From 02a2dbef69553595b8e12385da1209cba94fde49 Mon Sep 17 00:00:00 2001 From: Gusted Date: Sat, 16 Nov 2024 15:03:28 +0100 Subject: [PATCH] feat: default to generating EdDSA for OAuth JWT signing key --- modules/setting/oauth2.go | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/modules/setting/oauth2.go b/modules/setting/oauth2.go index 49288e2639..c989460e5d 100644 --- a/modules/setting/oauth2.go +++ b/modules/setting/oauth2.go @@ -106,7 +106,7 @@ var OAuth2 = struct { AccessTokenExpirationTime: 3600, RefreshTokenExpirationTime: 730, InvalidateRefreshTokens: true, - JWTSigningAlgorithm: "RS256", + JWTSigningAlgorithm: "EdDSA", JWTSigningPrivateKeyFile: "jwt/private.pem", MaxTokenLength: math.MaxInt16, DefaultApplications: []string{"git-credential-oauth", "git-credential-manager", "tea"},