Skip to content

PrivateKeyJwtAuthenticator Class

Authenticates clients using the Private Key JWT method, verifying the client's identity through a signed JWT that the client provides. This method is suitable for clients that can securely store and use private keys.

C#
public class PrivateKeyJwtAuthenticator : Abblix.Oidc.Server.Features.ClientAuthentication.JwtAssertionAuthenticatorBase

Inheritance System.Object → JwtAssertionAuthenticatorBase → PrivateKeyJwtAuthenticator

Constructors

PrivateKeyJwtAuthenticator(ILogger<PrivateKeyJwtAuthenticator>, IReplayCache, IServiceProvider, IIssuerProvider, IOptions<OidcOptions>, TimeProvider) Constructor

Authenticates clients using the Private Key JWT method, verifying the client's identity through a signed JWT that the client provides. This method is suitable for clients that can securely store and use private keys.

C#
public PrivateKeyJwtAuthenticator(Microsoft.Extensions.Logging.ILogger<Abblix.Oidc.Server.Features.ClientAuthentication.PrivateKeyJwtAuthenticator> logger, Abblix.Jwt.ReplayPrevention.IReplayCache replayCache, System.IServiceProvider serviceProvider, Abblix.Oidc.Server.Features.Issuer.IIssuerProvider issuerProvider, Microsoft.Extensions.Options.IOptions<Abblix.Oidc.Server.Common.Configuration.OidcOptions> options, System.TimeProvider timeProvider);

Parameters

logger Microsoft.Extensions.Logging.ILogger<PrivateKeyJwtAuthenticator>

Logger for recording the authentication process and any issues encountered.

replayCache IReplayCache

Replay cache that records assertion jti values and atomically rejects reuse.

serviceProvider System.IServiceProvider

Service provider used to resolve scoped dependencies.

issuerProvider IIssuerProvider

Supplies the issuer identifier a profile-governed assertion must name.

options Microsoft.Extensions.Options.IOptions<OidcOptions>

Supplies the server-wide default security profile.

timeProvider System.TimeProvider

Judges the assertion's timestamps against the client's own profile.

Properties

PrivateKeyJwtAuthenticator.ClientAuthenticationMethodsSupported Property

Indicates the client authentication method supported by this authenticator. This method uses private keys and JSON Web Tokens (JWT) for client authentication, allowing clients to assert their identity through the use of asymmetric key cryptography. It is designed for environments where the client can securely hold a private key.

C#
public override System.Collections.Generic.IEnumerable<string> ClientAuthenticationMethodsSupported { get; }

Implements ClientAuthenticationMethodsSupported

Property Value

System.Collections.Generic.IEnumerable<System.String>