Hi Denise. Sorry, but unfortunately I’m not really clear on what you are trying to accomplish here. I couldn’t find any reference to Auth0 in the GH repo. The token you shared in the first question definitely doesn’t come from Auth0. Its payload is empty, and it doesn’t contain the crypto signature.
If you are trying to use the JwtBearerAuthentication middleware in a .Net Core app (which looks for a JWT token as a mean of authorizing each request to the API), then you need to have a valid token issuer (like Auth0).
The basic flow would be like this:
- The client application (your Angular app) requests a token from an authorization server (like Auth0).
- The authorization server authenticates the user, ask for consent if required and returns a signed token to the client application
- The client application makes a request to the backend API, putting the token in the
- The backend API (with the JwtBearerAuthentication middleware) validates the token (issuer, expiration, audience, signature) and, if valid, authorizes the request.
If you are looking to use Auth0 to issue the access token, then see these tutorials: ASP.Net Core backend API and Angular 2+ SPA.