{"id":487,"date":"2011-03-31T11:15:11","date_gmt":"2011-03-31T18:15:11","guid":{"rendered":"https:\/\/self-issued.info\/?p=487"},"modified":"2011-03-31T11:15:11","modified_gmt":"2011-03-31T18:15:11","slug":"oauth-2-0-bearer-token-specification-draft-04","status":"publish","type":"post","link":"https:\/\/self-issued.info\/?p=487","title":{"rendered":"OAuth 2.0 Bearer Token Specification draft -04"},"content":{"rendered":"<p><span class=\"plain\"><img decoding=\"async\" align=\"right\" src=\"https:\/\/self-issued.info\/images\/oauth_logo_120x120.png\" alt=\"OAuth logo\" \/><\/span>I&#8217;ve published <a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer-04.html\">draft 04<\/a> of the <a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer.html\">OAuth Bearer Token Specification<\/a>.  All changes were in response to working group last call feedback on draft 03.  The changes in this draft were:<\/p>\n<ul>\n<li>Added Bearer Token definition in Terminology section.<\/li>\n<li>Changed parameter name &#8220;oauth_token&#8221; to &#8220;bearer_token&#8221;.<\/li>\n<li>Added realm parameter to &#8220;WWW-Authenticate&#8221; response to comply with [RFC2617].<\/li>\n<li>Removed &#8220;[ RWS 1#auth-param ]&#8221; from &#8220;credentials&#8221; definition since it did not comply with the ABNF in [I-D.ietf-httpbis-p7-auth].<\/li>\n<li>Removed restriction that the &#8220;bearer_token&#8221; (formerly &#8220;oauth_token&#8221;) parameter be the last parameter in the entity-body and the HTTP request URI query.<\/li>\n<li>Do not require WWW-Authenticate Response in a reply to a malformed request, as an HTTP 400 Bad Request response without a WWW-Authenticate header is likely the right response in some cases of malformed requests.<\/li>\n<li>Removed OAuth Parameters registry extension.<\/li>\n<li>Numerous editorial improvements suggested by working group members.<\/li>\n<\/ul>\n<p>The draft is available at these locations:<\/p>\n<ul>\n<li><a href=\"http:\/\/www.ietf.org\/internet-drafts\/draft-ietf-oauth-v2-bearer-04.txt\">http:\/\/www.ietf.org\/internet-drafts\/draft-ietf-oauth-v2-bearer-04.txt<\/a><\/li>\n<li><a href=\"http:\/\/www.ietf.org\/internet-drafts\/draft-ietf-oauth-v2-bearer-04.xml\">http:\/\/www.ietf.org\/internet-drafts\/draft-ietf-oauth-v2-bearer-04.xml<\/a><\/li>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer-04.html\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer-04.html<\/a><\/li>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer-04.txt\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer-04.txt<\/a><\/li>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer-04.xml\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer-04.xml<\/a><\/li>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer.html\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer.html<\/a> (will point to new versions as they are posted)<\/li>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer.txt\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer.txt<\/a> (will point to new versions as they are posted)<\/li>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer.xml\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer.xml<\/a> (will point to new versions as they are posted)<\/li>\n<li><a href=\"http:\/\/svn.openid.net\/repos\/specifications\/oauth\/2.0\/\">http:\/\/svn.openid.net\/repos\/specifications\/oauth\/2.0\/<\/a> (Subversion repository, with html, txt, and html versions available)<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>I&#8217;ve published draft 04 of the OAuth Bearer Token Specification. All changes were in response to working group last call feedback on draft 03. The changes in this draft were: Added Bearer Token definition in Terminology section. Changed parameter name &#8220;oauth_token&#8221; to &#8220;bearer_token&#8221;. Added realm parameter to &#8220;WWW-Authenticate&#8221; response to comply with [RFC2617]. Removed &#8220;[ [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26,25],"tags":[],"class_list":["post-487","post","type-post","status-publish","format-standard","hentry","category-oauth","category-specifications"],"_links":{"self":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/487","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=487"}],"version-history":[{"count":4,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/487\/revisions"}],"predecessor-version":[{"id":491,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/487\/revisions\/491"}],"wp:attachment":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=487"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=487"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=487"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}