Rory Braybrook
Dec 26, 2022

Hi,

Using per the sample in the SU link, you could rather call something like "SelfAsserted-LocalAccountSignin-Email" that calls "login-NonInteractive" to sign you in. In your case, signInName and password would be input claims using the values in the JWT.

But passing these values in a JWT is not secure. They should be encrypted.

Alternatively, use ROPC - https://learn.microsoft.com/en-us/azure/active-directory-b2c/add-ropc-policy?tabs=app-reg-ga&pivots=b2c-custom-policy

Rory

Sign up to discover human stories that deepen your understanding of the world.

Free

Distraction-free reading. No ads.

Organize your knowledge with lists and highlights.

Tell your story. Find your audience.

Membership

Read member-only stories

Support writers you read most

Earn money for your writing

Listen to audio narrations

Read offline with the Medium app

Rory Braybrook
Rory Braybrook

Written by Rory Braybrook

NZ Microsoft Identity dude and MVP. Entra ID/Entra External ID/Azure AD B2C/VC. StackOverflow: https://bit.ly/2XU4yvJ Presentations: http://bit.ly/334ZPt5

No responses yet

Write a response