Skip to content

One-time client auth password #564

Answered by maraino
RadionovM asked this question in General
Apr 30, 2021 · 2 comments · 9 replies
Discussion options

You must be logged in to vote

@RadionovM I'm not sure if I understand properly. A unique password encrypts the JWK private key. But the JWT used in the JWK provisioner can only be used once.

Having that in mind, you can always centralize the creation of that JWT on your side, so only the services creating it have access to the password, then you can grant those tokens as you want, adding an approval process if necessary.

Replies: 2 comments 9 replies

Comment options

You must be logged in to vote
8 replies
@RadionovM
Comment options

@RadionovM
Comment options

@maraino
Comment options

@RadionovM
Comment options

@maraino
Comment options

Answer selected by RadionovM
Comment options

You must be logged in to vote
1 reply
@RadionovM
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
4 participants