Re: [Dev] [IS] Need to get the consent page back in SSO flow

2017-08-20 Thread Naduni Pamudika
Hi Isura & Indunil,

On Fri, Aug 18, 2017 at 6:58 PM, Indunil Upeksha Rathnayake <
indu...@wso2.com> wrote:

> Hi Naduni,
>
> This was an improvement for IS 5.2.0 (Refer [1] for more information). As
> isura mentioned, you can use "updateApproveAlwaysForAppCons
> entByResourceOwner" in OAuthAdminService to revoke the approve always
> consent for OAuth apps.
>
> Please refer the IDN_OPENID_USER_RPS table in IS. When users login to
> oauth applications, the consent details are stored in this table. In
> there, TRUSTED_ALWAYS column contains the value of "TRUE" or "FALSE" which
> indicates whether the user has given the  “Approve Always” or “Approve”
> options.
>
> We are setting the TRUSTED_ALWAYS column by the value provided for
> "state" when invoking "updateApproveAlwaysForAppConsentByResourceOwner"
> service method. So in order to revoke the "Approve Always" consent, you
> need to provide "state" as "FALSE".
>

Thank you for the detailed responses. I got the issue solved.

Thanks,
Naduni

>
> [1] https://wso2.org/jira/browse/IDENTITY-4832
>
> On Fri, Aug 18, 2017 at 5:34 PM, Naduni Pamudika  wrote:
>
>> Hi Isura,
>>
>> On Fri, Aug 18, 2017 at 4:17 PM, Isura Karunaratne 
>> wrote:
>>
>>> Hi Nipuni,
>>>
>>> You can use updateApproveAlwaysForAppConsentByResourceOwner method in
>>> oauthAdminSevice to revoke the approve always consent.
>>>
>>>  http://schemas.
>> xmlsoap.org/soap/envelope/
>> "
>> xmlns:xsd="http://org.apache.axis2/xsd
>> 
>> ">
>>   
>>   
>>  
>> 
>> ?
>> 
>> ?
>>  
>>   
>> 
>>
>> What do we need to put as "state" here?
>>
>> For the "appName", is it okay to put the Service Provider ID.
>>
>>
>> ​
>> Thanks,
>> Naduni
>>
>> Thanks
>>> Isura
>>>
>>> On Fri, Aug 18, 2017 at 3:24 PM Farasath Ahamed 
>>> wrote:
>>>
 + Indunil

 Farasath Ahamed
 Software Engineer, WSO2 Inc.; http://wso2.com
 Mobile: +94777603866
 Blog: blog.farazath.com
 Twitter: @farazath619 
 



 On Fri, Aug 18, 2017 at 3:12 PM, Naduni Pamudika 
 wrote:

> Hi All,
>
> In the SSO flow, first the login page appears and then the consent
> page where the scopes are being approved by the user. I have put
> "Approve Always" for the scopes showing in the consent page and then
> the consent page does not appear in the login flow.
>
> I want to get the normal flow back, i.e. I want to go through the consent
> page and see the scopes.
>
> I tried deleting the application from the IS side and it did not work.
> Even after deleting and creating a new application, "Approve Always" is
> still enabled.
>
> How can I get it disabled?
>
> Thank you,
> Naduni
>
> --
> *Naduni Pamudika*
> Software Engineer | WSO2
> Mobile: +94 719 143658 <+94%2071%20914%203658>
> [image: http://wso2.com/signature] 
>

 ___
 Dev mailing list
 Dev@wso2.org
 http://wso2.org/cgi-bin/mailman/listinfo/dev

>>> --
>>>
>>> *Isura Dilhara Karunaratne*
>>> Associate Technical Lead | WSO2
>>> Email: is...@wso2.com
>>> Mob : +94 772 254 810 <+94%2077%20225%204810>
>>> Blog : http://isurad.blogspot.com/
>>>
>>>
>>>
>>>
>>
>>
>> --
>> *Naduni Pamudika*
>> Software Engineer | WSO2
>> Mobile: +94 719 143658 <+94%2071%20914%203658>
>> [image: http://wso2.com/signature] 
>>
>
>
>
> --
> Indunil Upeksha Rathnayake
> Software Engineer | WSO2 Inc
> Emailindu...@wso2.com
> Mobile   0772182255
>



-- 
*Naduni Pamudika*
Software Engineer | WSO2
Mobile: +94 719 143658 <+94%2071%20914%203658>
[image: http://wso2.com/signature] 
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [IS] Need to get the consent page back in SSO flow

