Skip to content

Encrypted sub claim #362

Answered by PeterOrneholm
Max-Eriksson asked this question in Q&A
Discussion options

You must be logged in to vote

The direct answer to your question related to Active Login:
There is no (and won't be) any built-in support for encrypting the sub claim. What is available is the option to alter the claim issuing pipeline. We have full docs on that here:
https://docs.activelogin.net/articles/bankid.html#claims-issuing

An input to what you want to achieve:
I would probably implement the solution in a different way, not relying on encrypting the PIN (that has flaws). But architecting a secure auth flow with Azure AD B2C is out of scope for this OSS project - but we would be more than happy to consult in this area. Ping us if you need guidance.

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by PeterOrneholm
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants