Announcement Announcement Module
Collapse
No announcement yet.
How to suspend client for accessing resource when client exist in session. Page Title Module
Move Remove Collapse
X
Conversation Detail Module
Collapse
  • Filter
  • Time
  • Show
Clear All
new posts

  • How to suspend client for accessing resource when client exist in session.

    I have flow to suspend client that had been registered in our system. When system via admin suspend client, client cannot access resource until system activate the client again. I have modify client detail table, adding one field so when OAuth flow process validate client, it will search the client that has status activated = T. It done if the client not exist in security context or session. But how to do this when the client exist in the security context and or session. How to invalidate client session and suspend the client account in the system, so the client cannot access the resource?


    Thanks in advance
    Dimas
    Last edited by Dhiemaz; Mar 24th, 2013, 11:46 PM. Reason: edit thread title

  • #2
    Maybe all you need is a custom ResourceServerTokenServices?

    Note also that unless you need to query by your new field then it isn't necessary to add new fields to the client details table using the standard JDBC implementation - you just add an entry to the additionalinfo field (it's a map).

    Comment

    Working...
    X