You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Sami Kerola edited this page Mar 20, 2026
·
3 revisions
syncPubKeyDomain is required
The Service provider must publish their public key and place it in a DNS TXT
record in a domain specified in the template in syncPubKeyDomain. To allow
for key rotation, the host name of the TXT record must be appended as
another variable on the query string of the form: key=_dcpubkeyv1
The Domain Connect project has a
page that helps create TXT records
in expected format. Once the key is exposed with the p=N,a=RS256,d=...
headers you can try if the key works with
debug tooling.