-
Feature
-
Resolution: Done
-
Standard
-
None
-
None
-
None
-
None
-
8
-
Sprint 260, Sprint 264
The OpenID protocols have been deprecated.
Acceptance Criteria:
Contact GS to set up accounts to use ORCID OAUTH 2.0 service(s) for production, prototype and localhost instances for CDG, GDEX, DASH Repo.
Add registration workflow to support requiring first name, last name, email for new user accounts.
Place ORCID Login behind toggle.
Then:
Create tickets for GitHub, Google integration.
Identify direction for authorization on TDS.
General:
Migrate the gateway to use OAUTH 2.0 as an authentication mechanism via the google, github and ORCID sso providers.
Move earthsystemgrid.org OpenIDs to local user/password. Encourage users to use external login provider (and not local).
Consider: TDS download use case.
Note: This related to Gateway branding and the URL we use for identity, etc. Ie, we want to move away from earthsystemgrid openids...
Consider: DASH Service desk logins and integration.
- is related to
-
GTWY-3694 Difficulty in Figuring Out What "Authentication Failed" Means During OpenID Login
- Done
-
GTWY-5362 Create Google Form Survey and Add Link on OpenID Login
- Done
-
GTWY-5698 Make OAuth Client Secrets Leak Proof
- To Do
-
GTWY-3440 OpenID Exception When a User Loses Their Session
- Done
-
DASHREPO-757 Identify External User Authentication Approaches
- Done
-
DASHREPO-831 Upgrade Spring Libraries to Support OAuth2
- Done
-
GTWY-5069 Mistyping Openid Protocol (http vs https) or Using a Url Defender Causes Duplicate Accounts
- Done
-
GTWY-5687 OAuth2 Authentication Doesn't Support Remember Me Cookie
- Done