diff --git a/jans-auth-server/server/src/main/java/io/jans/as/server/model/token/IdTokenFactory.java b/jans-auth-server/server/src/main/java/io/jans/as/server/model/token/IdTokenFactory.java index b7e680d37a1..72ae4d55eb6 100644 --- a/jans-auth-server/server/src/main/java/io/jans/as/server/model/token/IdTokenFactory.java +++ b/jans-auth-server/server/src/main/java/io/jans/as/server/model/token/IdTokenFactory.java @@ -142,7 +142,7 @@ private void fillClaims(JsonWebResponse jwr, jwr.getClaims().setExpirationTime(expiration); jwr.getClaims().setIssuedAt(issuedAt); - jwr.setClaim("code", UUID.randomUUID().toString()); + jwr.setClaim("random", UUID.randomUUID().toString()); // provided uniqueness of id_token for same RP requests, oxauth: 1493 if (executionContext.getPreProcessing() != null) { executionContext.getPreProcessing().apply(jwr);