Is it Possible to Change the Attributes Used for Third-Party JWT Bearer Assertions
(Doc ID 2626867.1)
Last updated on JANUARY 07, 2020
Applies to:Oracle Access Manager - Version 22.214.171.124.0 and later
Information in this document applies to any platform.
When using OAM JWT Bearer Assertions OAM compares JWT "sub" attribute with "client_id" attribute of OAuth Client. Is it possible to change this comparison such that POST parameter client_id in the REST request is compared to a different JWT attribute?
For example, if the POST request to /ms_oauth/oauth2/endpoints/<SERVICE_NAME>/tokens includes the following POST data:
OAM compares the POST-parameter client_id=<CLIENT_ID1> with JWT attribute sub=<CLIENT_ID2> and it will fail because they do not match. Is it possible to choose which JWT attribute (in this example appid) which contains the real client_id?
To view full details, sign in with your My Oracle Support account.
Don't have a My Oracle Support account? Click to get started!
In this Document