Develop - #36
Open
kneckinator wants to merge 1169 commits into
Open
Conversation
…only if the request is sent with correct walletId after unlocking the wallet and update some messages in swagger annotation to keep it consistent with api json file Signed-off-by: PuBHARGAVI <46226958+PuBHARGAVI@users.noreply.github.com>
Changing pom to migrage to maven central
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
* Changing pom to remove execution block Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com> * Changing distributionmanagement Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com> --------- Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
[INJIWEB-1533] update the logic of delete wallet api to reset wallet correctly in different scenarios
Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
…ive data Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
[INJIWEB-1563] modify oAuth success redirect url
Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
[INJIWEB-1563] move auth success redirect config to default profile
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
dsd-8184 fixing docker properties
injiweb-1522 adding google Oauth2 integration document
… if user already exist Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
injiweb-1572 for automation removing need for having picture and name if user already exist
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
[INJIWEB-1572] fixing the issue when update flow come
Signed-off-by: SradhaMohanty5899 <mohantysradha10@gmail.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
Signed-off-by: Gurpreet41082 <gurpreet.kaur@thoughtworks.com>
* [INJIWEB-1891] Added logic to derive token_endpoint field internally in mimoto Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1891] Addressed review comments and amended the readMe Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1891] Removed extra values from mimoto-issuer-config json Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
… 13 and v1 versions ref #555 (#1074) * feat(openid4vci): Add implementation for parsing well known for both versions part of #555 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * refactor: Fix validation, serialization, and test coverage for well-known response DTOs and parsers part of #555 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * Decouple version-specific well-known DTOs into draft13/v1 packages ref #555, use objectmapper for map Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): Add internal classes for Logo and Background Image Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): Remove redundant null checks and update test case Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): add version to CredentialIssuerWellKnownResponse Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
…part of #555 (#1076) * feat(openid4vci): Add factory implementation for downloading credential from issuer and support draft 13 part of #555 Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * feat(openid4vci): Addressed comments, removed CredentialRequestService Interface, updated tests Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * feat(openid4vci): remove private method description from Draft13VCDownloadHandler Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * rebased, addressed comments, added tests Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * feat(openid4vci): Refactor get Credential Well Known response, update test cases Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): update Credentialmetadata object with claims and update credentialdefinition to null Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): update credentialdefinition to unassigned Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com>
…nID4VP (#1073) * INJIWEB-1887 added error execption for Invalid transaction data in OpenID4VP Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Added payload error exception Signed-off-by: Madhuravas reddy <madhu@mosip.io> * removed call name to keep existing parameter Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Added test cases to cover toOpenId4VpException method Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Refactor OpenID4VPService: rename toOpenId4VpException to openId4VPErrorException and make it private Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io>
…inji-web #568 (#1079) * feat(openid4vci): add implementation for v1 spec vc download Add test cases Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * fix V1 credential request: add proofs JSON mapping, guard blank nonce endpoint on retry Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): Split wellknown validator into Draft13 and V1 variants with version-specific ldp_vc validation and List<Map> claims type Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): Add Error Response handling for Credential Endpoint Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): remove temporary code for mock service part of inji-web #568 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): remove unuse imports inji-web #568 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): remove unuse imports inji-web #568 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): update logs inji-web #568 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
* docs(mimoto) Updated the documentation to have error codes and added details in google integration doc Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * docs(mimoto) Addressed code rabbit formatting changes Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
…#1090) * [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching * [INJIWEB-1856] - Add Logic for Algorithm Check * [INJIWEB-1856] - Add logic to resolve publicClaims and sdClaims in api response * [INJIWEB-1856] - Remove metadata keys from public claims * [INJIWEB-1856] - Add null handling scenarios, claims generation logic * [INJIWEB-1856] - Add logic to handle nested sdClaims # Conflicts: # src/main/java/io/mosip/mimoto/service/impl/VcSdJwtCredentialFormatHandler.java * [INJIWEB-1856] - Add Junit Test cases * [INJIWEB-1856] - Update description for claims attribute Update logic for sdClaims update Test cases for sdClaims * [INJIWEB-1856] - Refactor Matches Format logic Remove hardcoded testdata * [INJIWEB-1856] - Code refactoring and update test cases * [INJIWEB-1856] - Update to Constructor Injection replacing Autowired --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com>
…rt in Inji web wallet (#1075) * docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet Signed-off-by: jackjain <jackjain1995@gmail.com> * docs(vci): fix lint error on markdown, add placeholders instead of actual credential data, fix interface texts Signed-off-by: jackjain <jackjain1995@gmail.com> * docs(vci): update v1 VCDownloadHandler class Signed-off-by: jackjain <jackjain1995@gmail.com> * docs(vci): update the design to process only first credential received from the issuer since wallet supports only single proof Signed-off-by: jackjain <jackjain1995@gmail.com> * docs(vci): fix grammar issues Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: jackjain <jackjain1995@gmail.com> Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com>
Signed-off-by: Abhi <abhishek.shankarcs@gmail.com>
[MOSIP-37808] Updated DB attributes for mimoto
* feat: add spec_version to Verifier - This field indicates the specification version currently followed by the Verifier. - The default value for this field will be v1 Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> * docs: udpate docs for /verifier api Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> --------- Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com>
…#1089) * injiweb-1855-sd-jwt-ovp add SD-JWT OVP credential presentation with selective disclosure support and fix misleading missingClaims response Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * injiweb-1855-sd-jwt-ovp address CR comments — per-format signers, input mutation, typo fix, and test correctness Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * injiweb-1855-sd-jwt-ovp address CR comments — alg advertisement, containsKey guard, unchecked cast Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * feat(openid4vp): support dc+sd-jwt, per-credential SD-JWT signing, & share no disclosures when selectedSdClaims empty Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * docs(openid4vp): harden presentation rejection request schema in API spec Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * refactor(openid4vp): sign each VP token format with its own signer Signed-off-by: cyber-titan <saiabhi2309@gmail.com> --------- Signed-off-by: cyber-titan <saiabhi2309@gmail.com>
* feat(dpop): add v2 token endpoint that passes the AS error through as-is
Add POST /v2/get-token/{issuer} so the wallet's DPoP (RFC 9449) token
exchange via the mimoto proxy receives the authorization server response
untouched:
- Accept an optional DPoP request header and forward it to the AS token
endpoint.
- Return the AS response as a raw ResponseEntity<String>, passing the
status, body and headers (including DPoP-Nonce and WWW-Authenticate)
through as-is on both success and error, so a use_dpop_nonce challenge
reaches the wallet for the nonce retry.
- The existing v1 endpoint behaviour is unchanged.
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* fix: add NoArgsConstructor to CredentialIssuerConfiguration and explicit PathVariable name in IdpController to fix failing tests
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* fix: strip Transfer-Encoding header in getTokenV2 response
Copying upstream response headers including Transfer-Encoding: chunked
caused double chunked encoding when Tomcat also applied its own chunked
encoding, resulting in HTTP 502 from reverse proxies.
Filter out Transfer-Encoding from forwarded headers to fix this.
