compliance_level
property to the desired profile, either fapi1_adv_pkj_par
or fapi1_adv_mtls_par
is_first_party
property on the client to false
:
urn:mace:incommon:iap:silver
. To include the required ACR value in the ID token, add urn:mace:incommon:iap:silver
to the list of supported ACR values for the tenant:
alg
property from the output of the /.well-known/jwks.json
endpoint:
openid
scope if no scope is present. Auth0 also allows requests without a redirect_uri,
which you can set in Actions. However, the FAPI conformance tests require Auth0 to be more restrictive.
Add the following Action to enforce the necessary restrictions on scope and redirect_uri
: