From 864cc9a65aa13d9da3bf9480fa5d4bf0c949cc24 Mon Sep 17 00:00:00 2001 From: Andrew Millington Date: Fri, 25 May 2018 11:34:05 +0100 Subject: [PATCH] Clarify where public and private key are used --- installation.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/installation.md b/installation.md index 2f69f145..31984e98 100755 --- a/installation.md +++ b/installation.md @@ -22,7 +22,7 @@ The repositories are expected to return (on success) instances of [entity interf ## Generating public and private keys -The public/private key pair is used to sign and verify JWTs tramsitted. To generate the private key run this command on the terminal: +The public/private key pair is used to sign and verify JWTs tramsitted. The _Authorization Server_ possesses the public key to sign tokens and the _Resource Server_ possesses the corresponding private key to verify the signatures. To generate the private key run this command on the terminal: ~~~ shell openssl genrsa -out private.key 2048