Projektet tillhandahåller en enklare POC variant av Behörighetstjänsten. Det är framtagen för att ge intresserade en miljö att göra inledande tester samt bekanta sig med tekniken.
...
Verktyg som curl eller Postman kan användas för att prova att hämta ut en Id-token/Userinfo
Konfigurering | Värde | |
---|---|---|
Grant type |
| |
Auth URL | http https://poc- stb-utv01oidc. 1177inera. i.nogui.se/auth/realms/1177-demo/protocol/openid-connect/auth | |
Access token URL | httphttps://poc-stb-utv01.1177.i.noguioidc.inera.se/auth/realms/1177-demo/protocol/openid-connect/token | |
Userinfo | https://poc-oidc.inera.se/auth/realms/1177-demo/protocol/openid-connect/ | tokenuserinfo |
Client-id | 1177-demopoc | |
Client_secret | 38af2d00 3b5bbdbf- 76ee2c64- 4d364fe9- 94a29c1a- 4adfb264995ebd66a8866502 | |
Användarnamn | se11000000016-1234 | |
Lösenord | qwerty |
Exempel svarsmeddelande: Userinfo
Kodblock | ||||
---|---|---|---|---|
| ||||
{ "sub": "7b338d05a84c4bd5-efbf-105a4cfc-4316-8eb4-b99f462ff4a5a6f1-ce0821ef3d1d", "HealthcareProviderHsaId": "HealthcareProviderHsaId", "authnMethod": "authnMethod", "preferred_username": "se11000000016-1234", "paTitleCode": "paTitleCode", "levelOfAssurance": "levelOfAssurance", "given_name": "Anders", "x509IssuerName": "x509IssuerName", "healthcareProfessionalLicense": "healthcareProfessionalLicense", "systemRole": "systemRole", "employeeHsaId": "SE11000000016-1234", "name": "Anders Andersson", "middleAndSurname": "middleAndSurname", "HealthcareUnitHsaId": "HealthcareUnitHsaId", "HealthcareProviderName": "HealthcareProviderName", "preferredfamily_usernamename": "service-account-1177-arendeAndersson", "authorization_scope": "{ \"authorization scope\": [ { \"attribute\": \"FullAdmin_code\", \"name\": \"FullAdmin\", \"description\": \"Huvudadministratör\", \"organizational_scope\": [ { \"unit\": { \"org-id\": \"SE110000016-1111\", \"name\": \"Enheten Beta\", \"include_units_below\": \"false\" } }, { \"unit\": { \"org-id\": \"SE110000016-2222\", \"name\": \"Enheten cesar\", \"include_units_below\": \"false\" } }, { \"unit\": { \"org-id\": \"SE110000016-3333\", \"name\": \"Enheten david\", \"include_units_below\": \"false\" } } ] }, { \"attribute\": \"DataAdmin\", \"name\": \"FullAdmin\", \"description\": \"Huvudadministratör\", \"organizational_scope\": [ { \"unit\": { \"org-id\": \"SE110000016-1111\", \"name\": \"Enheten Beta\", \"include_units_below\": \"false\" } }, { \"unit\": { \"org-id\": \"SE110000016-2222\", \"name\": \"Enheten cesar\", \"include_units_below\": \"false\" } }, { \"unit\": { \"org-id\": \"SE110000016-3333\", \"name\": \"Enheten david\", \"include_units_below\": \"true\" } } ] } ] }", "email": "servicese11000000016-account1234@inera-1177-arende@placeholdertest.orgse" } |
Se mer information om authorization_scope här: 4. Åtkomstintyg - claims (utkast)