External Authentication – Added
The endpointCertificate object now accepts an optional validationMode property that controls how the server certificate of your endpoint is validated for mTLS. Supported values are PinLeafThumbprint (default when omitted, existing behaviour) and SignerChainValidationOnly. The same property applies to oAuthConfiguration.clientCredentialsConfig.endpointCertificate, and is returned when a configuration is retrieved. Existing configurations are unaffected.
Affected Endpoints
- POST
/externalauthenticationcommand/api/configuration - PUT
/externalauthenticationcommand/api/configuration - GET
/externalauthenticationquery/api/configuration/{configurationId}