OIDC RS256 Signature Validator
Description
OpenID Connect ID Token signature validation plugin for RS256 signatures.
May be used by
Properties
Remote Key Location (
remoteKeyLocation) Description
URL of the remote JWKS endpoint publishing the public keys used for ID Token RS256 signature validation. This is used for OpenID Connect providers that cycle public keys (eg. Google).
The remote public key should be presented according to the 'JSON Web Key' specification otherwise the parsing may fail.
Attributes
String
Mandatory
Example
https://airlock.iam/auth/rest/oauth2/authorization-servers/asId/jwks
Example
https://www.googleapis.com/oauth2/v2/certs
Example
https://www.googleapis.com/oauth2/v3/certs
Example
https://login.microsoftonline.com/common/discovery/v2.0/keys
Example
https://login.windows.net/common/discovery/keys
Example
https://login.salesforce.com/id/keys
HTTP Client (
httpClient) Description
Configuration for the HTTP client used to fetch the remote public key.
Attributes
Plugin-Link
Mandatory
Assignable plugins
YAML Template (with default values)
type: OpenIDConnectRS256SignatureValidator
id: OpenIDConnectRS256SignatureValidator-xxxxxx
displayName:
comment:
properties:
httpClient:
remoteKeyLocation: