{"id":746,"date":"2012-06-18T18:22:48","date_gmt":"2012-06-19T01:22:48","guid":{"rendered":"https:\/\/self-issued.info\/?p=746"},"modified":"2012-06-19T22:13:24","modified_gmt":"2012-06-20T05:13:24","slug":"oauth-core-27-and-bearer-20-specifications","status":"publish","type":"post","link":"https:\/\/self-issued.info\/?p=746","title":{"rendered":"OAuth Core -27 and Bearer -20 Specifications"},"content":{"rendered":"<p><span class=\"plain\"><img decoding=\"async\" align=\"right\" src=\"https:\/\/self-issued.info\/images\/oauth_logo_120x120.png\" alt=\"OAuth logo\" \/><\/span>On June 8, draft 27 of the <a href=\"http:\/\/tools.ietf.org\/html\/draft-ietf-oauth-v2\">OAuth 2.0 Authorization Specification<\/a> and draft 20 of the <a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer.html\">OAuth 2.0 Bearer Token Specification<\/a> were published.  They addressed DISCUSS issues and COMMENTs raised for these specifications during IESG review.<\/p>\n<p>Changes made to draft-ietf-oauth-v2 were:<\/p>\n<ul>\n<li>Added character set restrictions for <code>error<\/code>, <code>error_description<\/code>, and <code>error_uri<\/code> parameters consistent with the OAuth Bearer spec.<\/li>\n<li>Added &#8220;resource access error response&#8221; as an error usage location in the OAuth Extensions Error Registry.<\/li>\n<li>Added an ABNF for all message elements.<\/li>\n<li>Corrected editorial issues identified during review.<\/li>\n<\/ul>\n<p>Changes made to draft-ietf-oauth-v2-bearer were:<\/p>\n<ul>\n<li>Added caveat about using a reserved query parameter name being counter to URI namespace best practices.<\/li>\n<li>Specified use of Cache-Control options when using the URI Query Parameter method.<\/li>\n<li>Changed title to &#8220;The OAuth 2.0 Authorization Framework: Bearer Token Usage&#8221;.<\/li>\n<li>Referenced syntax definitions for the <code>scope<\/code>, <code>error<\/code>, <code>error_description<\/code>, and <code>error_uri<\/code> parameters in the OAuth 2.0 core spec.<\/li>\n<li>Registered the <code>invalid_request<\/code>, <code>invalid_token<\/code>, and <code>insufficient_scope<\/code> error values in the OAuth Extensions Error Registry.<\/li>\n<li>Acknowledged additional individuals.<\/li>\n<\/ul>\n<p>The drafts are available at:<\/p>\n<ul>\n<li><a href=\"http:\/\/tools.ietf.org\/html\/draft-ietf-oauth-v2-27\">http:\/\/tools.ietf.org\/html\/draft-ietf-oauth-v2-27<\/a><\/li>\n<li><a href=\"http:\/\/tools.ietf.org\/html\/draft-ietf-oauth-v2-bearer-20\">http:\/\/tools.ietf.org\/html\/draft-ietf-oauth-v2-bearer-20<\/a><\/li>\n<\/ul>\n<p>HTML-formatted versions are available at:<\/p>\n<ul>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-27.html\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-27.html<\/a><\/li>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer-20.html\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-v2-bearer-20.html<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>On June 8, draft 27 of the OAuth 2.0 Authorization Specification and draft 20 of the OAuth 2.0 Bearer Token Specification were published. They addressed DISCUSS issues and COMMENTs raised for these specifications during IESG review. Changes made to draft-ietf-oauth-v2 were: Added character set restrictions for error, error_description, and error_uri parameters consistent with the OAuth [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26,25],"tags":[],"class_list":["post-746","post","type-post","status-publish","format-standard","hentry","category-oauth","category-specifications"],"_links":{"self":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/746","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=746"}],"version-history":[{"count":5,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/746\/revisions"}],"predecessor-version":[{"id":754,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/746\/revisions\/754"}],"wp:attachment":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=746"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=746"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=746"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}