OIDC auth methods client_secret_jwt, private_key_jwt
Cantor, Scott
cantor.2 at osu.edu
Thu Apr 18 14:13:03 EDT 2019
On 4/18/19, 1:40 PM, "dev on behalf of Jim Fox" <dev-bounces at shibboleth.net on behalf of fox at washington.edu> wrote:
> Note that a shibboleth reload-service.sh for MetadataResolverService does
> not refresh any of those oidc metadata keys. I had to restart the service
> for that.
One of the current tasks underway is drafting a design for how to deal with metadata in both directions, and put the OIDC metadata under some form of service abstraction, and it would eventually include handling public-key authentication of SPs via SAML metadata consistently with the rest of the system (as an option).
-- Scott
More information about the dev
mailing list