csotiriou commented on issue #10352: URL: https://github.com/apache/apisix/issues/10352#issuecomment-1811954750
Hello, I have considered it yes - however, for standardization's sake, we want to use the openid-connect (plus I stumbled across other issues as well that I may mention in another thread when I make sure that I have the correct configuration). I believe that the scope-based approach is more generic than having to resort to putting the permissions attribute in the token. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected]
