What You Configure
- Base URL The public HTTPS URL of your Resource Server. This must be accessible from Fiskil.
-
JWKS URL
The JWKS endpoint used to validate Fiskil Authentication JWTs.
- You retrieve your isntance’s public key from this URL
- Firewall Allow-Lists (optional) Restrict inbound traffic to requests originating from Fiskil IPs visible in the Resource Server menu.
Best Practices
- Always use distinct Resource Server URLs for staging and production.
- Use firewall allow-lists for production environments.