You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
In The authz request the nonce parameter is required to prevent replay attacks using the implicit flow, SPID and CIE id doesnt support the implicit flow.
Using auth code flow the nonce is not required, following OIDC Core that defines it as OPTIONAL.
At the same time, SPID and CIE id are based on OIDC iGov, and this latter defines the nonce parameter in the Authz request as REQUIRED
In The authz request the nonce parameter is required to prevent replay attacks using the implicit flow, SPID and CIE id doesnt support the implicit flow.
Using auth code flow the nonce is not required, following OIDC Core that defines it as OPTIONAL.
At the same time, SPID and CIE id are based on OIDC iGov, and this latter defines the nonce parameter in the Authz request as REQUIRED
https://openid.net/specs/openid-igov-openid-connect-1_0-03.html
The text was updated successfully, but these errors were encountered: