Skip to main content

OidcValidator

Struct OidcValidator 

Source
pub struct OidcValidator { /* private fields */ }
Expand description

OIDC token validator with JWKS caching.

Validates JWT tokens against an OIDC provider’s public keys. Automatically fetches and caches the JWKS for efficiency.

Implementations§

Source§

impl OidcValidator

Source

pub async fn new(config: OidcConfig) -> Result<Self>

Create a new OIDC validator.

This will perform OIDC discovery to find the JWKS URI unless jwks_uri is explicitly set in config.

§Errors

Returns error if:

  • Config validation fails
  • OIDC discovery fails
  • JWKS endpoint cannot be determined
Source

pub fn with_jwks_uri(config: OidcConfig, jwks_uri: String) -> Self

Create a validator without performing discovery.

Use this for testing or when you have the JWKS URI directly.

Source

pub async fn validate_token(&self, token: &str) -> Result<AuthenticatedUser>

Validate a JWT token and extract user information.

§Arguments
  • token - The JWT token string (without “Bearer “ prefix)
§Returns

AuthenticatedUser if token is valid, error otherwise.

§Errors

Returns error if:

  • Token is malformed
  • Signature verification fails
  • Required claims are missing
  • Token is expired
  • Issuer/audience don’t match
Source

pub fn is_required(&self) -> bool

Check if authentication is required.

Source

pub fn issuer(&self) -> &str

Get the configured issuer.

Source

pub fn clear_cache(&self)

Clear the JWKS cache.

Call this if you need to force a refresh of the signing keys.

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T> Instrument for T

Source§

fn instrument(self, span: Span) -> Instrumented<Self>

Instruments this type with the provided Span, returning an Instrumented wrapper. Read more
Source§

fn in_current_span(self) -> Instrumented<Self>

Instruments this type with the current Span, returning an Instrumented wrapper. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> PolicyExt for T
where T: ?Sized,

Source§

fn and<P, B, E>(self, other: P) -> And<T, P>
where T: Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns Action::Follow only if self and other return Action::Follow. Read more
Source§

fn or<P, B, E>(self, other: P) -> Or<T, P>
where T: Policy<B, E>, P: Policy<B, E>,

Create a new Policy that returns Action::Follow if either self or other returns Action::Follow. Read more
Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
Source§

impl<V, T> VZip<V> for T
where V: MultiLane<T>,

Source§

fn vzip(self) -> V

Source§

impl<T> WithSubscriber for T

Source§

fn with_subscriber<S>(self, subscriber: S) -> WithDispatch<Self>
where S: Into<Dispatch>,

Attaches the provided Subscriber to this type, returning a WithDispatch wrapper. Read more
Source§

fn with_current_subscriber(self) -> WithDispatch<Self>

Attaches the current default Subscriber to this type, returning a WithDispatch wrapper. Read more