{"repo":"envato/jwt_signed_request","free":true,"listed":false,"github":"https://github.com/envato/jwt_signed_request","clone":"git clone https://github.com/envato/jwt_signed_request.git","description":"Request signing and verification made easy","language":"Ruby","stars":24,"topics":["jwt","jwt-authentication","jwt-middleware"],"license":"MIT","category":"auth-billing-email","readme_excerpt":"JWT Signed Request Request signing and verification for Internal APIs using JWT. Getting Started Add this line to your application's Gemfile: then run: Stale PRs We use the \"stale\" workflow to manage our PRs. If you have a PR open for 60 days without any activity, it will automatically be labelled stale-pr . If there is no activity for 7 days after this label is applied, the PR will be automatically closed. If you have a PR that has a sensible reason for being open for a long period of time with no activity, you can apply the do-not-auto-close label to avoid it being automatically closed. Generating EC Keys We should be using a public key encryption algorithm such as ES256 . To generate your public/private key pair using ES256 run: Store and encrypt these in your application secrets. Configuration You can add signing and verification keys to one or more key stores as your application needs them. For example, given the following keys: Single key store If your application only needs a single key store, configure it like so: Multiple key stores If your application requires multiple key stores, configure them like so: Signing Requests If you have added your signing keys to a key store, you will only need to specify the key id you are signing the requests with. If you are using multiple key stores, you will also need to pass the appropriate key store id . Using net/http Using Faraday Additional options bearer schema (boolean) Determines whether to use the Bearer schema when assign","default_branch":null,"files":null,"tree":[],"storefront":"/r/envato","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/envato/jwt_signed_request/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}