The JWT JWA specification REQUIRESREQUIRES that HMAC signing keys have lengths equal to or greater than the signature byte array length.
Updated to reflect more recent JJWT API and documentation and recommended practices.
Les Hazlewood
- 19.8k
- 14
- 71
- 79