I've implemented an OAuth2 authorization interceptor and have that working within HAPI. Smart on FHIR indicates that the FHIR server's "metadata must support automated dicovery of OAuth2 endpoints by including a “complex” extension (that is, an extension with multiple components inside) on the CapabilityStatement.rest.security element."
http://www.hl7.org/fhir/smart-app-launch/capability-statement/
With HAPI automatically generating the metadata capability statement, would anyone know where I add these components to HAPI's configuration?
Many thanks in advance.
- Anthony