What's new in OAuth 2.1?

Опубликовано: 01 Ноябрь 2024
на канале: Identifire
1,298
37

What's new in #OAuth 2.1 by Torsten Lodderstedt

Torsten is the Chief Technology Officer (CTO) at yes.com, a key contributor to many identity standards and also an author of the OAuth 2.1 specification.

The OAuth 2.1 authorization framework enables a third-party application to obtain limited access to an HTTP service, either on behalf of a resource owner by orchestrating an approval interaction between the resource owner and the HTTP service, or by allowing the third-party application to obtain access on its own behalf. The OAuth 2.1 specification replaces and obsoletes the OAuth 2.0 Authorization Framework described in RFC 6749.