May 22, 2018 08:40 PM|mgebhard|LINK
To me it seems weird to make that a claim as I am not really sure what your getting from it, if you then break up everything in that role as a separate claim. Why not just make a role claim then?
I'm confused why you focused on a role claim. If you feel the approach is "weird" then don't use it. I have a need for this approach as I use an identity server that passed claims in a JWT to the client.