{"id":1276,"date":"2014-08-21T16:06:10","date_gmt":"2014-08-21T23:06:10","guid":{"rendered":"https:\/\/self-issued.info\/?p=1276"},"modified":"2014-08-21T16:06:10","modified_gmt":"2014-08-21T23:06:10","slug":"working-group-draft-for-oauth-2-0-act-as-and-on-behalf-of","status":"publish","type":"post","link":"https:\/\/self-issued.info\/?p=1276","title":{"rendered":"Working Group Draft for OAuth 2.0 Act-As and On-Behalf-Of"},"content":{"rendered":"<p><span class=\"plain\"><img decoding=\"async\" align=\"right\" src=\"https:\/\/self-issued.info\/images\/oauth_logo_120x120.png\" alt=\"OAuth logo\"\/><\/span>There&#8217;s now an OAuth working group draft of the OAuth 2.0 Token Exchange specification, which provides Act-As and On-Behalf-Of functionality for OAuth 2.0.  This functionality is deliberately modelled on the same functionality present in WS-Trust.<\/p>\n<p>Here&#8217;s a summary of the two concepts in a nutshell:   <strong>Act-As<\/strong> indicates that the requestor wants a token that contains <em>claims about two distinct entities<\/em>: the requestor and an external entity represented by the token in the <code>act_as<\/code> parameter.   <strong>On-Behalf-Of<\/strong> indicates that the requestor wants a token that contains <em>claims only about one entity<\/em>: the external entity represented by the token in the <code>on_behalf_of<\/code> parameter.<\/p>\n<p>This draft is identical to the <a href=\"https:\/\/self-issued.info\/?p=1252\">previously announced token exchange draft<\/a>, other than that is a working group document, rather than an individual submission.<\/p>\n<p>This specification is available at:<\/p>\n<ul>\n<li><a href=\"http:\/\/tools.ietf.org\/html\/draft-ietf-oauth-token-exchange-00\">http:\/\/tools.ietf.org\/html\/draft-ietf-oauth-token-exchange-00<\/a><\/li>\n<\/ul>\n<p>An HTML formatted version is also available at:<\/p>\n<ul>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-token-exchange-00.html\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-token-exchange-00.html<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>There&#8217;s now an OAuth working group draft of the OAuth 2.0 Token Exchange specification, which provides Act-As and On-Behalf-Of functionality for OAuth 2.0. This functionality is deliberately modelled on the same functionality present in WS-Trust. Here&#8217;s a summary of the two concepts in a nutshell: Act-As indicates that the requestor wants a token that contains [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[8,27,26,25],"tags":[],"class_list":["post-1276","post","type-post","status-publish","format-standard","hentry","category-claims","category-json","category-oauth","category-specifications"],"_links":{"self":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/1276","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1276"}],"version-history":[{"count":3,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/1276\/revisions"}],"predecessor-version":[{"id":1279,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/1276\/revisions\/1279"}],"wp:attachment":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1276"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1276"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1276"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}