PushModeCompletionHandler Class
Handles CIBA push mode token delivery where tokens are sent directly to the client's notification endpoint immediately upon authentication completion. In push mode, tokens are generated, delivered via HTTP POST, and the request is removed from storage - except when the delivery itself fails, which is the one outcome that leaves the record behind.
public class PushModeCompletionHandler : Abblix.Oidc.Server.Features.BackChannelAuthentication.AuthenticationNotifiers.AuthenticationCompletionHandlerInheritance System.Object → AuthenticationCompletionHandler → PushModeCompletionHandler
Constructors
PushModeCompletionHandler(ILogger<PushModeCompletionHandler>, IBackChannelRequestStorage, ISubjectTypeConverter, INotificationDeliveryService, ITokenRequestProcessor, IAuthorizationDetailsPolicy) Constructor
Handles CIBA push mode token delivery where tokens are sent directly to the client's notification endpoint immediately upon authentication completion. In push mode, tokens are generated, delivered via HTTP POST, and the request is removed from storage - except when the delivery itself fails, which is the one outcome that leaves the record behind.
public PushModeCompletionHandler(Microsoft.Extensions.Logging.ILogger<Abblix.Oidc.Server.Features.BackChannelAuthentication.AuthenticationNotifiers.PushModeCompletionHandler> logger, Abblix.Oidc.Server.Features.BackChannelAuthentication.Interfaces.IBackChannelRequestStorage storage, Abblix.Oidc.Server.Features.PairwiseIdentifiers.ISubjectTypeConverter subjectTypeConverter, Abblix.Oidc.Server.Features.BackChannelAuthentication.Interfaces.INotificationDeliveryService notificationService, Abblix.Oidc.Server.Endpoints.Token.Interfaces.ITokenRequestProcessor tokenRequestProcessor, Abblix.Oidc.Server.Features.RichAuthorizationRequests.IAuthorizationDetailsPolicy authorizationDetailsPolicy);Parameters
logger Microsoft.Extensions.Logging.ILogger<PushModeCompletionHandler>
Logger for tracking notification events.
storage IBackChannelRequestStorage
Storage for authentication requests.
subjectTypeConverter ISubjectTypeConverter
Seals a session's subject the way the requesting client sees it, so the end user who authenticated can be compared against the one the request named.
notificationService INotificationDeliveryService
Service for delivering tokens to client endpoint.
tokenRequestProcessor ITokenRequestProcessor
Processor for generating tokens.
authorizationDetailsPolicy IAuthorizationDetailsPolicy
The per-type validators, asked before delivery whether the grant the host completed with is still one the deployment will issue.