Not sure what you mean, but if you're asking if a login request can have
'..?redirect_uri=urn:ietf:wg:oauth:2.0:oob' without
'urn:ietf:wg:oauth:2.0:oob' listed as a valid redirect_uri on the
application/client, then no.
----- Original Message -----
From: "Bill Burke" <bburke(a)redhat.com>
To: keycloak-dev(a)lists.jboss.org
Sent: Tuesday, 20 May, 2014 4:32:06 PM
Subject: [keycloak-dev] urn:ietf:wg:oauth:2.0:oob always valid?
If the client has a redirect uri of urn:ietf:wg:oauth:2.0:oob, this is
always acceptable?
--
Bill Burke
JBoss, a division of Red Hat
http://bill.burkecentral.com
_______________________________________________
keycloak-dev mailing list
keycloak-dev(a)lists.jboss.org
https://lists.jboss.org/mailman/listinfo/keycloak-dev