Z
ZITADEL
Z
ZITADEL
Claims to verify in an auth flow in backend
Original message was deleted
ZITADEL
Join
ZITADEL - Identity infrastructure, simplified for you.
4,316
Members
View on Discord
F
FFO
•
9/10/24, 8:39 AM
Main claims that you need to verify is the ISS and the AUD
(besides the signature
;
-
)
)
Y
Yoav Lavi
Although in our case since it's self hosted there's only going to ever be one in...
F
FFO
•
9/10/24, 9:35 AM
The issuer is the most important piece besides the signature
.
Since it allows you to verify the
"correct
" system sent the token
.
I meant main
, beacuse in some cases you also want to verify authorizations or to which org a user belongs to
.
F
FFO
•
9/10/24, 9:36 AM
haha
, I see
F
FFO
•
9/10/24, 9:37 AM
Yeah well my wording was not optimal
F
FFO
•
9/10/24, 12:53 PM
In zitadel a single
"instance
"
(which can have many domains
) share the same keys
.