CIBA: login_hint_token_signing_algorithms_supported

Issue #149 wontfix
Dave Tonge created an issue

From FAPI:

Why is there no registration metadata value for login_hint_token_signing_algorithms_supported

Comments (4)

  1. Takahiko Kawasaki

    Unless I'm missing something, CIBA Core does not mention anything about the format of the value of login_hint_token. My understanding is that details of the format will be described in each profile or be left to each authorization server implementation. CIBA Core does not say that the format is JWT (does it?), so the metadata is not appropriate. However, it is up to FAPI-CIBA profile whether it states the format of login_hint_token MUST be JWT and adds the metadata under the name of FAPI-CIBA profile.

  2. Log in to comment