Skip to content

Why are JWT tokens are passed in the request body? #744

Answered by jimmarino
MikhailGordienk asked this question in Q&A
Discussion options

You must be logged in to vote

This is part of the current IDS specification. There is a new IDS REST API where (I believe) tokens will be passed as headers. It may make more sense to pass them as part of a defined envelope header due to the practical size restrictions on HTTP headers.

Support for the IDS REST API is currently in progress.

Alternatively, someone could create their own REST API for the connector.

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by juliapampus
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants
Converted from issue

This discussion was converted from issue #74 on February 23, 2022 13:13.