Microsoft.IdentityModel.Protocols.OpenIdConnect 8.21.0

IdentityModel Extensions for .NET

Nuget

The IdentityModel Extensions for .NET library provides robust tools to enhance authentication and authorization workflows in your .NET applications. Backed by the Entra team, this library simplifies working with OpenID Connect (OIDC), OAuth2.0, and JSON Web Tokens (JWT) in .NET.

Whether you're building secure APIs, implementing token validation, or managing claims, this library is designed to handle the heavy lifting for you.

Why IdentityModel?

  • Widely Adopted: Trusted by thousands of developers to integrate OIDC and OAuth2.0 standards.
  • Secure by Design: Built with security as a priority to reduce common vulnerabilities.
  • Extensible: Easily extend or customize for advanced use cases.
  • Battle hardened: Validates 5+ trillion requests daily, and growing.

Versions

You can find the release notes for each version here. Older versions can be found here.

Version Lifecycle and Support Matrix

See Long Term Support policy for details.

Major Version Currently Supported Version Status
8.x from 8.0.1 to Nuget Active (Current) - Tied to .NET 9 (STS) & 10 (LTS) ~ Nov, 2028
7.x 7.7.1 Supported (LTS) through .NET 8 LTS lifetime Nov 10, 2026.
⚠️Versions < 7.7.1 not supported.
5.x 5.7.0 Supported (LTS), tied to the Microsoft.Owin.Security.JWT 4.2.2 lifetime.
⚠️Versions < 5.7.0 not supported.

IdentityModel 8.x

Version 8.x introduces significant updates and improvements:

  • Enhanced Performance: Optimized token validation to handle high-throughput scenarios.
  • .NET Compatibility: Fully compatible with .NET 9.

🧭LTS: Supported through .NET 9 LTS lifetime: May 12, 2026 + .NET 10 LTS (~3 years).

IdentityModel 7.x

IdentityModel 7x introduced several improvements related to serialization and consistency in the API, which provide a better user experience for developers, as well as full AOT compatibility on .NET, and considerable performance improvements compared to IdentityModel 6x.

🧭LTS: Supported through .NET 8 LTS lifetime: Nov 10, 2026.

⚡Recommendation: Move to 8.x.

IdentityModel 6.x

🧭Deprecated: Support ended with .NET 7 LTS lifetime: May 2024.

⚡Action: Move to 8.x.

IdentityModel 5.x

Not a recommended version

🧭LTS: Supported for Microsoft.Owin.Security.JWT

⚡Action: Move to 8.x.

Samples and Documentation

The scenarios supported by IdentityModel extensions for .NET are described in Scenarios. The libraries are in particular used part of ASP.NET security to validate tokens in ASP.NET Web Apps and Web APIs. To learn more about token validation, and find samples, see:

Community Help and Support

Report a bug or request a feature directly in the GitHub repo.

Have a design proposal? Please submit a design proposal before starting work on a PR to ensure it means the goals/objectives of this library and it's priorities.

We leverage Stack Overflow to work with the community on supporting Microsoft Entra and its SDKs, including this one! We highly recommend you ask your questions on Stack Overflow (we're all on there!) Also browse existing issues to see if someone has had your question before.

We recommend you use the "identityModel" tag so we can see it! Here is the latest Q&A on Stack Overflow for IdentityModel: https://stackoverflow.com/questions/tagged/identityModel

Security Reporting

See SECURITY.md

Contributing

All code is licensed under the MIT license and we triage actively on GitHub. We enthusiastically welcome contributions and feedback. See Contributing.md for guidelines, branch information, build instructions, and legalese.

License

Copyright (c) Microsoft Corporation. All rights reserved. Licensed under the MIT License (the "License");

We Value and Adhere to the Microsoft Open Source Code of Conduct

This project has adopted the Microsoft Open Source Code of Conduct. For more information see the Code of Conduct FAQ or contact opencode@microsoft.com with any additional questions or comments.

Showing the top 20 packages that depend on Microsoft.IdentityModel.Protocols.OpenIdConnect.

Packages Downloads
Microsoft.Graph.Core
Microsoft Graph Core Client Library implements core functionality used by Microsoft Graph client libraries.
21
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/dotnet/aspnetcore/tree/954f61dd38b33caa2b736c73530bd5a294174437
18
Microsoft.Graph.Core
Microsoft Graph Core Client Library implements core functionality used by Microsoft Graph client libraries.
16
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/dotnet/aspnetcore/tree/7c810658463f35c39c54d5fb8a8dbbfd463bf747
16
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/dotnet/aspnetcore/tree/564969bca155b40432d101ec35f24a0e81e6afa0
15
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/aspnet/Security/tree/93926543f8469614c2feb23de8a8c0561b8b2463
15
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/aspnet/AspNetCore/tree/2b7e994b8a304700a09617ffc5052f0d943bbcba
15
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/dotnet/aspnetcore/tree/fc93e595ceffbb1e3e85532bf454e92a6a80dd6b
15
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/dotnet/aspnetcore/tree/47576478939fdd59b4400ad135f47938af486ab3
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/aspnet/AspNetCore/tree/9699b939f94b7524a178821d78addefa5af5d750
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/aspnet/AspNetCore/tree/0a2e366eaf4d29b24b9a98e5782a04bef573189e
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/aspnet/AspNetCore/tree/458d97420a173fe87487b58ec4aa47a4c9dc4710
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/aspnet/AspNetCore/tree/7e8bbb70b266b2fdaf0b11ec47fb3077761fb6bf
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/dotnet/aspnetcore/tree/1d696053fcd6735aaac1902afdb0b92edbf43e71
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/aspnet/AspNetCore/tree/cf2c5c9c6dca430b97aa96429b84d0da07eb77f1
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/aspnet/AspNetCore/tree/b908e913e3befcfe241f3294509e6d9570acc07b
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/aspnet/AspNetCore/tree/21d42143378ad6cc4bcbaebfda5f3acddf13aa47
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/dotnet/aspnetcore/tree/6939d9ab90aa1e57bb0619bb28819f7bcbfdbb54
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/dotnet/aspnetcore/tree/009e1ccafde4086ea52999e878f6e7aa5a7c4ccf
14
Microsoft.AspNetCore.Authentication.JwtBearer
ASP.NET Core middleware that enables an application to receive an OpenID Connect bearer token. This package was built from the source code at https://github.com/dotnet/aspnetcore/tree/d0ca5a8d20ac50a33d5451e998a5d411a810c8d7
14

Version Downloads Last updated
8.23.0 1 09/21/2026
8.22.0 1 09/21/2026
8.21.0 1 09/21/2026
8.20.0 2 07/24/2026
8.19.2 2 07/24/2026
8.19.1 4 06/15/2026
8.19.0 3 06/17/2026
8.18.0 5 05/05/2026
8.17.0 6 04/27/2026
8.16.0 6 02/23/2026
8.15.0 8 01/16/2026
8.14.0 9 09/14/2025
8.13.1 9 09/14/2025
8.13.0 10 09/14/2025
8.12.1 10 06/24/2025
8.12.0 10 06/24/2025
8.11.0 11 06/24/2025
8.10.0 12 05/28/2025
8.9.0 11 05/26/2025
8.8.0 10 05/26/2025
8.7.0 11 05/26/2025
8.6.1 12 03/11/2025
8.6.0 13 02/27/2025
8.5.0 11 05/26/2025
8.4.0 11 05/26/2025
8.3.1 11 05/26/2025
8.3.0 10 05/26/2025
8.2.1 12 05/26/2025
8.2.0 13 02/27/2025
8.1.2 10 05/26/2025
8.1.1 11 05/26/2025
8.0.1 10 05/26/2025
8.0.0 11 05/26/2025
8.0.0-preview1 10 02/18/2025
7.7.3 2 07/24/2026
7.7.2 4 06/17/2026
7.7.1 11 05/26/2025
7.7.0 10 05/26/2025
7.6.3 14 03/11/2025
7.6.2 10 05/26/2025
7.6.1 10 05/26/2025
7.6.0 10 05/26/2025
7.5.2 10 05/26/2025
7.5.1 10 05/26/2025
7.5.0 10 05/26/2025
7.4.1 11 05/26/2025
7.4.0 10 05/26/2025
7.4.0-preview1 7 05/29/2025
7.3.1 10 05/26/2025
7.3.0 11 05/26/2025
7.2.0 10 05/26/2025
7.1.2 13 05/26/2025
7.0.3 11 05/26/2025
7.0.2 10 05/26/2025
7.0.1 13 02/27/2025
7.0.0 10 05/26/2025
7.0.0-preview5 10 02/18/2025
7.0.0-preview4 10 02/18/2025
7.0.0-preview3 10 02/18/2025
7.0.0-preview2 10 02/18/2025
7.0.0-preview 11 05/28/2025
6.36.0 13 02/18/2025
6.35.1 13 02/18/2025
6.35.0 14 02/18/2025
6.34.0 13 02/18/2025
6.33.0 13 02/18/2025
6.32.3 13 02/18/2025
6.32.2 13 02/18/2025
6.32.1 15 02/18/2025
6.32.0 14 02/18/2025
6.31.0 13 02/18/2025
6.30.1 13 02/18/2025
6.30.0 13 02/18/2025
6.29.0 13 02/18/2025
6.28.1 13 02/18/2025
6.27.0 20 01/16/2025
6.26.1 17 01/18/2025
6.26.0 13 02/18/2025
6.25.1 14 02/18/2025
6.25.0 14 02/18/2025
6.24.0 14 02/18/2025
6.23.1 13 02/18/2025
6.23.0 14 02/18/2025
6.22.1 13 02/18/2025
6.22.0 15 02/18/2025
6.21.0 13 02/18/2025
6.20.0 13 02/18/2025
6.19.0 13 02/18/2025
6.18.0 14 02/18/2025
6.17.0 13 02/18/2025
6.16.0 13 02/18/2025
6.15.1 13 02/18/2025
6.15.0 13 02/18/2025
6.14.1 13 02/18/2025
6.14.0 14 02/18/2025
6.13.1 14 02/18/2025
6.12.2 13 02/18/2025
6.12.1 13 02/18/2025
6.12.0 14 02/18/2025
6.11.1 13 02/18/2025
6.11.0 13 02/18/2025
6.10.2 14 02/18/2025
6.10.1 14 02/18/2025
6.10.0 13 02/18/2025
6.9.0 10 05/26/2025
6.8.0 13 02/27/2025
6.7.2-preview-10803222715 8 05/30/2025
6.7.1 11 05/26/2025
6.6.0 12 02/27/2025
6.5.1 11 05/26/2025
6.5.0 10 05/26/2025
5.7.2 0 09/25/2026
5.7.1 2 07/24/2026
5.7.0 10 05/26/2025
5.6.0 13 02/27/2025
5.5.0 11 05/26/2025
5.4.0 10 05/26/2025
5.3.0 11 05/26/2025
5.2.4 12 02/18/2025
5.2.2 10 05/26/2025
5.2.1 12 02/27/2025
2.1.5 10 05/26/2025
2.1.4 10 05/26/2025
2.1.3 11 05/26/2025
2.1.2 10 05/26/2025
2.0.0 10 05/26/2025