Comments (6)
Apologies, somehow I missed this issue when you opened it.
I'm not certain whether Cognito uses refresh tokens with OpenID federation, so some investigation may be required. I don't believe it's mentioned in the documentation for the flow - Cognito generates its own refresh tokens (which are mentioned), but it's not clear whether refresh tokens are used with OIDC federation.
However, there are no technical challenges that I am currently aware of, and a PR to add this would be most welcome!
from github-cognito-openid-wrapper.
Now that I think about this, one issue may be that GitHub doesn't issue refresh tokens (as far as I remember).
If this is the case, the feature would still be useful if people are using this wrapper for other OAuth services - I've thought about making that part more general.
from github-cognito-openid-wrapper.
@ispyinternet Did you get anywhere with this?
from github-cognito-openid-wrapper.
Haven’t had a chance to look yet
from github-cognito-openid-wrapper.
Further to this, it looks like github now supports refresh tokens, but only through their beta program (at the moment). I'm not sure if you'd want to rely on this in production, since "features in the public beta are subject to change":
Anyway, it would be possible to extend the github connector to request and return refresh tokens, but I'm still unclear on whether Cognito would use them.
from github-cognito-openid-wrapper.
@TimothyJones The Link you last shared has provision to call for new access token using the refresh token. But, the link is for github apps and not Oauth app. Also I am not sure if i receive any refresh token from the github's side.
Access Tokens has some expiry period right?
Can you please help me with this?
from github-cognito-openid-wrapper.
Related Issues (20)
- Bad id_token issuer HOT 3
- CDK as a deployment alternative HOT 2
- github accounts with 2FA fail HOT 3
- Can I use the access token to access the GitHub API? HOT 3
- Getting username attribute mapping required error HOT 3
- GitHub Error - 400 error getting token HOT 3
- Will I be able to consume the GitHub access_token? HOT 5
- Way to add GitHub OAuth scopes HOT 3
- GitHub App vs Github OAuth App HOT 2
- Failed to provide user info: Request failed with status code 403 HOT 6
- Question: Can the auth flow to GitHub be initiated without the Cognito Hosted UI? HOT 16
- Using cognito /logout endpoint not initiating new authn handshake with GitHub HOT 5
- Authenticating With GitHub MFA HOT 1
- Thoughts on how to update some custom claims coming from GitHub after the initial authorization in the OIDC flow HOT 3
- Undefined GITHUB_API_URL and GITHUB_LOGIN_URL HOT 1
- End of AWS Lambda support for nodejs10: July 30th HOT 2
- Token endpoint does not verify client secret HOT 4
- How to develop/test locally HOT 3
- How can I limit GitHub authentication only for users in my GitHub organization HOT 2
- Github App Compatibility HOT 2
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from github-cognito-openid-wrapper.