Oh, sorry my reply only went to Janusz.
But while letting all you others also see my answer I’d like to add that I’d like to
rewrite the OIDC frontend to SATOSA.
It’s now base on pyOP which not readily extensible.
I’d rather use the pyoidc next generation now being worked on
(you can find it as oicmsg, oiccli and oicrp on
https://github.com/identitypython)
If we where to switch to nextgen, adding support for PKCE to SATOSA would just be
configuration.
There are still some work needed on nextgen, so no change in the near future.
Begin forwarded message:
From: Roland Hedberg <roland at catalogix.se>
Subject: Re: [satosa-users] PKCE support
Date: 1 December 2017 at 19:51:29 CET
To: Janusz Ulanowski <janusz.ulanowski at heanet.ie>
On 1 Dec 2017, at 15:59, Janusz Ulanowski
<janusz.ulanowski at heanet.ie> wrote:
Hi,
Just curious. Will be PKCE supported in oidc-frontend?
If it’s not there right now it will be added.
pyoidc has support for it so it should not be that hard.
— Roland