2017-08-20 Thread Naduni Pamudika
Hi Indunil,

On Fri, Aug 18, 2017 at 7:16 PM, Indunil Upeksha Rathnayake <
indu...@wso2.com> wrote:

>
> Hi,
> On Fri, Aug 18, 2017 at 3:12 PM, Naduni Pamudika  wrote:
>
>> Hi All,
>>
>> In the SSO flow, first the login page appears and then the consent page where
>> the scopes are being approved by the user. I have put "Approve Always" for
>> the scopes showing in the consent page and then the consent page does
>> not appear in the login flow.
>>
>> I want to get the normal flow back, i.e. I want to go through the consent
>> page and see the scopes.
>>
>> I tried deleting the application from the IS side and it did not work.
>> Even after deleting and creating a new application, "Approve Always" is
>> still enabled.
>>
>
> There was an issue when removing an authorized app, the consent was not
> get removed from IDN_OPENID_USER_RPS table and it was fixed with [1]. In
> order to remove the authorized app, you use "Remove Application" in
> "Authorized Apps" gadget [2]? If so, it should remove the consent for that
> application.
>
It worked. Thank you so much for the quick response.

Thanks,
Naduni

>
> [1] https://wso2.org/jira/browse/IDENTITY-4832
> [2] https://docs.wso2.com/display/IS530/Using+the+End+User+Dashboard#
> UsingtheEndUserDashboard-Workingwithyourauthorizedapplications
>
>
>>
>> How can I get it disabled?
>>
>> Thank you,
>> Naduni
>>
>> --
>> *Naduni Pamudika*
>> Software Engineer | WSO2
>> Mobile: +94 719 143658 <+94%2071%20914%203658>
>> [image: http://wso2.com/signature] 
>>
>
>
>
> --
> Indunil Upeksha Rathnayake
> Software Engineer | WSO2 Inc
> Emailindu...@wso2.com
> Mobile   0772182255
>



-- 
*Naduni Pamudika*
Software Engineer | WSO2
Mobile: +94 719 143658 <+94%2071%20914%203658>
[image: http://wso2.com/signature] 
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [IS] Need to get the consent page back in SSO flow

2017-08-18 Thread Indunil Upeksha Rathnayake
Hi,
On Fri, Aug 18, 2017 at 3:12 PM, Naduni Pamudika  wrote:

> Hi All,
>
> In the SSO flow, first the login page appears and then the consent page where
> the scopes are being approved by the user. I have put "Approve Always" for
> the scopes showing in the consent page and then the consent page does not
> appear in the login flow.
>
> I want to get the normal flow back, i.e. I want to go through the consent
> page and see the scopes.
>
> I tried deleting the application from the IS side and it did not work.
> Even after deleting and creating a new application, "Approve Always" is
> still enabled.
>

There was an issue when removing an authorized app, the consent was not get
removed from IDN_OPENID_USER_RPS table and it was fixed with [1]. In order
to remove the authorized app, you use "Remove Application" in "Authorized
Apps" gadget [2]? If so, it should remove the consent for that application.

[1] https://wso2.org/jira/browse/IDENTITY-4832
[2]
https://docs.wso2.com/display/IS530/Using+the+End+User+Dashboard#UsingtheEndUserDashboard-Workingwithyourauthorizedapplications


>
> How can I get it disabled?
>
> Thank you,
> Naduni
>
> --
> *Naduni Pamudika*
> Software Engineer | WSO2
> Mobile: +94 719 143658 <+94%2071%20914%203658>
> [image: http://wso2.com/signature] 
>



-- 
Indunil Upeksha Rathnayake
Software Engineer | WSO2 Inc
Emailindu...@wso2.com
Mobile   0772182255
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [IS] Need to get the consent page back in SSO flow

2017-08-18 Thread Indunil Upeksha Rathnayake
Hi Naduni,

This was an improvement for IS 5.2.0 (Refer [1] for more information). As
isura mentioned, you can use "
updateApproveAlwaysForAppConsentByResourceOwner" in OAuthAdminService to
revoke the approve always consent for OAuth apps.

Please refer the IDN_OPENID_USER_RPS table in IS. When users login to oauth
applications, the consent details are stored in this table. In there,
TRUSTED_ALWAYS column contains the value of "TRUE" or "FALSE" which
indicates whether the user has given the  “Approve Always” or “Approve”
options.

We are setting the TRUSTED_ALWAYS column by the value provided for "state"
when invoking "updateApproveAlwaysForAppConsentByResourceOwner" service
method. So in order to revoke the "Approve Always" consent, you need to
provide "state" as "FALSE".

