diff --git a/cameleer3-server-app/src/main/java/com/cameleer3/server/app/security/OidcTokenExchanger.java b/cameleer3-server-app/src/main/java/com/cameleer3/server/app/security/OidcTokenExchanger.java index 4110cdeb..c4e1c835 100644 --- a/cameleer3-server-app/src/main/java/com/cameleer3/server/app/security/OidcTokenExchanger.java +++ b/cameleer3-server-app/src/main/java/com/cameleer3/server/app/security/OidcTokenExchanger.java @@ -231,7 +231,7 @@ public class OidcTokenExchanger { jwkSource = JWKSourceBuilder.create(jwksUrl).build(); } - Set expectedAlgs = Set.of(JWSAlgorithm.RS256, JWSAlgorithm.ES256); + Set expectedAlgs = Set.of(JWSAlgorithm.ES384, JWSAlgorithm.ES256, JWSAlgorithm.RS256); JWSKeySelector keySelector = new JWSVerificationKeySelector<>(expectedAlgs, jwkSource);