/revoke
Benyttes for å revokere access/refresh tokenet til brukeren.
Spesifikasjoner
JSON Web Token (JWT) Profile for OAuth 2.0 Client Authentication and Authorization Grants (benyttes kun for confidential clients)
Request
POST https://{miljø}/sts/oidcprov/v1/revoke
Mutual TLS kreves hvis klienten er satt opp til å kreve MTLS
Plassering | Navn | Type | Beskrivelse |
---|---|---|---|
Body | client_id | string | Public client: Påkrevd. Benyttes ikke for confidential clients. |
client_assertion_type | string | Påkrevd for confidential clients, skal ha verdien "urn:ietf:params:oauth:client-assertion-type:jwt-bearer". Benyttes ikke for public clients. | |
client_assertion | string | Påkrevd for confidentials clients. Benyttes ikke for public clients. | |
token | string | Hvis man har et refresh_token så skal det sendes inn, hvis ikke så skal access-tokenet sendes inn |
Response - Vellykket
Http Status kode | ||
---|---|---|
200 | OK |
|
Response - Feilet
Plassering | Navn | Verdi |
---|---|---|
Body | error |
|
| error_description |
|
Mulige feilkoder
HTTP-status kode | Feilkode (error) | Beskrivelse |
---|---|---|
400 | invalid_request | The request is missing a required parameter, includes an |
400 | invalid_client | Client authentication failed (e.g., unknown client, no |
400 | unauthorized_client | The authenticated client is not authorized to use this |
400 | unsupported_grant_type | The authorization grant type is not supported by the |
503 | The authorization server is currently unable to handle |