main
Device Bound Session Credentials (DBSC) for cookie authentication (prototype) (#67388)
Update all built-in AuthenticationSchemeOptions to initialize Events (#62595)
Add AuthN/AuthZ metrics (#59557)
Populate the ValidIssuer and the ValidAudience properties of the JwtBearerOptions.TokenValidationParameters. (#52821)
chore : Remove unwanted `using` statement (#39176)
Include scheme in certificate cache for Authentication middleware (#66673)
JsonSubKeyClaim arrays (#46878)
Clear cached session key in cookie auth handler sign-out (#67049)
Obsolete and replace ISystemClock in Security, Identity #47472 (#47717)
#62774 Fix JWT Bearer unit tests failing if local timezone is UTC+N (#62775)
Harden SocialSample FailureMessage rendering and add READMEs into samples (#67995)
Add support for reading default scheme from config (#41987)
Rename Microsoft.Aspnetcore.Testing to Microsoft.AspNetCore.InternalTesting (#51713)
Don't require configuration for Auth (#45095)
security to project ref (#4618)