Package org.keycloak.keys
Interface PublicKeyStorageProvider
- All Superinterfaces:
Provider
- All Known Implementing Classes:
InfinispanPublicKeyStorageProvider
,MapPublicKeyStorageProvider
- Author:
- Marek Posolda
-
Method Summary
Modifier and TypeMethodDescriptiongetFirstPublicKey
(String modelKey, String algorithm, PublicKeyLoader loader) Get first found public key to verify messages signed by particular client having several public keys.getPublicKey
(String modelKey, String kid, String algorithm, PublicKeyLoader loader) Get public key to verify messages signed by particular client.
-
Method Details
-
getPublicKey
Get public key to verify messages signed by particular client. Used for example during JWT client authentication- Parameters:
modelKey
-kid
-algorithm
- The returned key must match this algorithm (unless the algorithm is not set in the JWK)loader
-- Returns:
-
getFirstPublicKey
Get first found public key to verify messages signed by particular client having several public keys. Used for example during JWT client authentication or to encrypt content encryption key (CEK) by particular client. Used for example during encrypting a token in JWE- Parameters:
modelKey
-algorithm
-loader
-- Returns:
-