TODO:
- [ ] update docs
- [ ] add support in yaml (modern) config
- [ ] add more test(s)?
Add (legacy for now) configuration flag "oidc-enabled-signing-alg" (cfg:
oidc_enabled_signing_algs) that allows setting what signing algorithms
are specified by provider in JWT header ("alg" header claim).
In particular useful when skip_oidc_discovery = true, as verifier
defaults to only accept "RS256" in alg field in such circumstances.
|
||
|---|---|---|
| .. | ||
| ip | ||
| middleware | ||
| options | ||
| sessions | ||