
45. What’s the magic of OIDC identity providers?
AWS Bites
00:00
The JWT JSON Web Token
A token can really be anything like any string that you can verify and make sure it is actually trustworthy. And in the case of OIDC, this is kind of the choice. They went for signed tokens and the technology of choice is JWT JSON Web Token. A JWT token is a string made of tree parts separated by a dot. Those tree parts are a header, a payload, and a signature. It works by using both symmetric and asymmetric encryption.
Play episode from 10:40
Transcript


