The current implementation configures the JWT validator simply checks if the audience matches one of the client ids in the Connections config