[1] https://wso2.org/jira/browse/IDENTITY-4832

On Fri, Aug 18, 2017 at 5:34 PM, Naduni Pamudika  wrote:

> Hi Isura,
>
> On Fri, Aug 18, 2017 at 4:17 PM, Isura Karunaratne  wrote:
>
>> Hi Nipuni,
>>
>> You can use updateApproveAlwaysForAppConsentByResourceOwner method in
>> oauthAdminSevice to revoke the approve always consent.
>>
>>  http://schemas.
> xmlsoap.org/soap/envelope/
> "
> xmlns:xsd="http://org.apache.axis2/xsd
> 
> ">
>   
>   
>  
> 
> ?
> 
> ?
>  
>   
> 
>
> What do we need to put as "state" here?
>
> For the "appName", is it okay to put the Service Provider ID.
>
>
> ​
> Thanks,
> Naduni
>
> Thanks
>> Isura
>>
>> On Fri, Aug 18, 2017 at 3:24 PM Farasath Ahamed 
>> wrote:
>>
>>> + Indunil
>>>
>>> Farasath Ahamed
>>> Software Engineer, WSO2 Inc.; http://wso2.com
>>> Mobile: +94777603866
>>> Blog: blog.farazath.com
>>> Twitter: @farazath619 
>>> 
>>>
>>>
>>>
>>> On Fri, Aug 18, 2017 at 3:12 PM, Naduni Pamudika 
>>> wrote:
>>>
 Hi All,

 In the SSO flow, first the login page appears and then the consent page 
 where
 the scopes are being approved by the user. I have put "Approve Always" for
 the scopes showing in the consent page and then the consent page does
 not appear in the login flow.

 I want to get the normal flow back, i.e. I want to go through the consent
 page and see the scopes.

 I tried deleting the application from the IS side and it did not work.
 Even after deleting and creating a new application, "Approve Always" is
 still enabled.

 How can I get it disabled?

 Thank you,
 Naduni

 --
 *Naduni Pamudika*
 Software Engineer | WSO2
 Mobile: +94 719 143658 <+94%2071%20914%203658>
 [image: http://wso2.com/signature] 

>>>
>>> ___
>>> Dev mailing list
>>> Dev@wso2.org
>>> http://wso2.org/cgi-bin/mailman/listinfo/dev
>>>
>> --
>>
>> *Isura Dilhara Karunaratne*
>> Associate Technical Lead | WSO2
>> Email: is...@wso2.com
>> Mob : +94 772 254 810 <+94%2077%20225%204810>
>> Blog : http://isurad.blogspot.com/
>>
>>
>>
>>
>
>
> --
> *Naduni Pamudika*
> Software Engineer | WSO2
> Mobile: +94 719 143658 <+94%2071%20914%203658>
> [image: http://wso2.com/signature] 
>



-- 
Indunil Upeksha Rathnayake
Software Engineer | WSO2 Inc
Emailindu...@wso2.com
Mobile   0772182255
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [IS] Need to get the consent page back in SSO flow

2017-08-18 Thread Naduni Pamudika
Hi Isura,

On Fri, Aug 18, 2017 at 4:17 PM, Isura Karunaratne  wrote:

> Hi Nipuni,
>
> You can use updateApproveAlwaysForAppConsentByResourceOwner method in
> oauthAdminSevice to revoke the approve always consent.
>
>  http://schemas.xmlsoap.org/soap/envelope/
"
xmlns:xsd="http://org.apache.axis2/xsd

">
  
  
 

?

?
 
  


What do we need to put as "state" here?

For the "appName", is it okay to put the Service Provider ID.


​
Thanks,
Naduni

Thanks
> Isura
>
> On Fri, Aug 18, 2017 at 3:24 PM Farasath Ahamed 
> wrote:
>
>> + Indunil
>>
>> Farasath Ahamed
>> Software Engineer, WSO2 Inc.; http://wso2.com
>> Mobile: +94777603866
>> Blog: blog.farazath.com
>> Twitter: @farazath619 
>> 
>>
>>
>>
>> On Fri, Aug 18, 2017 at 3:12 PM, Naduni Pamudika  wrote:
>>
>>> Hi All,
>>>
>>> In the SSO flow, first the login page appears and then the consent page 
>>> where
>>> the scopes are being approved by the user. I have put "Approve Always" for
>>> the scopes showing in the consent page and then the consent page does
>>> not appear in the login flow.
>>>
>>> I want to get the normal flow back, i.e. I want to go through the consent
>>> page and see the scopes.
>>>
>>> I tried deleting the application from the IS side and it did not work.
>>> Even after deleting and creating a new application, "Approve Always" is
>>> still enabled.
>>>
>>> How can I get it disabled?
>>>
>>> Thank you,
>>> Naduni
>>>
>>> --
>>> *Naduni Pamudika*
>>> Software Engineer | WSO2
>>> Mobile: +94 719 143658 <+94%2071%20914%203658>
>>> [image: http://wso2.com/signature] 
>>>
>>
>> ___
>> Dev mailing list
>> Dev@wso2.org
>> http://wso2.org/cgi-bin/mailman/listinfo/dev
>>
> --
>
> *Isura Dilhara Karunaratne*
> Associate Technical Lead | WSO2
> Email: is...@wso2.com
> Mob : +94 772 254 810 <+94%2077%20225%204810>
> Blog : http://isurad.blogspot.com/
>
>
>
>


