JWE Decrypt Configuration
Parameters
See plugin common configurations for configuration options available to all plugins.
Consumers
The following are plugin attributes available for configurations on consumers.
-
key—string· requiredA unique key that identifies the credential for a consumer.
-
secret—string· requiredValid values: 32 bytes
A shared symmetric key. Use a secret reference, such as
$env://...or$secret://.... -
is_base64_encoded—boolean· optional · default:falseSet to true if the secret is base64url encoded. The decoded secret must still be 32 bytes.
Routes or Services
The following are plugin attributes available for configurations on routes or services.
-
header—string· required · default:AuthorizationThe header to get the token from.
-
forward_header—string· required · default:AuthorizationName of the header that passes the plaintext to the upstream.
-
strict—boolean· optional · default:trueIf true, return a 403 error when the encrypted plugin token is missing. If false, continue when the token is not found.