View Issue Details
ID | Project | Category | View Status | Date Submitted | Last Update |
---|---|---|---|---|---|
0010234 | 10000-005: Information Model | Spec | public | 2025-03-14 21:21 | 2025-03-15 15:57 |
Reporter | Matthias Damm | Assigned To | Jeff Harding | ||
Priority | normal | Severity | minor | Reproducibility | have not tried |
Status | assigned | Resolution | open | ||
Product Version | 1.05.04 | ||||
Target Version | 1.05.06 RC1 | ||||
Summary | 0010234: ClientUserId creation rules for JWT tokens | ||||
Description | At the moment the ClientUserId is created from the "sub" claim in the JWT. But the sub is only unique inside one token provider idnetified by the "iss" claim. If more than one token provider is used in a system, the "sub" is not unique enough. As disucssed in the meeting this week, we need to combine the ClientUserId from "iss" and "sub". | ||||
Steps To Reproduce | JWT is missing in "3.2 Abbreviated terms" | ||||
Additional Information | 6.4.3 AuditEventType Propose to replace With | ||||
Tags | No tags attached. | ||||
Commit Version | 1.05.06 RC1 | ||||
Fix Due Date | 2025-05-01 | ||||
related to | 0010235 | assigned | Randy Armstrong | 10000-006: Mappings | Clarifications for JWT Issued User Identity Tokens |
related to | 0010236 | assigned | Matthias Damm | 10000-018: Role-Based Security | Clarifications for JWT Issued User Identity Tokens |
Date Modified | Username | Field | Change |
---|---|---|---|
2025-03-14 21:21 | Matthias Damm | New Issue | |
2025-03-14 21:21 | Matthias Damm | Status | new => assigned |
2025-03-14 21:21 | Matthias Damm | Assigned To | => Jeff Harding |
2025-03-14 21:29 | Matthias Damm | Relationship added | related to 0010235 |
2025-03-14 21:36 | Matthias Damm | Relationship added | related to 0010236 |
2025-03-15 15:56 | Jim Luth | Fix Due Date | => 2025-05-01 |
2025-03-15 15:57 | Jim Luth | Commit Version | => 1.05.06 RC1 |