-- 
*Naduni Pamudika*
Software Engineer | WSO2
Mobile: +94 719 143658 <+94%2071%20914%203658>
[image: http://wso2.com/signature] 
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [IS] Need to get the consent page back in SSO flow

2017-08-18 Thread Isura Karunaratne
Hi Nipuni,

You can use updateApproveAlwaysForAppConsentByResourceOwner method in
oauthAdminSevice to revoke the approve always consent.

Thanks
Isura

On Fri, Aug 18, 2017 at 3:24 PM Farasath Ahamed  wrote:

> + Indunil
>
> Farasath Ahamed
> Software Engineer, WSO2 Inc.; http://wso2.com
> Mobile: +94777603866
> Blog: blog.farazath.com
> Twitter: @farazath619 
> 
>
>
>
> On Fri, Aug 18, 2017 at 3:12 PM, Naduni Pamudika  wrote:
>
>> Hi All,
>>
>> In the SSO flow, first the login page appears and then the consent page where
>> the scopes are being approved by the user. I have put "Approve Always" for
>> the scopes showing in the consent page and then the consent page does
>> not appear in the login flow.
>>
>> I want to get the normal flow back, i.e. I want to go through the consent
>> page and see the scopes.
>>
>> I tried deleting the application from the IS side and it did not work.
>> Even after deleting and creating a new application, "Approve Always" is
>> still enabled.
>>
>> How can I get it disabled?
>>
>> Thank you,
>> Naduni
>>
>> --
>> *Naduni Pamudika*
>> Software Engineer | WSO2
>> Mobile: +94 719 143658 <+94%2071%20914%203658>
>> [image: http://wso2.com/signature] 
>>
>
> ___
> Dev mailing list
> Dev@wso2.org
> http://wso2.org/cgi-bin/mailman/listinfo/dev
>
-- 

*Isura Dilhara Karunaratne*
Associate Technical Lead | WSO2
Email: is...@wso2.com
Mob : +94 772 254 810
Blog : http://isurad.blogspot.com/
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [IS] Need to get the consent page back in SSO flow

2017-08-18 Thread Farasath Ahamed
+ Indunil

Farasath Ahamed
Software Engineer, WSO2 Inc.; http://wso2.com
Mobile: +94777603866
Blog: blog.farazath.com
Twitter: @farazath619 




On Fri, Aug 18, 2017 at 3:12 PM, Naduni Pamudika  wrote:

> Hi All,
>
> In the SSO flow, first the login page appears and then the consent page where
> the scopes are being approved by the user. I have put "Approve Always" for
> the scopes showing in the consent page and then the consent page does not
> appear in the login flow.
>
> I want to get the normal flow back, i.e. I want to go through the consent
> page and see the scopes.
>
> I tried deleting the application from the IS side and it did not work.
> Even after deleting and creating a new application, "Approve Always" is
> still enabled.
>
> How can I get it disabled?
>
> Thank you,
> Naduni
>
> --
> *Naduni Pamudika*
> Software Engineer | WSO2
> Mobile: +94 719 143658 <+94%2071%20914%203658>
> [image: http://wso2.com/signature] 
>
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


[Dev] [IS] Need to get the consent page back in SSO flow

2017-08-18 Thread Naduni Pamudika
Hi All,

In the SSO flow, first the login page appears and then the consent page where
the scopes are being approved by the user. I have put "Approve Always" for
the scopes showing in the consent page and then the consent page does not
appear in the login flow.

I want to get the normal flow back, i.e. I want to go through the consent
page and see the scopes.

I tried deleting the application from the IS side and it did not work. Even
after deleting and creating a new application, "Approve Always" is still
enabled.

How can I get it disabled?

Thank you,
Naduni

-- 
*Naduni Pamudika*
Software Engineer | WSO2
Mobile: +94 719 143658 <+94%2071%20914%203658>
[image: http://wso2.com/signature] 
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev