Hi, In OFBIZ-9833 we suggested severalĀ ways on how to store the JWT secret.
I think that rather to force one of the suggestions OOTB we should rather propose them as a comment (or a link to a dedicated text file if too long) with the login.secret_key_string in the security.properties file.
Then users can pick the one they prefer or follow external links provided to pick one. If nobody disagree I'll do that soon (say in less than a week) Jacques
