Uploaded image for project: 'WildFly'
  1. WildFly
  2. WFLY-21442

Enhance verify token audience configuration for bearer-only mode

XMLWordPrintable

    • Icon: Feature Request Feature Request
    • Resolution: Unresolved
    • Icon: Major Major
    • None
    • None
    • Security
    • None
    • ---
    • ---

      When WildFly acts as a resource server and receives a bearer JWT containing an "aud" claim, it should be possible to accept multiple different pre-configured values. This use case is related specifically to the bearer-only configuration and when verify-token-audience is set to true. Currently, only client name (resource) is accepted as an audience claim.

              Unassigned Unassigned
              dvilkola@redhat.com Diana Krepinska
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: