Skip to content

Conversation

@julien-nc
Copy link
Member

closes #1223

If the JWKS changed on the IdP side, one might need to invalidate the JWKS cache on user_oidc's side to avoid locking the users out for one hour.

@julien-nc julien-nc added documentation Improvements or additions to documentation enhancement New feature or request 3. to review labels Oct 14, 2025
Signed-off-by: Julien Veyssier <julien-nc@posteo.net>
@julien-nc julien-nc force-pushed the enh/1223/jwks-cache-invalidation branch from 048eb81 to 6b64ea3 Compare October 15, 2025 09:01
@julien-nc julien-nc merged commit d5f1c93 into main Oct 15, 2025
42 checks passed
@julien-nc julien-nc deleted the enh/1223/jwks-cache-invalidation branch October 15, 2025 10:31
@julien-nc julien-nc mentioned this pull request Oct 15, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review documentation Improvements or additions to documentation enhancement New feature or request

Projects

None yet

Development

Successfully merging this pull request may close these issues.

JWKS cache invalidation occ command

2 participants