5 min
A server that starts
Spring Authorization Server on port 9000 with OIDC, a development client and user, token policy, and discovery and JWKS endpoints.
- spring-boot
- spring-security
5 posts.
Spring Authorization Server on port 9000 with OIDC, a development client and user, token policy, and discovery and JWKS endpoints.
Externalised issuer and CORS, health probes, and a persistent security audit trail.
A registration API with validation, one consistent error format, and demo credentials that only exist in the dev profile.
Move registered clients, authorizations and consent into PostgreSQL, with Flyway owning the schema.
What we are building, what OAuth and OpenID Connect each answer, and what this series deliberately leaves out.