Slide 24
Slide 24 text
@oktaDev | @deepu105 | deepu.tech
OIDC using Authorization Code Grant Flow with PKCE
Authorization request
{
client_id,
response_type=code,
redirect_uri=...,
code_challenge,
scope=’openid,..’,
state, etc,
}
Token request
{
client_id,
code_verifier,
authorization_code,
grant_type=authorization_code,
redirect_uri,
etc
}