AnsweredAssumed Answered

Best Approach for Out of Box JWT

Question asked by jaykumar.solanki on Mar 29, 2018

HI All, what is the best/recommended approach while generating JWT outside CA Gateway. Is it recommended to pass Client Secret in claim for authentication while generating JWT on Client app or Client Id should be passed?

currently we're passing iss,aud,iat & exp as a Claim.but we want to include another parameter which will help us to authenticate the token. any suggestions are appreciated.

 

jwt claims

Outcomes