Skip to content

Nextcloud OIDC Provider App - 1.3.0

Latest
Compare
Choose a tag to compare
@H2CK H2CK released this 26 Jan 15:29
· 6 commits to master since this release

Nextcloud OpenID Connect Provider App - 1.3.0

This is the an OIDC App for Nextcloud. This application allows to use your Nextcloud Login at other services supporting OpenID Connect.

Provided features:

  • Support for OpenID Connect Code (response_type = code) and Implicit (response_type = id_token) Flow - Implicit Flow must be activated per client.
  • Configuration of accepted client for whom JWT Tokens are provided. Public and confidential types are supported.
  • Creation of JWT Token with claims based on requested scope. (Currently supported scopes openid, profile, email, roles and groups)
  • Supported signing algorithms RS256 (default) and HS256
  • Group memberships are passed as roles in JWT token.
  • Support multiple Redirect URIs per client
  • Limit access for a client to specific user groups
  • Discovery & WebFinger endpoint provided
  • Logout endpoint supports partial RP-Initated logout (support for id_token_hint, client_id and post_logout_redirect_uri attributes)
  • Dynamic Client Registration - Disabled by default
  • Administration of clients via CLI
  • Access Token generation and validation via events

Changes:

  • Handle access token generation and validation requests via events (thanks to @julien-nc)
  • Return user group array from the /userinfo endpoint and guard groups and roles claim behind authorized scope (thanks to @jannisko)
  • Added support for Nextcloud 31
  • Updated dependencies
  • Updated translations

Full documentation can be found at:

User Documentation
Developer Documentation