...
JSON Web Key Set Document
Advanced Asymmetric Request Object signature signing operations , and ID Token and / UserInfo response encryption, both require the RP to publish signing and encryption public keys in its Key Set Document. This is presented to the OP as the jwks_uri
. To enable the profile endpoint, the following profile bean must be added to the shibboleth.UnverifiedRelyingParty bean:
...