Re: [Architecture] [APIM] [C4] Custom header field for OAuth2 token per tenant

2017-12-14 Thread Viduranga Gunarathne
r product that can do that easily. These are > some of the reasons we need to support this as a feature, but of course > default to standard. > > Thanks, > NuwanD. > > On Thu, Dec 14, 2017 at 6:48 AM, Viduranga Gunarathne <vidura...@wso2.com> > wrote: > >> Hi Saneth, >&

Re: [Architecture] [APIM] [C4] Custom header field for OAuth2 token per tenant

2017-12-13 Thread Viduranga Gunarathne
doubt there is an available > option to change the header name other than "*Authorization*" according > to spec [1][2] > > [1] https://tools.ietf.org/html/rfc6749#section-4.1.1 > [2] https://tools.ietf.org/html/rfc6750#section-2.1 > > > Thanks and Best Regards, >

Re: [Architecture] Implementing consent receipt specification in WSO2 Identity Server

2017-12-13 Thread Viduranga Gunarathne
>>>>>> In that case we can think of a PII category as a collection of >>>>>>>>>>> claims. >>>>>>>>>>> >>>>>>>>>>> In IS we already have this concept of collection of claims, >&

Re: [Architecture] [APIM] [C4] Custom header field for OAuth2 token per tenant

2017-12-06 Thread Viduranga Gunarathne
t;> Since we anyway use the recommended "Authorization" header by default, I >> don't see a problem in this. >> >> [1] https://tools.ietf.org/html/rfc6750#page-4 >> >> On Thu, Nov 30, 2017 at 3:50 PM, Kishanthan Thangarajah < >> kishant...@wso2.com>

Re: [Architecture] [APIM] Generating SDKs for APIs in API Manager Store

2017-12-04 Thread Viduranga Gunarathne
; > > -- > Sent from: http://wso2-oxygen-tank.10903.n7.nabble.com/WSO2- > Architecture-f62919.html > ___ > Architecture mailing list > Architecture@wso2.org > https://mail.wso2.org/cgi-bin/mailman/listinfo/architecture >

Re: [Architecture] [APIM][C5] - Resource Registration Rest API For API Manager

2017-12-04 Thread Viduranga Gunarathne
ftware Engineer >> WSO2 Inc.; http://wso2.com >> lean.enterprise.middleware >> >> mobile: *+94779109091 <+94%2077%20910%209091>* >> >> ___ >> Architecture mailing list >> Architecture@wso2.org >> h

Re: [Architecture] [APIM] [C4] Custom header field for OAuth2 token per tenant

2017-11-29 Thread Viduranga Gunarathne
n issue >> in a multi-tenant environment. >> >> Thanks >> Prasanna >> >> On Mon, Nov 27, 2017 at 2:36 PM, Chamin Dias <cham...@wso2.com> wrote: >> >>> Hi Viduranga, >>> >>> Small clarification, does this have any impact for

Re: [Architecture] [APIM] [C4] Custom header field for OAuth2 token per tenant

2017-11-27 Thread Viduranga Gunarathne
we have to enter CustomOAuth2Header field > manually after creating a tenant or will it be automatically added when we > create a tenant? > > Thanks, > DinushaD. > > On Mon, Nov 27, 2017 at 11:41 AM, Viduranga Gunarathne <vidura...@wso2.com > > wrote: > >>

Re: [Architecture] [APIM] [C4] Custom header field for OAuth2 token per tenant

2017-11-26 Thread Viduranga Gunarathne
his is supposed to be injected to the Gateway handler. > > On Mon, Nov 27, 2017 at 10:43 AM, Viduranga Gunarathne <vidura...@wso2.com > > wrote: > >> Hi, >> >> APIs in APIM 2.1.0 are secured with OAuth2 access tokens. In order to >> access an API, the

[Architecture] [APIM] [C4] Custom header field for OAuth2 token per tenant

2017-11-26 Thread Viduranga Gunarathne
tricting the access token from being passed to the backend. a) Read the "RemoveOAuthHeadersFromOutMessage" config from the "tenant-conf.json" b) If no config exists in tenant-conf.json, then read it from the "api-manager.xml" Any ideas and suggestions are highly ap

Re: [Architecture] [APIM][C5] Application Import Export feature for Api Manager 3.0.0

2017-11-15 Thread Viduranga Gunarathne
7 5078 <+94%2077%20197%205078> > linkedin : linkedin.com/in/randilusoysa > Web : http://wso2.com > > <http://wso2.com/signature> > > ___ > Architecture mailing list > Architecture@wso2.org >