OptionalclientClient authentication method used when the client authenticates to the authorization server.
OptionalclientClient secret or key material used for client authentication.
When clientAuthMethod is client_secret_jwt and a plain-text secret is provided, the default signing algorithm is HS256.
To use a different algorithm, provide a symmetric JSON Web Key (JWK) (kty: "oct") with the desired algorithm specified in its alg property.
When clientAuthMethod is spiffe_jwt, provide the SPIFFE JWT-SVID (obtained from the SPIFFE Workload API) as the plain-text string; it is sent as the client_assertion.
OptionalfetcherOptional custom fetch implementation used for network requests.
Optionalinit: RequestInitOptionalinit: RequestInitOptionalidExpected signing algorithm for validating ID tokens.
OptionaljwksDuration (in seconds) to cache the JSON Web Key Set (JWKS) retrieved from the authorization server.
OptionaljwksOptional custom resolver for the JSON Web Key Set (JWKS).
OptionalmetadataDuration (in seconds) to cache OpenID Connect discovery metadata.
OptionalmetadataOptional custom resolver for the issuer metadata (OpenID Connect discovery document).
OptionaltrustIdentifier of the trust store whose mTLS endpoint aliases should be used when authenticating with a mutual-TLS client authentication method.
Configuration options used to initialize the MonoCloudOidcClient.