update oidc scope

passport-openidconnect adds the 'openid' scope to the request, regardless of if its already there.
removed 'openid' scope
removed unused 'groups' scope
This commit is contained in:
mstrhakr 2022-09-03 18:17:43 -04:00
parent cae47b89a4
commit c8774e700b

View File

@ -6902,7 +6902,7 @@ module.exports.CreateWebServer = function (parent, db, args, certificates, doneF
userInfoURL: domain.authstrategies.oidc.userinfourl,
clientID: domain.authstrategies.oidc.clientid,
clientSecret: domain.authstrategies.oidc.clientsecret,
scope: ['openid profile email groups'],
scope: ['profile email'],
};
var OIDCStrategy = require('passport-openidconnect');
if (typeof domain.authstrategies.oidc.callbackurl == 'string') { options.callbackURL = domain.authstrategies.oidc.callbackurl; } else { options.callbackURL = url + 'oidc-callback'; }