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* fix: strip all hop-by-hop headers in getTokenV2 response
Per RFC 7230, hop-by-hop headers (Transfer-Encoding, Connection,
Keep-Alive, TE, Trailer, Upgrade, Proxy-Authenticate,
Proxy-Authorization) must not be forwarded by proxies.
Previously only Transfer-Encoding was stripped. Now all hop-by-hop
headers are filtered to be fully RFC-compliant.
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* revert: restore mosip.mimoto.database.hostname property name
Revert inji.mimoto.database.hostname back to mosip.mimoto.database.hostname
to avoid breaking existing production deployments.
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* refactor: extract token response header filtering
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* fix: preserve configured issuer token endpoints
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* fix: keep default config changes scoped to v2 token endpoint
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* fix: address v2 token review comments
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* chore(api-test): bump up api test version to 1.6.0
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
---------
Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com>
* Added ovp 1.0, dcql support Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Remove selectedSdClaims from SubmitPresentationResponse Signed-off-by: Madhuravas reddy <madhu@mosip.io> * pass trusted verifiers into WalletConfig using library defaults Signed-off-by: Madhuravas reddy <madhu@mosip.io> * resolved claim_sets issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> * restore method comments in WalletPresentationServiceImpl Signed-off-by: Madhuravas reddy <madhu@mosip.io> * test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Updated the postman collection Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved code rabbit review comments Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp Signed-off-by: Madhuravas reddy <madhu@mosip.io> * build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * disclose only queried SD claims in DCQL VP response Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: detect DCQL VP requests from dcql_query in authorization request Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Fixed build failure issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Removed OVP-0.8.0-Mimoto-Changes.md file Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor(openid4vp): address PR review feedback for OVP 1.0 support Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: use StringUtils.isBlank in credential matching validation Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io>
…1105) Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
* Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys Signed-off-by: Madhuravas reddy <madhu@mosip.io> * changed to gpgupdate-masterj21 branch for kattu Signed-off-by: Madhuravas reddy <madhu@mosip.io> * changed to gpgupdate-masterj21 branch for kattu Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Added maven-sonar-analysis-new.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> * updated push-trigger.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> * updated push-trigger.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io>
* fix: align Maven and CI license metadata with Apache 2.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: align Maven and CI license metadata with Apache 2.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: align Maven and CI license metadata with Apache 2.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io>
* MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability Signed-off-by: Mrudula <mrudula.c@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability Signed-off-by: Mrudula <mrudula.c@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability Signed-off-by: Mrudula <mrudula.c@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability Signed-off-by: Mrudula <mrudula.c@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability Signed-off-by: Mrudula <mrudula.c@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1865] Modified the formatValue function (#1041) * [INJIWEB-1865] Modified the formatValue function to enable Multilang support Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1865] updated the existing tests Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1865] Added the constants to seperate file Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1865] Update the constants for older tests Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJWEB-1865] Keeping the language compatibility for sd-jwts as well Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1865] removed the unused direction constants Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * INJIWEB-1863 - add logic for multi-language support (#1043) * test: update CredentialPDFGeneratorService unit tests for changed logic Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * fix: apply selected locale for PDF title and add tests Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * INJIWEB-1863 - Update attribute names revert pom.xml Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * INJIWEB-1863 removed displaylist Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> --------- Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIEB-1870] - Sync release to develop (#1049) * [INJIWEB-1823] Add docs for SVG Rendering and Claim169 QR Code support (#1034) * [INJIWEB-1823] Add integration guide doc for svg rendering Signed-off-by: jackjain <jackjain1995@gmail.com> * [INJIWEB-1823] Add Claim169 support documentation Signed-off-by: jackjain <jackjain1995@gmail.com> * [INJIWEB-1823] Fix issues with SVG rendering documentation Signed-off-by: jackjain <jackjain1995@gmail.com> * [INJIWEB-1823] Fix typos and add additional clarification for ambiguous steps Signed-off-by: jackjain <jackjain1995@gmail.com> * [INJIWEB-1823] fix issues with sequence diagrams and flow explanations Signed-off-by: jackjain <jackjain1995@gmail.com> * [INJIWEB-1823] Rephrase the inji-vc-render PDF conversion flow text Signed-off-by: jackjain <jackjain1995@gmail.com> --------- Signed-off-by: jackjain <jackjain1995@gmail.com> Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1823] Remove unused constants, org changes in pom.xml and remove unnecessary handling of context field as string (#1030) * [INJIWEB-1841] update org name from mosip to inji in repo URLs and artifact ID Signed-off-by: jackjain <jackjain1995@gmail.com> * [INJIWEB-1841] Remove unused AES constant field and replace private constructor with lombok annotation Signed-off-by: jackjain <jackjain1995@gmail.com> * [INJIWEB-1841] Remove handling for context as string during ldp_vc v2 context check Signed-off-by: jackjain <jackjain1995@gmail.com> --------- Signed-off-by: jackjain <jackjain1995@gmail.com> Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1819] - Add claim169 extraction logic (#1003) (#1017) * [INJIWEB-1819] - Add claim169 extraction logic (#1003) * [INJIWEB-1819] - Add claim169 extraction logic Add test cases for possible scenarios of claim 169 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1819] - Rename variable and remove unnecessary string initialization Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1819] - Replace multiple test cases into single parameterised test case Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1819] - Remove identityqr hardcode, update test case Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1831] - Add DB upgrade and rollback scripts, Update ovp jar version (#1007) * [INJIWEB-1831] - Add placeholder upgrade and rollback scripts Update ovp jar version Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1831] - Update ovp jar version Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1831] - Update ovp jar version Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1831] - Update ovp jar version Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1831] - Fix Script Name Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1870] Upgrade the mimoto version to 0.22.0-SNAPSHOT Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1823] removed the corresponding test of handling for context as string during ldp_vc v2 context check Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1823] updated inji-vc-renderer jar to 0.2.0 Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1870] test file conflict resolution error fixed Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> --------- Signed-off-by: jackjain <jackjain1995@gmail.com> Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Co-authored-by: Jack <jackjain1995@gmail.com> Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1861] Fixing SonarCloud reliability issues in mimoto (#1053) * [INJIWEB-1861] Field injection to constructor injection and removal of unsused imports - trial files Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJWEB-1861] Access modifier change Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1861] Fixing SonarCloud reliability issues in mimoto (#1056) * [INJIWEB-1861] Added constructor injection for the CONTROLLER files Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1861] Added constructor injection for the SERVICE files Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1861] reused SecureRandom instance as a static final field Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1861] removed the redundant word 'image' from alt attribute Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1861] Addressed code rabbit comments Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1861] Used static string for alt attribute in credential template Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * injiweb-1871-mimoto-coverage added coverage for above 80% (#1054) * injiweb-1871-mimoto-coverage added coverage for above 80% Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * injiweb-1871-mimoto-coverage fixed code rabbit comments Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * injiweb-1871-mimoto-coverage fixed code rabbit comments Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * injiweb-1871-mimoto-coverage fixed credentialShare & pdfGen tests Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * injiweb-1871-mimoto-coverage changed context to list type Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * injiweb-1871-mimoto-coverage rebased changes Signed-off-by: cyber-titan <saiabhi2309@gmail.com> --------- Signed-off-by: cyber-titan <saiabhi2309@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * MOSIP-41353: Remove unused config files and properties in MIMOTO module. (#1044) * MOSIP-41353 Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> * MOSIP-41353 Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> * MOSIP-41353 Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> * MOSIP-41353 Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> * MOSIP-41353 Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> * MOSIP-41353 Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> --------- Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1861] Refactored reflection tests to use mocking (#1057) * [INJIWEB-1861] Refactored reflection tests and addressed review comments Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1861] addressed nitpick test comments Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * MOSIP-44720 New Get Isssuer V2 API automation (#1061) * MOSIP-44720 New Get Isssuer V2 API automation Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com> * MOSIP-44720 New Get Isssuer V2 API automation Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com> * MOSIP-44720 New Get Isssuer V2 API automation Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com> * MOSIP-44720 New Get Isssuer V2 API automation Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com> --------- Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1873] - Update Verifier Validation parameters to client id and response uris (#1055) * [INJIWEB-1873] - Update Verifier Validation parameters to client id and response uris update logic to consider redirect_uri from post api response update test cases Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1873] - Add redirect uri fallback and update test cases Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * MOSIP-44432:resloved the coderabbit comments Signed-off-by: Mrudula <mrudula.c@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * INJIWEB-1890 Update docker image tag and add missing config (#1062) Signed-off-by: Madhuravas reddy <madhu@mosip.io> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1888] - update LogoDTO properties (#1063) Add Test cases in IssuersController Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1873] - Add Conditional Validation for verifier, bring back fall back redirect logic in case of response_mode is not direct_post (#1064) * [INJIWEB-1873] - Add conditional validation for verifer Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1873] - bring back fallback logic for building direct uri incase of response mode is not direct_post Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1873] - Add Optional logic for responseUris and redirecturis Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1435] - Add fallback logic to use Credential issuer host as authorization server (#1058) Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1891] - Removed unused config from issuers config (#1066) * [INJIWEB-1891] - Removed unused config from issuers config Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1891] - Replace Config with Mock ID usecase Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1891] - Update Token endpoint Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * [INJIWEB-1891] - Update Token endpoint in local setup Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1883] - Update library versions to inji in pom xml (#1067) Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1891] Derive token_endpoint field internally in mimoto (#1065) * [INJIWEB-1891] Added logic to derive token_endpoint field internally in mimoto Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1891] Addressed review comments and amended the readMe Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * [INJIWEB-1891] Removed extra values from mimoto-issuer-config json Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * feat(openid4vci): Add implementation for parsing well known for draft 13 and v1 versions ref #555 (#1074) * feat(openid4vci): Add implementation for parsing well known for both versions part of #555 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * refactor: Fix validation, serialization, and test coverage for well-known response DTOs and parsers part of #555 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * Decouple version-specific well-known DTOs into draft13/v1 packages ref #555, use objectmapper for map Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): Add internal classes for Logo and Background Image Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): Remove redundant null checks and update test case Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): add version to CredentialIssuerWellKnownResponse Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * feat(openid4vci): Add factory implementation for credential download part of #555 (#1076) * feat(openid4vci): Add factory implementation for downloading credential from issuer and support draft 13 part of #555 Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * feat(openid4vci): Addressed comments, removed CredentialRequestService Interface, updated tests Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * feat(openid4vci): remove private method description from Draft13VCDownloadHandler Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * rebased, addressed comments, added tests Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * feat(openid4vci): Refactor get Credential Well Known response, update test cases Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): update Credentialmetadata object with claims and update credentialdefinition to null Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): update credentialdefinition to unassigned Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * MOSIP-44709 (#1069) Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1883] Update the deployment variables used to fetch database hostname and port (#1071) (#1080) Signed-off-by: jackjain <jackjain1995@gmail.com> Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Co-authored-by: Jack <jackjain1995@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * fix(inji-web): add error handling for invalid transaction data in OpenID4VP (#1073) * INJIWEB-1887 added error execption for Invalid transaction data in OpenID4VP Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Added payload error exception Signed-off-by: Madhuravas reddy <madhu@mosip.io> * removed call name to keep existing parameter Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Added test cases to cover toOpenId4VpException method Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Refactor OpenID4VPService: rename toOpenId4VpException to openId4VPErrorException and make it private Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * feat(openid4vci): add implementation for v1 spec vc download part of inji-web #568 (#1079) * feat(openid4vci): add implementation for v1 spec vc download Add test cases Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * fix V1 credential request: add proofs JSON mapping, guard blank nonce endpoint on retry Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): Split wellknown validator into Draft13 and V1 variants with version-specific ldp_vc validation and List<Map> claims type Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): Add Error Response handling for Credential Endpoint Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): remove temporary code for mock service part of inji-web #568 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): remove unuse imports inji-web #568 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): remove unuse imports inji-web #568 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> * feat(openid4vci): update logs inji-web #568 Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * docs(mimoto) - technical design documentation update (#1081) * docs(mimoto) Updated the documentation to have error codes and added details in google integration doc Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> * docs(mimoto) Addressed code rabbit formatting changes Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> --------- Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * fix(issuers-config): Revert Issuers V1 Endpoint attributes (#1085) Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching (#1038) (#1090) * [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching * [INJIWEB-1856] - Add Logic for Algorithm Check * [INJIWEB-1856] - Add logic to resolve publicClaims and sdClaims in api response * [INJIWEB-1856] - Remove metadata keys from public claims * [INJIWEB-1856] - Add null handling scenarios, claims generation logic * [INJIWEB-1856] - Add logic to handle nested sdClaims # Conflicts: # src/main/java/io/mosip/mimoto/service/impl/VcSdJwtCredentialFormatHandler.java * [INJIWEB-1856] - Add Junit Test cases * [INJIWEB-1856] - Update description for claims attribute Update logic for sdClaims update Test cases for sdClaims * [INJIWEB-1856] - Refactor Matches Format logic Remove hardcoded testdata * [INJIWEB-1856] - Code refactoring and update test cases * [INJIWEB-1856] - Update to Constructor Injection replacing Autowired --------- Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * fix(openid4vci): update get credential for v1 vcresponse (#1091) Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet (#1075) * docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet Signed-off-by: jackjain <jackjain1995@gmail.com> * docs(vci): fix lint error on markdown, add placeholders instead of actual credential data, fix interface texts Signed-off-by: jackjain <jackjain1995@gmail.com> * docs(vci): update v1 VCDownloadHandler class Signed-off-by: jackjain <jackjain1995@gmail.com> * docs(vci): update the design to process only first credential received from the issuer since wallet supports only single proof Signed-off-by: jackjain <jackjain1995@gmail.com> * docs(vci): fix grammar issues Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> --------- Signed-off-by: jackjain <jackjain1995@gmail.com> Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [MOSIP-37808] Updated DB attributes for mimoto Signed-off-by: Abhi <abhishek.shankarcs@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * feat: add spec_version to Verifier (#1093) * feat: add spec_version to Verifier - This field indicates the specification version currently followed by the Verifier. - The default value for this field will be v1 Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> * docs: udpate docs for /verifier api Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> --------- Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * feat(openid4vp): present SD-JWT credentials with selective disclosure (#1089) * injiweb-1855-sd-jwt-ovp add SD-JWT OVP credential presentation with selective disclosure support and fix misleading missingClaims response Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * injiweb-1855-sd-jwt-ovp address CR comments — per-format signers, input mutation, typo fix, and test correctness Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * injiweb-1855-sd-jwt-ovp address CR comments — alg advertisement, containsKey guard, unchecked cast Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * feat(openid4vp): support dc+sd-jwt, per-credential SD-JWT signing, & share no disclosures when selectedSdClaims empty Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * docs(openid4vp): harden presentation rejection request schema in API spec Signed-off-by: cyber-titan <saiabhi2309@gmail.com> * refactor(openid4vp): sign each VP token format with its own signer Signed-off-by: cyber-titan <saiabhi2309@gmail.com> --------- Signed-off-by: cyber-titan <saiabhi2309@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * feat(dpop): add v2 token endpoint with DPoP header passthrough (#1097) * feat(dpop): add v2 token endpoint that passes the AS error through as-is Add POST /v2/get-token/{issuer} so the wallet's DPoP (RFC 9449) token exchange via the mimoto proxy receives the authorization server response untouched: - Accept an optional DPoP request header and forward it to the AS token endpoint. - Return the AS response as a raw ResponseEntity<String>, passing the status, body and headers (including DPoP-Nonce and WWW-Authenticate) through as-is on both success and error, so a use_dpop_nonce challenge reaches the wallet for the nonce retry. - The existing v1 endpoint behaviour is unchanged. Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> * fix: add NoArgsConstructor to CredentialIssuerConfiguration and explicit PathVariable name in IdpController to fix failing tests Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> * fix: strip Transfer-Encoding header in getTokenV2 response Copying upstream response headers including Transfer-Encoding: chunked caused double chunked encoding when Tomcat also applied its own chunked encoding, resulting in HTTP 502 from reverse proxies. Filter out Transfer-Encoding from forwarded headers to fix this. Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> * fix: strip all hop-by-hop headers in getTokenV2 response Per RFC 7230, hop-by-hop headers (Transfer-Encoding, Connection, Keep-Alive, TE, Trailer, Upgrade, Proxy-Authenticate, Proxy-Authorization) must not be forwarded by proxies. Previously only Transfer-Encoding was stripped. Now all hop-by-hop headers are filtered to be fully RFC-compliant. Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> * revert: restore mosip.mimoto.database.hostname property name Revert inji.mimoto.database.hostname back to mosip.mimoto.database.hostname to avoid breaking existing production deployments. Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> * refactor: extract token response header filtering Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> * fix: preserve configured issuer token endpoints Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> * fix: keep default config changes scoped to v2 token endpoint Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> * fix: address v2 token review comments Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> * chore(api-test): bump up api test version to 1.6.0 Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> --------- Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * feat(openid4vp): add OVP 1.0 DCQL wallet presentation support (#1096) * Added ovp 1.0, dcql support Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Remove selectedSdClaims from SubmitPresentationResponse Signed-off-by: Madhuravas reddy <madhu@mosip.io> * pass trusted verifiers into WalletConfig using library defaults Signed-off-by: Madhuravas reddy <madhu@mosip.io> * resolved claim_sets issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> * restore method comments in WalletPresentationServiceImpl Signed-off-by: Madhuravas reddy <madhu@mosip.io> * test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Updated the postman collection Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved code rabbit review comments Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp Signed-off-by: Madhuravas reddy <madhu@mosip.io> * build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * disclose only queried SD claims in DCQL VP response Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: detect DCQL VP requests from dcql_query in authorization request Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Fixed build failure issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Removed OVP-0.8.0-Mimoto-Changes.md file Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor(openid4vp): address PR review feedback for OVP 1.0 support Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: use StringUtils.isBlank in credential matching validation Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * [inji/inji-wallet#2539] Replace MPL License with Apache License 2.0 (#1105) Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys (#1107) * Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys Signed-off-by: Madhuravas reddy <madhu@mosip.io> * changed to gpgupdate-masterj21 branch for kattu Signed-off-by: Madhuravas reddy <madhu@mosip.io> * changed to gpgupdate-masterj21 branch for kattu Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Added maven-sonar-analysis-new.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> * updated push-trigger.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> * updated push-trigger.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * fix: align Maven and CI license metadata with Apache 2.0 (#1110) * fix: align Maven and CI license metadata with Apache 2.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: align Maven and CI license metadata with Apache 2.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: align Maven and CI license metadata with Apache 2.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * Update InjiVerifyVpRequest test case Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * Add acceptVPWithoutHolderProof to InjiVerifyVpRequest template Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * Update InjiVerify VP request to match dev-int-inji dcqlQuery body Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> * Restore clientId input in yml and use {{clientId}} placeholder in hbs Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> --------- Signed-off-by: Mrudula <mrudula.c@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> Signed-off-by: jackjain <jackjain1995@gmail.com> Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: cyber-titan <saiabhi2309@gmail.com> Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com> Signed-off-by: Madhuravas reddy <madhu@mosip.io> Signed-off-by: Abhi <abhishek.shankarcs@gmail.com> Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> Signed-off-by: Mrudu-ch <mrudula.c@cyberpwn.com> Co-authored-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Co-authored-by: Roopa Srinivas <roopa.s@thoughtworks.com> Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local> Co-authored-by: Jack <jackjain1995@gmail.com> Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com> Co-authored-by: cyber-titan <saiabhi2309@gmail.com> Co-authored-by: Sradha Mohanty <mohantysradha10@gmail.com> Co-authored-by: Nitin Hegde <165893206+hegdenitin@users.noreply.github.com> Co-authored-by: Madhuravas reddy <madhu@mosip.io> Co-authored-by: Madhuravas reddy <madhu@inji.io> Co-authored-by: Abhi <abhishek.shankarcs@gmail.com> Co-authored-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> Co-authored-by: abhip2565 <paul.apaul.abhishek.AP@gmail.com> Co-authored-by: Mahesh-Binayak <76687012+Mahesh-Binayak@users.noreply.github.com> Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com>
* feat(datashare): support DCQL alongside PD in Online Sharing OVP flow (#1114) * feat(datashare): support DCQL alongside PD in Online Sharing OVP flow Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor(presentation): simplify DCQL authorize path after review Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved failed test cases issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix(datashare): align DCQL direct_post vp_token with Inji Verify v2 (#1115) Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix(datashare): submit unbound VC for DCQL when holder binding is not required (#1116) Signed-off-by: Madhuravas reddy <madhu@mosip.io> * resolved code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> * resolved code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io>
* feat(openid4vci): add mso_mdoc credential format support for issuance Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * feat(openid4vci): add mso_mdoc credential format support for draft-13 issuance and unit tests Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * fix tests Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * fixed code rabbit comments Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> --------- Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>
* chore: bump up mimoto version to 1.0.0-alpha.1-SNAPSHOT (#1099) * chore: bump up mimoto version to 1.0.0-alpha.1-SNAPSHOT Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> * refactor: update apitest-commons version to 1.6.0 Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> * refactor: udpate version in Charts.ym; Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> * refactor: update version in Chart.yaml Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> * refactor: udpate docker image namespace to injistackqa Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> --------- Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> * [inji/inji-wallet#2539] Replace MPL License with Apache License 2.0 (#1106) Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> * feat(openid4vp): backport OVP 1.0 DCQL support and GPG build fix to release-1.0.x (#1108) * feat(openid4vp): add OVP 1.0 DCQL wallet presentation support (#1096) * Added ovp 1.0, dcql support Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Remove selectedSdClaims from SubmitPresentationResponse Signed-off-by: Madhuravas reddy <madhu@mosip.io> * pass trusted verifiers into WalletConfig using library defaults Signed-off-by: Madhuravas reddy <madhu@mosip.io> * resolved claim_sets issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> * restore method comments in WalletPresentationServiceImpl Signed-off-by: Madhuravas reddy <madhu@mosip.io> * test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Updated the postman collection Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved code rabbit review comments Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp Signed-off-by: Madhuravas reddy <madhu@mosip.io> * build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * disclose only queried SD claims in DCQL VP response Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: detect DCQL VP requests from dcql_query in authorization request Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Fixed build failure issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Removed OVP-0.8.0-Mimoto-Changes.md file Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor(openid4vp): address PR review feedback for OVP 1.0 support Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: use StringUtils.isBlank in credential matching validation Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys (#1107) * Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys Signed-off-by: Madhuravas reddy <madhu@mosip.io> * changed to gpgupdate-masterj21 branch for kattu Signed-off-by: Madhuravas reddy <madhu@mosip.io> * changed to gpgupdate-masterj21 branch for kattu Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Added maven-sonar-analysis-new.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> * updated push-trigger.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> * updated push-trigger.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Handled code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Handled code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Unify VP token signing for LDP_VC and SD-JWT (#1109) * feat(openid4vp): add OVP 1.0 DCQL wallet presentation support (#1096) * Added ovp 1.0, dcql support Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Remove selectedSdClaims from SubmitPresentationResponse Signed-off-by: Madhuravas reddy <madhu@mosip.io> * pass trusted verifiers into WalletConfig using library defaults Signed-off-by: Madhuravas reddy <madhu@mosip.io> * resolved claim_sets issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> * restore method comments in WalletPresentationServiceImpl Signed-off-by: Madhuravas reddy <madhu@mosip.io> * test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Updated the postman collection Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved code rabbit review comments Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp Signed-off-by: Madhuravas reddy <madhu@mosip.io> * build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0 Signed-off-by: Madhuravas reddy <madhu@mosip.io> * disclose only queried SD claims in DCQL VP response Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: detect DCQL VP requests from dcql_query in authorization request Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Fixed build failure issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Removed OVP-0.8.0-Mimoto-Changes.md file Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor(openid4vp): address PR review feedback for OVP 1.0 support Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor: use StringUtils.isBlank in credential matching validation Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys (#1107) * Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys Signed-off-by: Madhuravas reddy <madhu@mosip.io> * changed to gpgupdate-masterj21 branch for kattu Signed-off-by: Madhuravas reddy <madhu@mosip.io> * changed to gpgupdate-masterj21 branch for kattu Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Added maven-sonar-analysis-new.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> * updated push-trigger.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> * updated push-trigger.yml Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Handled code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Handled code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: recognize EdDSA alias in SigningAlgorithm Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Unify VP token signing for LDP_VC and SD-JWT Signed-off-by: Madhuravas reddy <madhu@mosip.io> * removed EDDSA Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved build failuer issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix: align Maven and CI license metadata with Apache 2.0 (#1110) (#1111) * fix: align Maven and CI license metadata with Apache 2.0 * fix: align Maven and CI license metadata with Apache 2.0 * fix: align Maven and CI license metadata with Apache 2.0 --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Data share with dcql (#1118) * feat(datashare): support DCQL alongside PD in Online Sharing OVP flow (#1114) * feat(datashare): support DCQL alongside PD in Online Sharing OVP flow Signed-off-by: Madhuravas reddy <madhu@mosip.io> * refactor(presentation): simplify DCQL authorize path after review Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Resolved failed test cases issue Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix(datashare): align DCQL direct_post vp_token with Inji Verify v2 (#1115) Signed-off-by: Madhuravas reddy <madhu@mosip.io> * fix(datashare): submit unbound VC for DCQL when holder binding is not required (#1116) Signed-off-by: Madhuravas reddy <madhu@mosip.io> * resolved code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> * resolved code rabbit reviews Signed-off-by: Madhuravas reddy <madhu@mosip.io> --------- Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Feature/inji verify vp request test (#1113) (#1119) * MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability * MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability * MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability * MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability * MOSIP-44432:Mimoto -Update the test case descriptions to improve clarity and readability * [INJIWEB-1865] Modified the formatValue function (#1041) * [INJIWEB-1865] Modified the formatValue function to enable Multilang support * [INJIWEB-1865] updated the existing tests * [INJIWEB-1865] Added the constants to seperate file * [INJIWEB-1865] Update the constants for older tests * [INJWEB-1865] Keeping the language compatibility for sd-jwts as well * [INJIWEB-1865] removed the unused direction constants --------- * INJIWEB-1863 - add logic for multi-language support (#1043) * test: update CredentialPDFGeneratorService unit tests for changed logic * fix: apply selected locale for PDF title and add tests * INJIWEB-1863 - Update attribute names revert pom.xml * INJIWEB-1863 removed displaylist --------- * [INJIEB-1870] - Sync release to develop (#1049) * [INJIWEB-1823] Add docs for SVG Rendering and Claim169 QR Code support (#1034) * [INJIWEB-1823] Add integration guide doc for svg rendering * [INJIWEB-1823] Add Claim169 support documentation * [INJIWEB-1823] Fix issues with SVG rendering documentation * [INJIWEB-1823] Fix typos and add additional clarification for ambiguous steps * [INJIWEB-1823] fix issues with sequence diagrams and flow explanations * [INJIWEB-1823] Rephrase the inji-vc-render PDF conversion flow text --------- * [INJIWEB-1823] Remove unused constants, org changes in pom.xml and remove unnecessary handling of context field as string (#1030) * [INJIWEB-1841] update org name from mosip to inji in repo URLs and artifact ID * [INJIWEB-1841] Remove unused AES constant field and replace private constructor with lombok annotation * [INJIWEB-1841] Remove handling for context as string during ldp_vc v2 context check --------- * [INJIWEB-1819] - Add claim169 extraction logic (#1003) (#1017) * [INJIWEB-1819] - Add claim169 extraction logic (#1003) * [INJIWEB-1819] - Add claim169 extraction logic Add test cases for possible scenarios of claim 169 * [INJIWEB-1819] - Rename variable and remove unnecessary string initialization * [INJIWEB-1819] - Replace multiple test cases into single parameterised test case --------- * [INJIWEB-1819] - Remove identityqr hardcode, update test case --------- * [INJIWEB-1831] - Add DB upgrade and rollback scripts, Update ovp jar version (#1007) * [INJIWEB-1831] - Add placeholder upgrade and rollback scripts Update ovp jar version * [INJIWEB-1831] - Update ovp jar version * [INJIWEB-1831] - Update ovp jar version * [INJIWEB-1831] - Update ovp jar version * [INJIWEB-1831] - Fix Script Name --------- * [INJIWEB-1870] Upgrade the mimoto version to 0.22.0-SNAPSHOT * [INJIWEB-1823] removed the corresponding test of handling for context as string during ldp_vc v2 context check * [INJIWEB-1823] updated inji-vc-renderer jar to 0.2.0 * [INJIWEB-1870] test file conflict resolution error fixed --------- * [INJIWEB-1861] Fixing SonarCloud reliability issues in mimoto (#1053) * [INJIWEB-1861] Field injection to constructor injection and removal of unsused imports - trial files * [INJWEB-1861] Access modifier change --------- * [INJIWEB-1861] Fixing SonarCloud reliability issues in mimoto (#1056) * [INJIWEB-1861] Added constructor injection for the CONTROLLER files * [INJIWEB-1861] Added constructor injection for the SERVICE files * [INJIWEB-1861] reused SecureRandom instance as a static final field * [INJIWEB-1861] removed the redundant word 'image' from alt attribute * [INJIWEB-1861] Addressed code rabbit comments * [INJIWEB-1861] Used static string for alt attribute in credential template --------- * injiweb-1871-mimoto-coverage added coverage for above 80% (#1054) * injiweb-1871-mimoto-coverage added coverage for above 80% * injiweb-1871-mimoto-coverage fixed code rabbit comments * injiweb-1871-mimoto-coverage fixed code rabbit comments * injiweb-1871-mimoto-coverage fixed credentialShare & pdfGen tests * injiweb-1871-mimoto-coverage changed context to list type * injiweb-1871-mimoto-coverage rebased changes --------- * MOSIP-41353: Remove unused config files and properties in MIMOTO module. (#1044) * MOSIP-41353 * MOSIP-41353 * MOSIP-41353 * MOSIP-41353 * MOSIP-41353 * MOSIP-41353 --------- * [INJIWEB-1861] Refactored reflection tests to use mocking (#1057) * [INJIWEB-1861] Refactored reflection tests and addressed review comments * [INJIWEB-1861] addressed nitpick test comments --------- * MOSIP-44720 New Get Isssuer V2 API automation (#1061) * MOSIP-44720 New Get Isssuer V2 API automation * MOSIP-44720 New Get Isssuer V2 API automation * MOSIP-44720 New Get Isssuer V2 API automation * MOSIP-44720 New Get Isssuer V2 API automation --------- * [INJIWEB-1873] - Update Verifier Validation parameters to client id and response uris (#1055) * [INJIWEB-1873] - Update Verifier Validation parameters to client id and response uris update logic to consider redirect_uri from post api response update test cases * [INJIWEB-1873] - Add redirect uri fallback and update test cases --------- * MOSIP-44432:resloved the coderabbit comments * INJIWEB-1890 Update docker image tag and add missing config (#1062) * [INJIWEB-1888] - update LogoDTO properties (#1063) Add Test cases in IssuersController * [INJIWEB-1873] - Add Conditional Validation for verifier, bring back fall back redirect logic in case of response_mode is not direct_post (#1064) * [INJIWEB-1873] - Add conditional validation for verifer * [INJIWEB-1873] - bring back fallback logic for building direct uri incase of response mode is not direct_post * [INJIWEB-1873] - Add Optional logic for responseUris and redirecturis --------- * [INJIWEB-1435] - Add fallback logic to use Credential issuer host as authorization server (#1058) * [INJIWEB-1891] - Removed unused config from issuers config (#1066) * [INJIWEB-1891] - Removed unused config from issuers config * [INJIWEB-1891] - Replace Config with Mock ID usecase * [INJIWEB-1891] - Update Token endpoint * [INJIWEB-1891] - Update Token endpoint in local setup --------- * [INJIWEB-1883] - Update library versions to inji in pom xml (#1067) * [INJIWEB-1891] Derive token_endpoint field internally in mimoto (#1065) * [INJIWEB-1891] Added logic to derive token_endpoint field internally in mimoto * [INJIWEB-1891] Addressed review comments and amended the readMe * [INJIWEB-1891] Removed extra values from mimoto-issuer-config json --------- * feat(openid4vci): Add implementation for parsing well known for draft 13 and v1 versions ref #555 (#1074) * feat(openid4vci): Add implementation for parsing well known for both versions part of #555 * refactor: Fix validation, serialization, and test coverage for well-known response DTOs and parsers part of #555 * Decouple version-specific well-known DTOs into draft13/v1 packages ref #555, use objectmapper for map * feat(openid4vci): Add internal classes for Logo and Background Image * feat(openid4vci): Remove redundant null checks and update test case * feat(openid4vci): add version to CredentialIssuerWellKnownResponse --------- * feat(openid4vci): Add factory implementation for credential download part of #555 (#1076) * feat(openid4vci): Add factory implementation for downloading credential from issuer and support draft 13 part of #555 * feat(openid4vci): Addressed comments, removed CredentialRequestService Interface, updated tests * feat(openid4vci): remove private method description from Draft13VCDownloadHandler * rebased, addressed comments, added tests * feat(openid4vci): Refactor get Credential Well Known response, update test cases * feat(openid4vci): update Credentialmetadata object with claims and update credentialdefinition to null * feat(openid4vci): update credentialdefinition to unassigned --------- * MOSIP-44709 (#1069) * [INJIWEB-1883] Update the deployment variables used to fetch database hostname and port (#1071) (#1080) * fix(inji-web): add error handling for invalid transaction data in OpenID4VP (#1073) * INJIWEB-1887 added error execption for Invalid transaction data in OpenID4VP * Added payload error exception * removed call name to keep existing parameter * Added test cases to cover toOpenId4VpException method * Refactor OpenID4VPService: rename toOpenId4VpException to openId4VPErrorException and make it private --------- * feat(openid4vci): add implementation for v1 spec vc download part of inji-web #568 (#1079) * feat(openid4vci): add implementation for v1 spec vc download Add test cases * fix V1 credential request: add proofs JSON mapping, guard blank nonce endpoint on retry * feat(openid4vci): Split wellknown validator into Draft13 and V1 variants with version-specific ldp_vc validation and List<Map> claims type * feat(openid4vci): Add Error Response handling for Credential Endpoint * feat(openid4vci): remove temporary code for mock service part of inji-web #568 * feat(openid4vci): remove unuse imports inji-web #568 * feat(openid4vci): remove unuse imports inji-web #568 * feat(openid4vci): update logs inji-web #568 --------- * docs(mimoto) - technical design documentation update (#1081) * docs(mimoto) Updated the documentation to have error codes and added details in google integration doc * docs(mimoto) Addressed code rabbit formatting changes --------- * fix(issuers-config): Revert Issuers V1 Endpoint attributes (#1085) * [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching (#1038) (#1090) * [INJIWEB-1856] - Add Logic for sd-jwt ovp credential matching * [INJIWEB-1856] - Add Logic for Algorithm Check * [INJIWEB-1856] - Add logic to resolve publicClaims and sdClaims in api response * [INJIWEB-1856] - Remove metadata keys from public claims * [INJIWEB-1856] - Add null handling scenarios, claims generation logic * [INJIWEB-1856] - Add logic to handle nested sdClaims # Conflicts: # src/main/java/io/mosip/mimoto/service/impl/VcSdJwtCredentialFormatHandler.java * [INJIWEB-1856] - Add Junit Test cases * [INJIWEB-1856] - Update description for claims attribute Update logic for sdClaims update Test cases for sdClaims * [INJIWEB-1856] - Refactor Matches Format logic Remove hardcoded testdata * [INJIWEB-1856] - Code refactoring and update test cases * [INJIWEB-1856] - Update to Constructor Injection replacing Autowired --------- * fix(openid4vci): update get credential for v1 vcresponse (#1091) * docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet (#1075) * docs(vci): add design document for OpenID4VCI 1.0 specification support in Inji web wallet * docs(vci): fix lint error on markdown, add placeholders instead of actual credential data, fix interface texts * docs(vci): update v1 VCDownloadHandler class * docs(vci): update the design to process only first credential received from the issuer since wallet supports only single proof * docs(vci): fix grammar issues --------- * [MOSIP-37808] Updated DB attributes for mimoto * feat: add spec_version to Verifier (#1093) * feat: add spec_version to Verifier - This field indicates the specification version currently followed by the Verifier. - The default value for this field will be v1 * docs: udpate docs for /verifier api --------- * feat(openid4vp): present SD-JWT credentials with selective disclosure (#1089) * injiweb-1855-sd-jwt-ovp add SD-JWT OVP credential presentation with selective disclosure support and fix misleading missingClaims response * injiweb-1855-sd-jwt-ovp address CR comments — per-format signers, input mutation, typo fix, and test correctness * injiweb-1855-sd-jwt-ovp address CR comments — alg advertisement, containsKey guard, unchecked cast * feat(openid4vp): support dc+sd-jwt, per-credential SD-JWT signing, & share no disclosures when selectedSdClaims empty * docs(openid4vp): harden presentation rejection request schema in API spec * refactor(openid4vp): sign each VP token format with its own signer --------- * feat(dpop): add v2 token endpoint with DPoP header passthrough (#1097) * feat(dpop): add v2 token endpoint that passes the AS error through as-is Add POST /v2/get-token/{issuer} so the wallet's DPoP (RFC 9449) token exchange via the mimoto proxy receives the authorization server response untouched: - Accept an optional DPoP request header and forward it to the AS token endpoint. - Return the AS response as a raw ResponseEntity<String>, passing the status, body and headers (including DPoP-Nonce and WWW-Authenticate) through as-is on both success and error, so a use_dpop_nonce challenge reaches the wallet for the nonce retry. - The existing v1 endpoint behaviour is unchanged. * fix: add NoArgsConstructor to CredentialIssuerConfiguration and explicit PathVariable name in IdpController to fix failing tests * fix: strip Transfer-Encoding header in getTokenV2 response Copying upstream response headers including Transfer-Encoding: chunked caused double chunked encoding when Tomcat also applied its own chunked encoding, resulting in HTTP 502 from reverse proxies. Filter out Transfer-Encoding from forwarded headers to fix this. * fix: strip all hop-by-hop headers in getTokenV2 response Per RFC 7230, hop-by-hop headers (Transfer-Encoding, Connection, Keep-Alive, TE, Trailer, Upgrade, Proxy-Authenticate, Proxy-Authorization) must not be forwarded by proxies. Previously only Transfer-Encoding was stripped. Now all hop-by-hop headers are filtered to be fully RFC-compliant. * revert: restore mosip.mimoto.database.hostname property name Revert inji.mimoto.database.hostname back to mosip.mimoto.database.hostname to avoid breaking existing production deployments. * refactor: extract token response header filtering * fix: preserve configured issuer token endpoints * fix: keep default config changes scoped to v2 token endpoint * fix: address v2 token review comments * chore(api-test): bump up api test version to 1.6.0 --------- * feat(openid4vp): add OVP 1.0 DCQL wallet presentation support (#1096) * Added ovp 1.0, dcql support * Remove selectedSdClaims from SubmitPresentationResponse * pass trusted verifiers into WalletConfig using library defaults * resolved claim_sets issue * restore method comments in WalletPresentationServiceImpl * test: expand unit tests for DCQL, wallet presentation, session, and OpenID4VP services * Resolved code rabbit reviews * Updated the postman collection * Resolved code rabbit review comments * fix: update WalletConfig and VPTokenSigningResult for inji-openid4vp * build: upgrade apitest-commons dependency from 1.5.0-SNAPSHOT to 1.6.0 * refactor: align DCQL matching with inji-openid4vp and OpenID4VP 1.0 * disclose only queried SD claims in DCQL VP response * refactor: detect DCQL VP requests from dcql_query in authorization request * Fixed build failure issue * Removed OVP-0.8.0-Mimoto-Changes.md file * refactor(openid4vp): address PR review feedback for OVP 1.0 support * refactor: use StringUtils.isBlank in credential matching validation --------- * [inji/inji-wallet#2539] Replace MPL License with Apache License 2.0 (#1105) * Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys (#1107) * Pass