-
Type:
Sub-task
-
Resolution: Unresolved
-
Priority:
Major - P3
-
None
-
Affects Version/s: None
-
Component/s: None
-
Server Security
-
Server Security 2025-07-20, Server Security 2025-08-01, Server Security 2025-08-15
-
200
-
None
-
3
-
TBD
-
None
-
None
-
None
-
None
-
None
-
None
-
None
To support ES256 in the server, we first need to support Elliptical curve signature verification in the crypto library, after which OIDC/OAuth 2.0 access tokens containing an ES-256 signature can be verified.
The scope of this Jira is to add support in the MongoDB crypto library for ES256 signature verification, including unit tests, and ensuring that existing tests do not break. This Jira will also include support ES384 signature verification as the incremental work is small.
- blocks
-
SERVER-108915 Write JS Tests for tokens with ES256/384 signatures
-
- In Progress
-
-
SERVER-107845 Support OIDC ES256 JWS Signing Algorithm
-
- In Progress
-
- is blocked by
-
SERVER-109272 Fix build failure for older OpenSSL versions
-
- Needs Scheduling
-