Skip to content

Support cloud instance name validation #2832

@GeoK

Description

@GeoK
  • Add a new extension method EnableEntraIdSigningKeyCloudInstanceValidation that adds additional validation rule to the IssuerSigningKeyValidatorUsingConfiguration delegate call chain.
  • New validation rule checks that the cloud instance name of the openid-configuration matches the cloud instance name of the signing key.
  • SecurityTokenInvalidCloudInstanceException (new exception) should be thrown in case check is failed.

Metadata

Metadata

Assignees

Labels

EnhancementThe issue is a new featureInternalIndicates issue was opened by the IdentityModel team

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions