/* * Copyright 2012-2017 the original author or authors. * * Licensed under the Apache License, Version 2.0 (the "License"); * you may not use this file except in compliance with the License. * You may obtain a copy of the License at * * http://www.apache.org/licenses/LICENSE-2.0 * * Unless required by applicable law or agreed to in writing, software * distributed under the License is distributed on an "AS IS" BASIS, * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. * See the License for the specific language governing permissions and * limitations under the License. */ package org.springframework.security.oauth2.client.authentication; import org.springframework.security.oauth2.core.AuthorizationGrantType; import org.springframework.security.oauth2.core.endpoint.TokenResponseAttributes; /** * Implementations of this interface are responsible for <i>"exchanging"</i> * an <i>authorization grant</i> credential (for example, an authorization code) for an * <i>access token</i> credential at the authorization server's <i>Token Endpoint</i>. * * @author Joe Grandja * @since 5.0 * @see AuthorizationGrantType * @see AuthorizationGrantAuthenticationToken * @see TokenResponseAttributes * @see <a target="_blank" href="https://tools.ietf.org/html/rfc6749#section-1.3">Section 1.3 Authorization Grant</a> * @see <a target="_blank" href="https://tools.ietf.org/html/rfc6749#section-4.1.3">Section 4.1.3 Access Token Request (Authorization Code Grant)</a> * @see <a target="_blank" href="https://tools.ietf.org/html/rfc6749#section-4.1.4">Section 4.1.4 Access Token Response (Authorization Code Grant)</a> */ public interface AuthorizationGrantTokenExchanger<T extends AuthorizationGrantAuthenticationToken> { TokenResponseAttributes exchange(T authorizationGrantAuthentication) throws OAuth2AuthenticationException; }