← Back to plugin index

OAuth 2.0 Token Generator Settings

Description

Configuration for OAuth 2.0 token generation, e.g. for generating Authorization Codes.

This configuration controls how tokens are generated and stored. It allows specifying the length of the random component of generated tokens and the hash algorithm used to persist tokens securely.

Type name
OAuth2TokenGenerator
Class
com.airlock.iam.oauth2.application.configuration.OAuth2TokenGeneratorConfig
May be used by
License-Tags
OAuthServer
Properties
Token Random Part Length (tokenRandomPartLength)
Description

Length (in characters) of the random part in generated OAuth 2.0 Tokens.

With random tokens, this forms part of the token string itself, for JWT tokens, this string is included in the JWT as "jti" claim.

For security reasons, as recommended by RFC 6749, the randomness must be at least 160 bit corresponding to about 28 characters. Overly large values may have a negative performance impact.

Attributes
Integer
Optional
Default value
40
Password Hash (passwordHash)
Description

Hash function used to hash the generated OAuth 2.0 Tokens. Only a random ID and the hash of the token will be persisted.

Warning: When changing this hash, all previously issued tokens will be come invalid!
Security Warning: A cryptographic hash function should be used.

Attributes
Plugin-Link
Optional
Assignable plugins
YAML Template (with default values)

type: OAuth2TokenGenerator
id: OAuth2TokenGenerator-xxxxxx
displayName: 
comment: 
properties:
  passwordHash:
  tokenRandomPartLength: 40