OIDC auth methods client_secret_jwt, private_key_jwt

Cantor, Scott cantor.2 at osu.edu
Thu Apr 18 14:13:03 EDT 2019


On 4/18/19, 1:40 PM, "dev on behalf of Jim Fox" <dev-bounces at shibboleth.net on behalf of fox at washington.edu> wrote:

> Note that a shibboleth reload-service.sh for MetadataResolverService does 
> not refresh any of those oidc metadata keys.  I had to restart the service 
> for that.

One of the current tasks underway is drafting a design for how to deal with metadata in both directions, and put the OIDC metadata under some form of service abstraction, and it would eventually include handling public-key authentication of SPs via SAML metadata consistently with the rest of the system (as an option).

-- Scott




More information about the dev mailing list