Skip to content

validate non-oauth JWT #66

Answered by zandbelt
hmoffatt asked this question in Q&A
Oct 4, 2024 · 1 comments · 3 replies
Discussion options

You must be logged in to vote

this is a support use case, however there's no way to extend the jwks_uri validation with iss and aud; iss validation applies only when using OAuth 2.0 compliant OAuth2TokenVerify metadata

one could configure Require oauth2_claim aud:<value etc.

Replies: 1 comment 3 replies

Comment options

You must be logged in to vote
3 replies
@hmoffatt
Comment options

@zandbelt
Comment options

@hmoffatt
Comment options

Answer selected by hmoffatt
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants