You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Is your feature request related to a problem? Please describe.
Request to support OIDC client apps who only supports RS512 JWS Algorithm while creating token.
Currently, as par this doc https://docs.open-metadata.org/latest/deployment/security/oidc#preferred-jws-algorithm-preferredjwsalgorithm , OM only supports the RS256 JWS Algorithm.
The third party OIDC login works fine when OIDC apps supports and creates tokens with RS256 JWS Algorithm, but OM fails to validate tokens of OIDC apps who only supports the RS512 algorithm.
Describe the solution you'd like
So, requesting you to please support RS512 encrypted tokens/OIDC apps as well in OM.
Describe alternatives you've considered
Alternative is to only use OIDC apps having RS256 algorithm, but in my case, due to security standards, my organization only supports the OIDC apps with RS512 algorithm for best security.
Additional context
Having this feature will give OM consumers an extra added flexibility with respect to Security standards. So, please consider this.
Thanks.
The text was updated successfully, but these errors were encountered:
Is your feature request related to a problem? Please describe.
Request to support OIDC client apps who only supports
RS512
JWS Algorithm while creating token.Currently, as par this doc https://docs.open-metadata.org/latest/deployment/security/oidc#preferred-jws-algorithm-preferredjwsalgorithm , OM only supports the
RS256
JWS Algorithm.The third party OIDC login works fine when OIDC apps supports and creates tokens with
RS256
JWS Algorithm, but OM fails to validate tokens of OIDC apps who only supports theRS512
algorithm.Describe the solution you'd like
So, requesting you to please support
RS512
encrypted tokens/OIDC apps as well in OM.Describe alternatives you've considered
Alternative is to only use OIDC apps having
RS256
algorithm, but in my case, due to security standards, my organization only supports the OIDC apps withRS512
algorithm for best security.Additional context
Having this feature will give OM consumers an extra added flexibility with respect to Security standards. So, please consider this.
Thanks.
The text was updated successfully, but these errors were encountered: