Internet Engineering Task Force (ietf) the Oauth 2.0 Authorization Framework: Bearer Token Usage

Internet Engineering Task Force (ietf) the Oauth 2.0 Authorization Framework: Bearer Token Usage
复制标题

互联网工程任务组 (ietf) Oauth 2.0 授权框架:不记名令牌使用

DOI:
--
复制
发表时间:
--
期刊:
影响因子:
--
通讯作者:
M. Jones
M. Jones
中科院分区:
--
文献类型:
--
作者:
M. Jones

文献摘要

被引文献

相似文献

本规范描述了如何在 HTTP 请求中使用承载令牌来访问 OAuth 2.0 受保护的资源。拥有不记名令牌(“不记名”)的任何一方都可以使用它来访问相关资源(无需证明拥有加密密钥)。为了防止滥用,需要保护不记名代币在存储和运输过程中不被泄​​露。有关本文档当前状态、任何勘误表以及如何提供反馈的信息可在本文档发布之日生效。请仔细阅读这些文件,因为它们描述了您与本文件相关的权利和限制。从本文档中提取的代码组件必须包括信托法律条款第 4.e 节中所述的简化 BSD 许可证文本,并且在提供时不提供简化 BSD 许可证中所述的保证。
This specification describes how to use bearer tokens in HTTP requests to access OAuth 2.0 protected resources. Any party in possession of a bearer token (a "bearer") can use it to get access to the associated resources (without demonstrating possession of a cryptographic key). To prevent misuse, bearer tokens need to be protected from disclosure in storage and in transport. Information about the current status of this document, any errata, and how to provide feedback on it may be obtained at in effect on the date of publication of this document. Please review these documents carefully, as they describe your rights and restrictions with respect to this document. Code Components extracted from this document must include Simplified BSD License text as described in Section 4.e of the Trust Legal Provisions and are provided without warranty as described in the Simplified BSD License.