OAuth 2.0 Token Generator Settings
Configuration for OAuth 2.0 token generation, e.g. for generating Authorization Codes.
This configuration controls how tokens are generated and stored. It allows specifying the length of the random component of generated tokens and the hash algorithm used to persist tokens securely.
tokenRandomPartLength) Length (in characters) of the random part in generated OAuth 2.0 Tokens.
With random tokens, this forms part of the token string itself, for JWT tokens, this string is included in the JWT as "jti" claim.
For security reasons, as recommended by RFC 6749, the randomness must be at least 160 bit corresponding to about 28 characters. Overly large values may have a negative performance impact.
passwordHash) Hash function used to hash the generated OAuth 2.0 Tokens. Only a random ID and the hash of the token will be persisted.
Warning: When changing this hash, all previously issued tokens will be come invalid!
Security Warning: A cryptographic hash function should be used.
type: OAuth2TokenGenerator
id: OAuth2TokenGenerator-xxxxxx
displayName:
comment:
properties:
passwordHash:
tokenRandomPartLength: 40