.Nat Zone

Digital Identity et al.

「 ietf 」 一覧

JWS, JWT, and others now RFC!

  2015/05/20    identity, OAuth , , , ,

It has taken soooo long [1], but JSON Web Signature (JWS), JSON Web Token (JWT) , together with other JW* suite finally are Standard Track RFC[2] now. They are [RFC7515] and [RFC7519] respectively. For those of you who are not familiar with JWS and …

Registered Token Profile for OAuth 2.0

  2012/08/03    identity, OAuth, OpenID Connect , , , ,

So, ID Token in OpenID connect is audience restricted to the client while the OAuth bearer access token is audience restricted to the protected resource. It is a bearer. It can be used by anybody. It is a common model …