【发布时间】:2020-03-22 04:40:43
【问题描述】:
我是 IdentityServer4 (2.5) 和证书设置的新手,所以请多多包涵。我想我已经尽力了。我在概念验证应用程序中将它与 ASP.Net Core 2.2.0 一起使用。我有一个带有授权应用程序的 OpenIdConnect 和一个使用带有 X509Certificate2 的 cookie 的客户端。在我的本地机器上运行良好;但是,当我部署到 IIS 时出现此错误:
System.InvalidOperationException: IDX20803: Unable to obtain configuration from: 'https://my.com/mpauth/.well-known/openid-configuration'. ---> System.ArgumentException: IDX20108: The address specified 'http://my.com/mpauth/.well-known/openid-configuration/jwks' is not valid as per HTTPS scheme. Please specify an https address for security reasons. If you want to test with http address, set the RequireHttps property on IDocumentRetriever to false.
问题在这里 - http://my.com/mpauth/.well-known/openid-configuration/jwks。如果我把它放在浏览器中,我会得到一个错误;但是,如果我将 http 更改为 https,我会得到数据。什么设置控制这个?
【问题讨论】:
标签: identityserver4 openid-connect asp.net-core-2.2 x509certificate2