AzureAD / azure-activedirectory-identitymodel-extensions-for-dotnet

IdentityModel extensions for .Net
MIT License
1.05k stars 397 forks source link

Support EdDSA signature validations #2426

Open wparad opened 9 months ago

wparad commented 9 months ago

Today: EdDSA signed JWTs

Future: The goal is for this list: https://github.com/AzureAD/azure-activedirectory-identitymodel-extensions-for-dotnet/blob/dev/src/System.IdentityModel.Tokens.Jwt/JwtSecurityTokenHandler.cs#L62 to support an EdDSA signature strategy so that dependencies of this library understand how to handle EdDSA signed JWTs.

In this case the issue is sourced from Microsoft.AspNetCore.Authorization.Authorize attribute which attempts to use System.IdentityModel.Tokens.Jwt through the package Microsoft.AspNetCore.Authentication.JwtBearer (this repo) package for verifying the incoming tokens.

Related:

If a PR is opened to add this support, will it be accepted and helped to be shepherded to completion or will a PR of this nature lay on apathetic ears?

brentschmaltz commented 6 months ago

@jennyf19 we should combine all the EC/ECDSA issues into one.