Class OAuth2ErrorCodes

java.lang.Object
com.codename1.backend.security.oauth2.core.OAuth2ErrorCodes

public final class OAuth2ErrorCodes extends Object
The error codes this layer answers with: those of RFC 6749, RFC 6750, RFC 7009 and RFC 8628, and the ones a sign-in through another provider fails with.
  • Field Details

    • INVALID_REQUEST

      public static final String INVALID_REQUEST
      The request is missing a parameter, repeats one, or is otherwise malformed.
      See Also:
    • INVALID_TOKEN

      public static final String INVALID_TOKEN
      The access token is expired, revoked, malformed or otherwise not valid.
      See Also:
    • INSUFFICIENT_SCOPE

      public static final String INSUFFICIENT_SCOPE
      The request needs more than the access token grants.
      See Also:
    • SERVER_ERROR

      public static final String SERVER_ERROR
      The server met something that stopped it answering.
      See Also:
    • INVALID_CLIENT

      public static final String INVALID_CLIENT
      The client is unknown, or did not authenticate as itself.
      See Also:
    • INVALID_GRANT

      public static final String INVALID_GRANT
      The grant -- an authorization code, a refresh token, a device code -- is not valid, has expired, was used already or was issued to another client.
      See Also:
    • UNAUTHORIZED_CLIENT

      public static final String UNAUTHORIZED_CLIENT
      The client may not use this grant.
      See Also:
    • UNSUPPORTED_GRANT_TYPE

      public static final String UNSUPPORTED_GRANT_TYPE
      The server does not issue tokens for this grant.
      See Also:
    • UNSUPPORTED_RESPONSE_TYPE

      public static final String UNSUPPORTED_RESPONSE_TYPE
      The server does not answer this response type.
      See Also:
    • INVALID_SCOPE

      public static final String INVALID_SCOPE
      A scope asked for is unknown, malformed or more than the client may have.
      See Also:
    • ACCESS_DENIED

      public static final String ACCESS_DENIED
      The user, or the server, refused the request.
      See Also:
    • TEMPORARILY_UNAVAILABLE

      public static final String TEMPORARILY_UNAVAILABLE
      The server cannot answer for now.
      See Also:
    • UNSUPPORTED_TOKEN_TYPE

      public static final String UNSUPPORTED_TOKEN_TYPE
      The token type is one the server does not revoke.
      See Also:
    • AUTHORIZATION_PENDING

      public static final String AUTHORIZATION_PENDING
      RFC 8628: the user has not answered yet; ask again after the interval.
      See Also:
    • SLOW_DOWN

      public static final String SLOW_DOWN
      RFC 8628: the client asks too often; the interval is now five seconds longer.
      See Also:
    • EXPIRED_TOKEN

      public static final String EXPIRED_TOKEN
      RFC 8628: the device code ran out before the user answered.
      See Also:
    • LOGIN_REQUIRED

      public static final String LOGIN_REQUIRED
      OpenID Connect: the user is not signed in and the client cannot show a page.
      See Also:
    • INVALID_REDIRECT_URI

      public static final String INVALID_REDIRECT_URI
      The redirect address is not one the client registered.
      See Also:
    • INVALID_STATE_PARAMETER

      public static final String INVALID_STATE_PARAMETER
      The state that came back is not the one that was sent.
      See Also:
    • AUTHORIZATION_REQUEST_NOT_FOUND

      public static final String AUTHORIZATION_REQUEST_NOT_FOUND
      No request for authorization was waiting for this answer.
      See Also:
    • INVALID_TOKEN_RESPONSE

      public static final String INVALID_TOKEN_RESPONSE
      The identity provider's answer could not be used.
      See Also:
    • INVALID_ID_TOKEN

      public static final String INVALID_ID_TOKEN
      The ID token did not verify.
      See Also:
    • INVALID_NONCE

      public static final String INVALID_NONCE
      The nonce of the ID token is not the one that was sent.
      See Also:
    • INVALID_ISSUER

      public static final String INVALID_ISSUER
      The answer a browser came back with names another issuer than the provider it was sent to, or none where the provider always names one.
      See Also:
    • INVALID_USER_INFO_RESPONSE

      public static final String INVALID_USER_INFO_RESPONSE
      The user's attributes could not be read from the identity provider.
      See Also:
    • INVALID_TARGET

      public static final String INVALID_TARGET
      A resource asked for is not an absolute address, or not one the client may have tokens for (RFC 8707).
      See Also: