3e1e0b604f
This adds the oauth2 provider `oidc`. It needs an additional argument, the OIDC discovery endpoint to figure out where the auth and token URLs are. Configuration is similar to setting up the Google Authentication with these changes: * `OAUTH2_PROVIDER = oidc` * `OAUTH2_OIDC_DISCOVERY_ENDPOINT = https://auth.exampe.org/discovery`
35 lines
974 B
Go
35 lines
974 B
Go
// Copyright 2017 Frédéric Guillot. All rights reserved.
|
|
// Use of this source code is governed by the Apache 2.0
|
|
// license that can be found in the LICENSE file.
|
|
|
|
package ui // import "miniflux.app/ui"
|
|
|
|
import (
|
|
"net/http"
|
|
|
|
"miniflux.app/http/request"
|
|
"miniflux.app/http/response/html"
|
|
"miniflux.app/http/route"
|
|
"miniflux.app/logger"
|
|
"miniflux.app/ui/session"
|
|
)
|
|
|
|
func (h *handler) oauth2Redirect(w http.ResponseWriter, r *http.Request) {
|
|
sess := session.New(h.store, request.SessionID(r))
|
|
|
|
provider := request.RouteStringParam(r, "provider")
|
|
if provider == "" {
|
|
logger.Error("[OAuth2] Invalid or missing provider: %s", provider)
|
|
html.Redirect(w, r, route.Path(h.router, "login"))
|
|
return
|
|
}
|
|
|
|
authProvider, err := getOAuth2Manager(r.Context()).Provider(provider)
|
|
if err != nil {
|
|
logger.Error("[OAuth2] %v", err)
|
|
html.Redirect(w, r, route.Path(h.router, "login"))
|
|
return
|
|
}
|
|
|
|
html.Redirect(w, r, authProvider.GetRedirectURL(sess.NewOAuth2State()))
|
|
}
|