Jwt authentication how to build asap_key_server for sso


I’m using mysql to authentication. Now i want to use jwt authentication for sso.
But i dont know how to build a asap_key_server and authentication workflow using asap key server.
Could you explain more about that and tell me how can build a asap key server.

The asap key server is a web server just holding a public keys, where you sign your jwt tokens using the private key and prosody just downloads the public key to verify the tokens.


kid: is in the header of token jwt that is public key? if i want save it on the jitsi serve how can i config kid parameter? And i dont know how can make a public key?
how can make a public key?