RFC 6749 - The OAuth 2.0 Authorization Framework
The OAuth 2.0 authorization framework enables a third-party application to obtain limited access to an HTTP service, either on behalf of a resource owner by orchestrating an approval interaction between the resource owner and the HTTP service, or by allowing the third-party application to obtain access on its own behalf. This specification replaces and obsoletes the OAuth 1.0 protocol described in RFC 5849. [STANDARDS-TRACK]
Internet Engineering Task Force (IETF) D. Hardt, Ed. Request for Comments: 6749 Microsoft Obsoletes: 5849 October 2012 Category: Standards Track ISSN: 2070-1721 Abstract The OAuth 2.0 authorization framework enables a third-party application to obtain limited access to an HTTP service, either on behalf of a resource owner by orchestrating an approval interaction between the resource owner and the HTTP service, or by allowing the third-party application to obtain access on its own behalf. This specification replaces and obsoletes the OAuth 1.0 protocol described in RFC 5849. Status of This…
saved by
related reading
- RFC 9700: Best Current Practice for OAuth 2.0 Securitydatatracker.ietf.org
- What is OAuth 2.0? Definition & Examples | Auth0auth0.com
- Signing in with Google - OAuth 2.0 Simplifiedoauth.com
- Threat actors misuse OAuth applications to automate financially driven attacksmicrosoft.com
- Authorization Academy - What is Authorization?osohq.com
- When MFA isn’t an option: The legacy of ROPC | Red Canaryredcanary.com
- OpenAI Platformplatform.openai.com
- Secure AI Agent & User Authentication | Auth0auth0.com
- The Indytheindy.org
- Understanding The Web Security Model, Part IV: Cross-Origin Resource Sharing (CORS)educatedguesswork.org
- How to Build a Role-Based Access Control Layerosohq.com
- REST API: Everything You Need to Know | Directusdirectus.io