Interface OAuthProfileAwareHttpEndpoint


public interface OAuthProfileAwareHttpEndpoint
Contract for HTTP endpoints that support incoming OAuth bearer-token validation.

Note that the platform-http component does not implement this interface: its oauthProfile support is wired through the platform-http engine SPI (PlatformHttpSecurityHandler) so platform runtimes can install validation in their native HTTP/security layer.

Since:
4.21
  • Method Details

    • getOauthProfile

      String getOauthProfile()
      Gets the configured OAuth profile name.
      Returns:
      the OAuth profile name, or null when OAuth validation is not configured
    • getOauthHttpSecurity

      OAuthHttpSecuritySupport getOauthHttpSecurity()
      Gets the initialized OAuth HTTP security support.
      Returns:
      the support instance, or null before endpoint initialization or when OAuth validation is not configured