who signed in using their google account. For this I am using the code which is shown below ...

SSO and OAuth Confusion

This is actually a question about what I actually need instead of a howto. We have a client that uses Ping Identity/Ping Federate to enter all of the sites in their system. We have developed a web ...

How session management can be achieved after OAuth2 authentication?

In my application after authenticating user using OAuth2 framework, I want to maintain session until user logs out? What would be the best possible approach?

How to change claim values in refresh tokens and bearer authentication

I want to change the value of a claim via refresh tokens. My refresh token provider is like this: public class MyRefreshTokenProvider : AuthenticationTokenProvider { public override void Create(...

Wordpress - Social Logins through OAuth without access to Backend

I am trying to create a form where users can submit messages to my Wordpress site. For that I want to give them the option of sign in through Twitter, Facebook or Google. The problem is that most of ...

Google apis nodejs oauth authentication issue

Unable to redirect user to authentication page. Usually redirect call back url will be called and prompted to user to login and then we capture the token from exchange code. In my case, the page just ...

How to connect to the Paypal API through Javascript using OAuth?

I want to make a small app that gets some account information from Paypal and shows that in a HTML page. I solely use HTML/CSS and Javascript, I dislike to run the authorization flow on the server for ...

Error: disallowed-User Agent, oAuthentication Xamarin

Any solution for posted error faced during oAuth in Xamarin? Here is the screenshot of the error. Any help would be appreciated. Thanks. [1]: https://i.stack.imgur.com/3gByc.png

C# ASP.NET project with Facebook login - not working

I want to create a ASP.NET project (Single Page Application) and activate Facebook login. But now 2 days later I can not get it work! I have: Visual Studio 2015 This is my steps: Create a new ASP....

What is the use of specifying algorithm in header part of JSON Web Token(JWT)?

I was reading about JWT in jwt.io. I see that JWT is constructed with header, claims and signing(encrypting) it with a secret key by an algorithm. Header part basically contains the algorithm and type....

It's possible to achieve roles based access without using OAuth token?

I'm Developing .net core application which using Role Based authentication capabilities from OAUTH, Which internally needs token generated by OAUTH during login, But in my situation the login token is ...

Receiving errorCode 1004 with /token API endpoint

Do oauth token grants require a paid account? I attempted the following with both a free and trial account. Sending /token POST as documented results in: { "errorCode": 1004, "message": "You ...

How to get offline-access with Google APIs

I'm trying to get offline access with Google APIs. I have to pull data from Google Calendar without having the user sign-in everytime. I've added this to my Gemfile: gem 'google-api-client', '~> ...

Get Authorization Code from the requests history

I am using lua-resty-openidc to authenticate to my application. I am invoking my application url from python which opens browser to authenticate the users (This is achieved using google oauth2client ...

Using a redirect url for facebook oauth on a native application

I am trying to make an app that utilizes Facebook login with OAuth and utilizes the redirect URL. So far, I haven't found a way to specify a redirect URL with Facebook SDK for Android. Is there a ...

Why aren't OAuth2 access tokens stored as HttpOnly secure cookies? How would that work in a Node.js application?

I'm running a Node.js RESTful api where your typical response token from posting to /oauth/token would result in the following typical response { "refresh_token": "eyJraWQiOiI2...", "token_type":...

Social Login of facebook not working in ASP.Net MVC 5 project

I am going through a tutorial to implement facebook social log in my sample web site. Below are the steps I did. Pointed my localhost application to https and allowed fake SSL in VS. Created a web ...

IdentityServer4: How to include email in access_token without the client explicitly requesting it?

when the user logs in on the IdentityServer4 via Google, I'd like to access the email (and maybe their google-id) but without having the client request it. So it should be accessible every time, so I ...

Azure Oauth authentication on embeded web browesers will be blocked on 20 April, 2017 warning came

<?xml version="1.0" encoding="utf-8"?> <manifest xmlns:android="http://schemas.android.com/apk/res/android" xmlns:tools="http://schemas.android.com/tools" package="com....

ClaimTypes for getting the user's profile image in mvc 6

This is my ExternalLoginConfirmation task, that is the default code added when the project is created. I have added these lines to get the user claims: user.Firstname = info.Principal.Claims....

