class Doorkeeper::OpenidConnect::IdToken
Attributes
Public Class Methods
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 10 def initialize(access_token, nonce = nil, expires_in = Doorkeeper::OpenidConnect.configuration.expiration) @access_token = access_token @nonce = nonce @resource_owner = Doorkeeper::OpenidConnect.configuration.resource_owner_from_access_token.call(access_token) @issued_at = Time.zone.now @expires_in = expires_in end
Public Instance Methods
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 30 def as_json(*_) claims.reject { |_, value| value.nil? || value == '' } end
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 34 def as_jws_token ::JWT.encode(as_json, Doorkeeper::OpenidConnect.signing_key.keypair, Doorkeeper::OpenidConnect.signing_algorithm.to_s, { typ: 'JWT', kid: Doorkeeper::OpenidConnect.signing_key.kid } ).to_s end
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 18 def claims { iss: issuer, sub: subject, aud: audience, exp: expiration, iat: issued_at, nonce: nonce, auth_time: auth_time }.merge ClaimsBuilder.generate(@access_token, :id_token) end
Private Instance Methods
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 56 def audience @access_token.application.try(:uid) end
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 68 def auth_time Doorkeeper::OpenidConnect.configuration.auth_time_from_resource_owner.call(@resource_owner).try(:to_i) end
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 60 def expiration (@issued_at.utc + @expires_in).to_i end
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 64 def issued_at @issued_at.utc.to_i end
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 44 def issuer if Doorkeeper::OpenidConnect.configuration.issuer.respond_to?(:call) Doorkeeper::OpenidConnect.configuration.issuer.call(@resource_owner, @access_token.application).to_s else Doorkeeper::OpenidConnect.configuration.issuer end end
Source
# File lib/doorkeeper/openid_connect/id_token.rb, line 52 def subject Doorkeeper::OpenidConnect.configuration.subject.call(@resource_owner, @access_token.application).to_s end