mirror of https://github.com/dexidp/dex.git
Browse Source
In authorization_code flow with PKCE, allow empty client_secret on /auth and /token endpoints. But check the client_secret when it is given. Signed-off-by: Bernd Eckstein <Bernd.Eckstein@faro.com>pull/1784/head
1 changed files with 2 additions and 2 deletions
Loading…
Reference in new issue