Open pedroquien opened 5 years ago
ADFS does not set the kid so when there are multiple keys openidc does not know which key to use. If we can use x5t to id the key that would be great.
Minimal, complete configuration that reproduces the behavior.
Config and logs for the minimized example, possibly provided as attachments.
walking the keys that match the signature type would be alternative acceptable behavior IMHO
ADFS does not set the kid so when there are multiple keys openidc does not know which key to use. If we can use x5t to id the key that would be great.
Environment
Expected behaviour
Actual behaviour
Minimized example
Minimal, complete configuration that reproduces the behavior.
Configuration and NGINX server log files
Config and logs for the minimized example, possibly provided as attachments.