The OIDC Provider from BankID supports two general classes of Access Tokens. 

The Authorization Context of an Access Token referes to attributes such as:

The OIDC Provider issues different types of Access Tokens to OIDC Clients depending on the requested types of Protected Resources (as given by the Scopes and Claims contained in the request). The OIDC Provider supports 

 

The default type of Access Token, which is used by the TINFO (Userinfo) service, is a standard Bearer Token that is general.   is not associated with any particular value for the audience (aud) attribute.

 

be used by any Protected Resource. Hence, the default token audience (aud) 

 

 

 Each particular type of Access Token is associated with a Supplementary Services as described separately: