From f8bd011d8598ac3b5e70f7bf145d96fe28ce97ce Mon Sep 17 00:00:00 2001 From: Hao Kung Date: Tue, 11 Jun 2019 14:53:32 -0700 Subject: [PATCH] Don't strip amr and auth_time in OIDC by default (#11076) --- .../Authentication/OpenIdConnect/src/OpenIdConnectOptions.cs | 2 -- 1 file changed, 2 deletions(-) diff --git a/src/Security/Authentication/OpenIdConnect/src/OpenIdConnectOptions.cs b/src/Security/Authentication/OpenIdConnect/src/OpenIdConnectOptions.cs index f274760d99..60adf0e0d1 100644 --- a/src/Security/Authentication/OpenIdConnect/src/OpenIdConnectOptions.cs +++ b/src/Security/Authentication/OpenIdConnect/src/OpenIdConnectOptions.cs @@ -48,14 +48,12 @@ namespace Microsoft.AspNetCore.Authentication.OpenIdConnect ClaimActions.DeleteClaim("aud"); ClaimActions.DeleteClaim("azp"); ClaimActions.DeleteClaim("acr"); - ClaimActions.DeleteClaim("amr"); ClaimActions.DeleteClaim("iss"); ClaimActions.DeleteClaim("iat"); ClaimActions.DeleteClaim("nbf"); ClaimActions.DeleteClaim("exp"); ClaimActions.DeleteClaim("at_hash"); ClaimActions.DeleteClaim("c_hash"); - ClaimActions.DeleteClaim("auth_time"); ClaimActions.DeleteClaim("ipaddr"); ClaimActions.DeleteClaim("platf"); ClaimActions.DeleteClaim("ver");