Trouble with OAuth 2 on Flask app running on Nginx

I'm encountering an issue with using Google authentication for a Flask webapp I'm deploying on Nginx. I'm using the Flask-OAuth package. Here's the error trace: myproject gunicorn[7893]: [2017-04-24 ...

Magento ScribeJava access token issue

I'm trying to connect to Magento using the REST API and the Scribe Java library. The tutorials that I've followed (https://gmartinezgil.wordpress.com/2013/08/05/using-the-magento-rest-api-in-java-with-...

Liveperson Engagement History API in PHP

Can someone please shed some light on how to get oAuth 1.0 signature correct for liveperson Engagement History API? I have read all the docs and searched everywhere for examples but cannot seem to ...

How to send user name and role info back to client side when using angular 1, asp.net web api, and owin?

I have a problem to pass user info (role and name) back to client, when I'm sending token key. My AppOauthProvider method is here: public override async Task GrantResourceOwnerCredentials(...

Unable to change Spring security access denied standard response

I have a Spring Boot application in which I used OAuth with Spring Security. When I requests an authorization token to Spring Security it returns the following response: {"error":"invalid_grant","...
+200

Omniauth Strategy Outside Devise

I've setup devise + omniauth for Google sign in. It works great on the web. I'm now looking at integrating the oauth sign in to iOS / Android clients. I've been following https://developers.google....

Implement Oauth2.0 in iOS from zero?

I saw a lot of examples but: they all use a semi-ready and service-specific Oauth libraries. No one describes common principles which could be used for less popular services (in my particular case it ...

Oauth: making the request failed (Couldn't connect to server) in get access token

I am trying to integrate Quickbook-php-sdk version "v3-php-sdk-2.6.0" with Oauth version "1.2.3" at my localhost. But while getting access token i am getting following exception error. making the ...

Launch default browser if webview is detected

I want to redirect my user from a third party webview to default device web broswer. I am wondering if this is possible and how do I do it on JS. The reason why I need this becase I have a problem ...

How to implement Implicit Grant in Go using oauth2

go version go1.7.4 linux/amd64 I am trying get amazon alexa login using oauth2 package main import ( "context" "encoding/json" "fmt" "html/template" "io/ioutil" "log" "...

Spring security only allowed oauth login

In my project, i just want to allow oauth login. my spring security config as follow: @Override protected void configure(HttpSecurity http) throws Exception { http.authorizeRequests()....

Revoking OAuth Access and Refresh Tokens

I want to properly implement a OAuth token revokation in my client. The specs for this (rfc7009) clearly say that an proper endpoint MUST allow revoking the refresh_token and SHOULD allow the same for ...

Where to Learn about REST api and Oauth for building PHP web application

I know it is a pretty basic question, But believe me i didnt find any helpful resource to learn how to implement REST API and OAuth 2.0 in a PHP web application. It will be helpful if any one give me ...

IdentityServer database changes for scenerios

I am trying to put together some documentation on changes that need to be made to the Database back-end when different actions are performed so they can operate with IdentityServer4, but realizing ...

woocommerce API 401 on Plesk and lets encrypt

When connecting using oauth or basic authentication to woocommerce api using https, I get this { "code": "woocommerce_rest_cannot_view", "message": "Sorry, you cannot list resources.", "data": {...

Asp.net core Incorrect redirect_url when use Facebook external login

I am working in a project required Facebook login using asp.net core following to this tutorial. Everything seem fine then I deploy it to my Ubuntu VPS. Since kestrel server is not a complete web ...

wso2is-5.3.0 wso2am-2.1.0 sso working but application token re-generation fails

I'm following this tutorial in order to enable SSO between wso2is-5.3.0 and wso2am-2.1.0. I successfully could perform SSO between carbon, store and publisher of wso2am components. I do verified that ...

Cordova inAppBrowser gives Whitescreen when trying to connect to SalesForce

I'm working on a Cordova Application which has to sync the contacts with a Salesforce installation. When a user clicks on a button, the app will open the inAppBrowser and will go to the salesforce ...
Translating... 0%