PrivateKeyJwtAuthenticator Class
Authenticates clients using the Private Key JWT method, verifying the client's identity through a signed JWT that the client provides. This method is suitable for clients that can securely store and use private keys.
public class PrivateKeyJwtAuthenticator : Abblix.Oidc.Server.Features.ClientAuthentication.JwtAssertionAuthenticatorBaseInheritance System.Object → JwtAssertionAuthenticatorBase → PrivateKeyJwtAuthenticator
Constructors
PrivateKeyJwtAuthenticator(ILogger<PrivateKeyJwtAuthenticator>, IReplayCache, IServiceProvider, IIssuerProvider, IOptions<OidcOptions>, TimeProvider) Constructor
Authenticates clients using the Private Key JWT method, verifying the client's identity through a signed JWT that the client provides. This method is suitable for clients that can securely store and use private keys.
public PrivateKeyJwtAuthenticator(Microsoft.Extensions.Logging.ILogger<Abblix.Oidc.Server.Features.ClientAuthentication.PrivateKeyJwtAuthenticator> logger, Abblix.Jwt.ReplayPrevention.IReplayCache replayCache, System.IServiceProvider serviceProvider, Abblix.Oidc.Server.Features.Issuer.IIssuerProvider issuerProvider, Microsoft.Extensions.Options.IOptions<Abblix.Oidc.Server.Common.Configuration.OidcOptions> options, System.TimeProvider timeProvider);Parameters
logger Microsoft.Extensions.Logging.ILogger<PrivateKeyJwtAuthenticator>
Logger for recording the authentication process and any issues encountered.
replayCache IReplayCache
Replay cache that records assertion jti values and atomically rejects reuse.
serviceProvider System.IServiceProvider
Service provider used to resolve scoped dependencies.
issuerProvider IIssuerProvider
Supplies the issuer identifier a profile-governed assertion must name.
options Microsoft.Extensions.Options.IOptions<OidcOptions>
Supplies the server-wide default security profile.
timeProvider System.TimeProvider
Judges the assertion's timestamps against the client's own profile.
Properties
PrivateKeyJwtAuthenticator.ClientAuthenticationMethodsSupported Property
Indicates the client authentication method supported by this authenticator. This method uses private keys and JSON Web Tokens (JWT) for client authentication, allowing clients to assert their identity through the use of asymmetric key cryptography. It is designed for environments where the client can securely hold a private key.
public override System.Collections.Generic.IEnumerable<string> ClientAuthenticationMethodsSupported { get; }Implements ClientAuthenticationMethodsSupported