Class RestletHeaderAccessTokenVerifier


  • @Singleton
    public class RestletHeaderAccessTokenVerifier
    extends AccessTokenVerifier
    Verifies that a OAuth2 request that is made to one of the protected endpoints on the OAuth2 provider, (i.e. tokeninfo, userinfo) contains a valid access token specified in the request header.
    Since:
    12.0.0
    • Constructor Detail

      • RestletHeaderAccessTokenVerifier

        @Inject
        public RestletHeaderAccessTokenVerifier​(TokenStore tokenStore)
    • Method Detail

      • obtainTokenId

        protected String obtainTokenId​(OAuth2Request request)
        Obtain the token ID from the request.
        Specified by:
        obtainTokenId in class AccessTokenVerifier
        Parameters:
        request - The OAuth2 request. Must not be null.
        Returns:
        The String access token ID.
      • getChallengeResponse

        public org.restlet.data.ChallengeResponse getChallengeResponse​(org.restlet.Request request)
        Returns the authentication response sent by a client to an origin server instead of org.restlet.engine.adapter.HttpRequest.
        Returns:
        The authentication response sent by a client to an origin server.