Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Rotating the token's bound key #103

Closed
jricher opened this issue Nov 13, 2020 · 2 comments
Closed

Rotating the token's bound key #103

jricher opened this issue Nov 13, 2020 · 2 comments

Comments

@jricher
Copy link
Collaborator

jricher commented Nov 13, 2020

§6.1 Rotating the Access Token: Editor's note:

If the client is using its own key as the proof, like with a bearer access token, the AS is going to need to know if the client's key has been rotated. We don't have a mechanism for rotating the token's key or the client's key yet either - so that could occur through this management function as well.

@jricher
Copy link
Collaborator Author

jricher commented Dec 15, 2021

See discussion at #105

@jricher
Copy link
Collaborator Author

jricher commented Oct 5, 2022

Token key rotation is covered by #435, and a non-bound token would use whatever's currently tied to the client at the AS, whatever that is.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant