FHIR Chat · docs / Issue #361 Clarification on out-of-band key discovery · cds hooks/github

Stream: cds hooks/github

Topic: docs / Issue #361 Clarification on out-of-band key discovery


view this post on Zulip Github Notifications (May 21 2018 at 15:02):

yashaskram opened Issue #361

The EHR MAY make its JWK Set available via a URL identified by the jku header field, as defined by rfc7515 4.1.2. If the jku header field is ommitted, the EHR and CDS Service SHALL communicate the JWK Set out-of-band.

  • Does out-of-band cover both sharing jwks_uri (jku) and jwk?
  • If latter is allowed, should kid should be optional similar to jku or still be required?

Last updated: Apr 12 2022 at 19:14 UTC