From bc0fd83fa7693db7d80ce19825470b3e210753c5 Mon Sep 17 00:00:00 2001 From: Pieter Ennes Date: Sun, 30 Jul 2017 20:45:33 +0100 Subject: Pass through nonce in code flow. --- oauthlib/oauth2/rfc6749/grant_types/openid_connect.py | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/oauthlib/oauth2/rfc6749/grant_types/openid_connect.py b/oauthlib/oauth2/rfc6749/grant_types/openid_connect.py index bdd09b9..a410b02 100644 --- a/oauthlib/oauth2/rfc6749/grant_types/openid_connect.py +++ b/oauthlib/oauth2/rfc6749/grant_types/openid_connect.py @@ -306,6 +306,7 @@ class OpenIDConnectBase(object): request_info = { 'display': request.display, + 'nonce': request.nonce, 'prompt': prompt, 'ui_locales': request.ui_locales.split() if request.ui_locales else [], 'id_token_hint': request.id_token_hint, @@ -336,9 +337,7 @@ class OpenIDConnectBase(object): desc = 'Request is missing mandatory nonce parameter.' raise InvalidRequestError(request=request, description=desc) - self._inflate_claims(request) - - return {'nonce': request.nonce, 'claims': request.claims} + return {} class OpenIDConnectAuthCode(OpenIDConnectBase): -- cgit v1.2.1