Bug: AWS Cognito issuer mismatch when using "common" endpoint for Microsoft OIDC

0

Issue has been mentioned by others in the past years but still no fix available.

To support both personal and Microsoft accounts to sign up / sign in with Cognito as Microsoft as IDP the docs tell you to use the “common” endpoint.

However a bad issuer mismatch error is returned when users try to sign up / log in using a Microsoft account. https://github.com/MicrosoftDocs/azure-docs/issues/38427

Other parties such as firebase, okta etc have implemented a fix because Microsoft will not comply with OIDC in the near future.

Can cognito team implement a fix so we can support Microsoft personal and work accounts using “common” endpoint? I'm considering moving my Authentication to Firebase because they support it out of the box.

I also created this issue on github but seems it's not on the radar of being fixed any time soon. https://github.com/aws-samples/amazon-cognito-example-for-external-idp/issues/98

Please do not reply with answers mentioning to use a specific tenant ID because that does not solve the problem, it only allows people to sign in using that Tenant ID. A solution would be how we can support both Work and Personal accounts from Microsoft using the "Common" endpoint or maybe a different endpoint.

Mike
질문됨 2년 전81회 조회
답변 없음

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인

관련 콘텐츠