Messages 2.1.2 - Request object should be JWS signed JSON, not JWT

Issue #592 resolved
Michael Jones created an issue

The OpenID Request Object should be changed from being described as a JWT to being described as a JWS signed JSON object.

Comments (4)

  1. Vladimir Dzhuvinov

    Is there going to be a provision for sending unsigned OpenID request objects?

    If yes, is this going to be a regular JSON object i.e. not a plain JWT?

  2. Log in to comment