From 316fdd66fdc8347579df4c18eb8b69c2b9130216 Mon Sep 17 00:00:00 2001 From: Dmitry Gusev Date: Thu, 8 Feb 2024 20:10:25 +0300 Subject: [PATCH] auth-backend-module-oidc-provider: enable persisted scopes Signed-off-by: Dmitry Gusev --- .../auth-backend-module-oidc-provider/src/authenticator.ts | 4 +--- 1 file changed, 1 insertion(+), 3 deletions(-) diff --git a/plugins/auth-backend-module-oidc-provider/src/authenticator.ts b/plugins/auth-backend-module-oidc-provider/src/authenticator.ts index ba6bc9d142..eddf57a55b 100644 --- a/plugins/auth-backend-module-oidc-provider/src/authenticator.ts +++ b/plugins/auth-backend-module-oidc-provider/src/authenticator.ts @@ -42,6 +42,7 @@ export type OidcAuthResult = { /** @public */ export const oidcAuthenticator = createOAuthAuthenticator({ + shouldPersistScopes: true, defaultProfileTransform: async ( input: OAuthAuthenticatorResult, ) => ({ @@ -162,9 +163,6 @@ export const oidcAuthenticator = createOAuthAuthenticator({ if (!tokenset.access_token) { throw new Error('Refresh failed'); } - if (!tokenset.scope) { - tokenset.scope = input.scope; - } const userinfo = await client.userinfo(tokenset.access_token); return new Promise((resolve, reject) => {