From f5f08b215e334af141f5617d9643275c742252bd Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Dominique=20Eifl=C3=A4nder?= Date: Mon, 2 Sep 2024 13:20:19 +0200 Subject: [PATCH] RED-9128: set revoke request token to true when creating a realm --- .../tenantusermanagement/service/TenantManagementService.java | 2 ++ 1 file changed, 2 insertions(+) diff --git a/src/main/java/com/knecon/fforesight/tenantusermanagement/service/TenantManagementService.java b/src/main/java/com/knecon/fforesight/tenantusermanagement/service/TenantManagementService.java index 33563e3..72be697 100644 --- a/src/main/java/com/knecon/fforesight/tenantusermanagement/service/TenantManagementService.java +++ b/src/main/java/com/knecon/fforesight/tenantusermanagement/service/TenantManagementService.java @@ -597,6 +597,8 @@ public class TenantManagementService implements TenantProvider { realm.setAccountTheme(tenantUserManagementProperties.getDefaultTheme()); realm.setAccessTokenLifespan(tenantUserManagementProperties.getAccessTokenLifeSpan()); realm.setSsoSessionIdleTimeout(tenantUserManagementProperties.getSsoSessionIdleTimeout()); + realm.setRevokeRefreshToken(true); + realm.setRefreshTokenMaxReuse(tenantUserManagementProperties.getRefreshTokenMaxReuse()); if (!ObjectUtils.isEmpty(tenantUserManagementProperties.getPublicServerUrl())) { Map attributes = new HashMap<>();