jwks_uri generates a kid value different for each server in a site configuration. This can cause a validation error for an ID Token signature .
Steps to Reproduce:
1. Install and setup two OpenAM servers in a site configuration.
2. Setup the OpenAM servers as OIDC OP -
3. Get an ID token (including a "kid" value).
4. Stop the server that returned the ID token.
5. Access to the jwk_uri and look for the kid value.
-> The value is not found.