Skip to content

Conversation

huaxia-zhao
Copy link

According to :

https://tools.ietf.org/html/rfc6749#section-2.3.1

 client_secret
       REQUIRED.  The client secret.  The client MAY omit the
       parameter if the client secret is an empty string.

In some cases, like using JWT or other assertion approach as secret, this parameter in request should be removed.

According to :

https://tools.ietf.org/html/rfc6749#section-2.3.1

     client_secret
           REQUIRED.  The client secret.  The client MAY omit the
           parameter if the client secret is an empty string.

In some cases, like using JWT or other assertion approach as secret, this parameter in request should be removed.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants