[Openid-specs-ab] Issue #1505: [Federation] OP Metadata should have at least one of jwks of signed_jwks_uri as REQUIRED (openid/connect)

peppelinux issues-reply at bitbucket.org
Tue May 24 16:02:13 UTC 2022


New issue 1505: [Federation] OP Metadata should have at least one of jwks of signed_jwks_uri as REQUIRED
https://bitbucket.org/openid/connect/issues/1505/federation-op-metadata-should-have-at

Giuseppe De Marco:

in [4.2.](https://openid.net/specs/openid-connect-federation-1_0.html#rfc.section.4.2) [OP Metadata](https://openid.net/specs/openid-connect-federation-1_0.html#OP_metadata) we have

```
signed_jwks_uri
OPTIONAL. A URI pointing to a signed JWT having the  ...

jwks
OPTIONAL. JSON Web Key Set document, passed by value ...
```

  
we should say that signed\_jwks\_uri is REQUIRED if jwks is absent and _vice versa_.  
  
it would be “REQUIRED if jwks is absent.“ and “REQUIRED if jwks is absent.“ is there any suggestion for a better definition?




More information about the Openid-specs-ab mailing list