IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  ISAM OIDC mapping

    Posted Tue October 22, 2019 02:44 PM
    Hi,

    I have a Usecase in which ISAM acts as a SP and receives JWT from OP and the same needs to be used to authenticate and authorize for another junction backend. 
    Is it possible to decrypt JWT and create iv-creds/iv-groups and iv-user header to be posted to another junction backend?

    ------------------------------
    raghi
    ------------------------------


  • 2.  RE: ISAM OIDC mapping

    Posted Fri October 25, 2019 07:07 AM
    Hi Raghi,

    Not sure if I understand your scenario. Is this id_token JWT that you received from the OP?
    If yes, you may want to try Federation OIDC RP. At the end of the flow, it will generate iv-creds.

    Here is a blog describing how to use it.
    https://philipnye.com/2018/05/03/isam-facebook-login-with-oidc-relying-party/

    Thanks,

    Adrian

    ------------------------------
    Adrian Rinaldi Sasmita
    ------------------------------