タグ

ブックマーク / oauth.net (3)

  • OAuth Core 1.0

     This specification was obsoleted by OAuth Core 1.0 Revision A on June 24th, 2009 to address a session fixation attack. The OAuth Core 1.0 Revision A specification is being obsoleted by the proposed IETF draft draft-hammer-oauth. The draft is currently pending IESG approval before publication as an RFC. Implementers should use RFC 6749: The OAuth 2.0 Authorization Framework instead of this specif

    kmachu
    kmachu 2007/12/05
    正式リリース。
  • OAuth Community Site

    An open protocol to allow secure authorization in a simple and standard method from web, mobile and desktop applications. Learn more about OAuth 2.0 » For app developers... If you're building... web applications desktop applications mobile applications JavaScript or browser-based apps OAuth is a way to get access to protected data from an application. It's safer and more secure than asking users t

    kmachu
    kmachu 2007/09/25
    id:hiro_y いいと思います。userがcosumerに認可を与え、SPがそのconsumerを認証すると理解しています。consumerやSPがuserを認証する方法はspecの対象外ですね。
  • OAuth 2.0 — OAuth

    OAuth 2.0 OAuth 2.0 is the industry-standard protocol for authorization. OAuth 2.0 focuses on client developer simplicity while providing specific authorization flows for web applications, desktop applications, mobile phones, and living room devices. This specification and its extensions are being developed within the IETF OAuth Working Group. OAuth 2.1 is an in-progress effort to consolidate OAut

    kmachu
    kmachu 2007/09/23
    認証というより認可の仕様っぽい。
  • 1