← Back to plugin index

STET PSD2 OAuth 2.0 Scope Filter

Description
Restricts the scope of the issued tokens to the PSD2 roles in the certificate which has been used for the OAuth 2.0 client authentication (mTLS).

STET OAuth 2.0 scope values

  • aisp (covered by PSP_AI role)
  • extended_transaction_history (covered by PSP_AI role)
  • cbpii (covered by PSP_IC role)
  • pisp (covered by PSP_PI role)
If no PSD2 certificate was used for the token request, all scopes will be removed.

Prevents AISP and CBPII roles from being mixed in a single scope definition.

Type name
OAuth2GrantedScopeStetPsd2FilterProcessor
Class
com.airlock.iam.oauth2.application.configuration.as.OAuth2GrantedScopeStetPsd2FilterProcessorConfig
May be used by
License-Tags
PSD2STET
Properties
YAML Template (with default values)

type: OAuth2GrantedScopeStetPsd2FilterProcessor
id: OAuth2GrantedScopeStetPsd2FilterProcessor-xxxxxx
displayName: 
comment: 
properties: