Class OAuth2AuthorizationValidator
java.lang.Object
com.codename1.backend.security.oauth2.server.authorization.OAuth2AuthorizationValidator
- All Implemented Interfaces:
OAuth2TokenValidator<Jwt>
Checks a signed access token against its live authorization grant, including
client-credentials grants. Removing the grant makes subsequent checks fail.
Install alongside timestamp and audience validators on a JWT decoder that
verifies the issuer's signature. The resource server must share the issuer's
authorization store; signature-only verification cannot observe revocation.
-
Constructor Summary
ConstructorsConstructorDescriptionOAuth2AuthorizationValidator(OAuth2AuthorizationService authorizations, String issuer) -
Method Summary
Modifier and TypeMethodDescriptionvoidThe clock used to check the grant's expiry.Whethertokenpasses, and why not.
-
Constructor Details
-
OAuth2AuthorizationValidator
-
-
Method Details
-
setClock
The clock used to check the grant's expiry. -
validate
Description copied from interface:OAuth2TokenValidatorWhethertokenpasses, and why not.- Specified by:
validatein interfaceOAuth2TokenValidator<Jwt>
-