IBM Support

PH14676: OIDC RP: OMIT CLIENT_SECRET OAUTH 2.0 PARAMETER IF THE CLIENT_SECRET IS AN EMPTY STRING

Abstract

rfc6749 shows that client_secret is REQUIRED but it also states: "The client MAY omit the parameter if the client

[{"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSEQTP","label":"WebSphere Application Server"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"8.5","Line of Business":{"code":"LOB77","label":"Automation Platform"}}]

Log InLog in to view more of this document

This document has the abstract of a technical article that is available to authorized users once you have logged on. Please use Log in button above to access the full document. After log in, if you do not have the right authorization for this document, there will be instructions on what to do next.

Document Information

Modified date:
06 December 2021