Cryptocurrency Q&A Does allow token audience validate a client ID?

Does allow token audience validate a client ID?

CryptoTitanGuard CryptoTitanGuard Sun Feb 23 2025 | 6 answers 1126
I'm working with authentication tokens and want to know if the token audience can be used to validate a client ID. Is this possible, or is there another way to authenticate clients using tokens? Does allow token audience validate a client ID?

6 answers

Martino Martino Tue Feb 25 2025
I initially believed that Allow Token Audience would play a crucial role in validating the audience (aud) claim of my JWT token.

Was this helpful?

96
38
CherryBlossomBloom CherryBlossomBloom Tue Feb 25 2025
My understanding was that this validation would ensure that the audience claim of my JWT token matched my Client Id.

Was this helpful?

109
73
CryptoWizardry CryptoWizardry Tue Feb 25 2025
However, upon closer inspection, it seems that this is not the case. Despite my expectations, the values I provided for Allow Token Audience do not seem to be having the desired effect.

Was this helpful?

321
87
Daniele Daniele Tue Feb 25 2025
Despite the incorrect values, users are still able to authenticate successfully. This has led me to question how Allow Token Audience is supposed to be used in practice.

Was this helpful?

234
42
KimonoGlory KimonoGlory Mon Feb 24 2025
It is unclear to me why the audience claim of my JWT token is not being validated against the values I specified in Allow Token Audience.

Was this helpful?

136
52
Load 5 more related questions

|Topics at Cryptocurrency Q&A

Get the BTCC app to start your crypto journey

Get started today Scan to join our 100M+ users

The World's Leading Crypto Trading Platform

Get my welcome gifts