GPG_PRIVATE_KEY to maven-build and ignore .github/keys * changed to gpgupdate-masterj21 branch for kattu * changed to gpgupdate-masterj21 branch for kattu * Added maven-sonar-analysis-new.yml * updated push-trigger.yml * updated push-trigger.yml --------- * fix: align Maven and CI license metadata with Apache 2.0 (#1110) * fix: align Maven and CI license metadata with Apache 2.0 * fix: align Maven and CI license metadata with Apache 2.0 * fix: align Maven and CI license metadata with Apache 2.0 --------- * Update InjiVerifyVpRequest test case * Add acceptVPWithoutHolderProof to InjiVerifyVpRequest template * Update InjiVerify VP request to match dev-int-inji dcqlQuery body * Restore clientId input in yml and use {{clientId}} placeholder in hbs --------- Signed-off-by: Mrudula <mrudula.c@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> Signed-off-by: jackjain <jackjain1995@gmail.com> Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: cyber-titan <saiabhi2309@gmail.com> Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com> Signed-off-by: Madhuravas reddy <madhu@mosip.io> Signed-off-by: Abhi <abhishek.shankarcs@gmail.com> Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> Signed-off-by: Mrudu-ch <mrudula.c@cyberpwn.com> Co-authored-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Co-authored-by: Roopa Srinivas <roopa.s@thoughtworks.com> Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local> Co-authored-by: Jack <jackjain1995@gmail.com> Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com> Co-authored-by: cyber-titan <saiabhi2309@gmail.com> Co-authored-by: Sradha Mohanty <mohantysradha10@gmail.com> Co-authored-by: Nitin Hegde <165893206+hegdenitin@users.noreply.github.com> Co-authored-by: Madhuravas reddy <madhu@mosip.io> Co-authored-by: Madhuravas reddy <madhu@inji.io> Co-authored-by: Abhi <abhishek.shankarcs@gmail.com> Co-authored-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> Co-authored-by: abhip2565 <paul.apaul.abhishek.AP@gmail.com> Co-authored-by: Mahesh-Binayak <76687012+Mahesh-Binayak@users.noreply.github.com> Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> * Fixes: mosip#373 - Updated push-trigger.yml, chart-lint-publish.yml and clear-artifacts.yml files. (#1120) Signed-off-by: Mohanraj209 <mohan1715@gmail.com> Co-authored-by: Mohanraj209 <mohanraj209@users.noreply.github.com> * Updated workflows with new tags (#1122) Signed-off-by: Madhuravas reddy <madhu@mosip.io> * Add missing 0.21.0-to-0.22.0 and 0.22.0-to-1.0.0 DB upgrade and rollback scripts (#1125) Signed-off-by: Madhuravas reddy <madhu@mosip.io> * [DSD-10669] Make required changes for release. (#1126) Signed-off-by: Swapnil <swapnil.mohanty@technoforte.co.in> * [DSD-10676] inji-web 1.0.0-alpha.1 post release (#1127) Signed-off-by: Prafulrakhade <prafulrakhade02@gmail.com> * Fix compile time error after merge conflicts Signed-off-by: Swati Goel <swati@inji.io> --------- Signed-off-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> Signed-off-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> Signed-off-by: Madhuravas reddy <madhu@mosip.io> Signed-off-by: Mrudula <mrudula.c@cyberpwn.com> Signed-off-by: Mrudula Chinta <mrudula.c@cyberpwn.com> Signed-off-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> Signed-off-by: jackjain <jackjain1995@gmail.com> Signed-off-by: Durgesh Konga <kongadurgesh20@gmail.com> Signed-off-by: cyber-titan <saiabhi2309@gmail.com> Signed-off-by: Sradha Mohanty <mohantysradha10@gmail.com> Signed-off-by: Nitin Hegde <nitin.k@cyberpwn.com> Signed-off-by: Abhi <abhishek.shankarcs@gmail.com> Signed-off-by: abhip2565 <paul.apaul.abhishek.ap@gmail.com> Signed-off-by: Mrudu-ch <mrudula.c@cyberpwn.com> Signed-off-by: Mohanraj209 <mohan1715@gmail.com> Signed-off-by: Swapnil <swapnil.mohanty@technoforte.co.in> Signed-off-by: Prafulrakhade <prafulrakhade02@gmail.com> Signed-off-by: Swati Goel <swati@inji.io> Co-authored-by: KiruthikaJeyashankar <kiruthikavjshankar@gmail.com> Co-authored-by: Mahesh-Binayak <76687012+Mahesh-Binayak@users.noreply.github.com> Co-authored-by: Mahesh-Binayak <Mahesh-Binayak@users.noreply.github.com> Co-authored-by: Madhuravas reddy <madhu@mosip.io> Co-authored-by: Mrudu-ch <mrudula.c@cyberpwn.com> Co-authored-by: Rudhhi Shah <rudhhi.shah@thoughtworks.com> Co-authored-by: Roopa Srinivas <roopa.s@thoughtworks.com> Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local> Co-authored-by: Jack <jackjain1995@gmail.com> Co-authored-by: Durgesh Konga <kongadurgesh20@gmail.com> Co-authored-by: cyber-titan <saiabhi2309@gmail.com> Co-authored-by: Sradha Mohanty <mohantysradha10@gmail.com> Co-authored-by: Nitin Hegde <165893206+hegdenitin@users.noreply.github.com> Co-authored-by: Madhuravas reddy <madhu@inji.io> Co-authored-by: Abhi <abhishek.shankarcs@gmail.com> Co-authored-by: abhip2565 <paul.apaul.abhishek.AP@gmail.com> Co-authored-by: Mohan E <mohanraj1715@gmail.com> Co-authored-by: Mohanraj209 <mohanraj209@users.noreply.github.com> Co-authored-by: Swapnil <swapnil.mohanty@technoforte.co.in> Co-authored-by: Praful Rakhade <prafulrakhade02@gmail.com> Co-authored-by: Swati Goel <swati@inji.io>
…on (#1124) * feat(openid4vp): add mso_mdoc for 1.0 Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * update mdoc util & building MobileDocument to store Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * update to store issuerSigned in db Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * added missing util call Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * add testcases Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * add mdcoUtil tests Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * refactor(openid4vp): use inji-openid4vp alpha.2 with native mso_mdoc support Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * address code rabbit comment Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * resync with upstream/develop Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * update jar versions Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * fix(mdoc): address review comments on signVPTokens and MsoMdocCredentialFormatHandler Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> --------- Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>
Signed-off-by: Madhuravas reddy <madhu@mosip.io>
Signed-off-by: Madhuravas reddy <madhu@mosip.io>
…s, indentation, and correct ordering (#1133) * fix(mdoc): render driving_privileges as indented list items with title case labels and move to end of PDF Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * refactor(mdoc): move CBOR rendering to template and handle both snake_case and camelCase field names Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * remove complex field ordering logic from display properties Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> --------- Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com>
…1129) * docs: enhance Mimoto API documentation with field-level descriptions and structured schemas Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * docs(mimoto) enhance Mimoto API documentation with field-level descriptions and structured schemas Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * docs(mimoto) enhance API documnetation by adding schema and detailed field discriptions Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * fix(mimoto): resolve review comments, add validations, and clean logging Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * fix: resolve validation issue in CredentialShareController and update tests Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * chore: remove tracked keystore files Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * Revert "chore: remove tracked keystore files" This reverts commit 9b06dd3. Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * docs(mimoto): revert unintended gitignore changes Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> * docs(mimoto): add field-level descriptions and structured schemas to OpenAPI documentatio Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * resolve invalid and missing security scheme errors Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * refactor(dto): remove redundant Lombok boilerplate across DTOs and models Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * fix(docs): fix tag definitions, rename tags, and remove invalid endpoints in OpenAPI spec Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> * fix(controller): remove redundant logger field and use imported annotations Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> --------- Signed-off-by: Roopa S <roopas@Roopas-MacBook-Pro.local> Signed-off-by: cyber-titan <chinmai.vemuri@infosys.com> Co-authored-by: Roopa S <roopas@Roopas-MacBook-Pro.local>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
No description provided.