[mitreid-connect] OAuth 2 Token exchange support

Luiz Omori luiz.omori at duke.edu
Thu Apr 26 08:56:23 EDT 2018


+1. Indeed, the cross domain functionality within OAuth2 would help a lot when try to bridge legacy non-OAuth2 applications APIs that require OAuth2 and SSO is desirable. The delegation and impersonation aspects of it also might intersect well with some UMA/HEART aspects.

Regards,
Luiz

From: <mitreid-connect-bounces at mit.edu> on behalf of Eric Chen <Eric.Chen at uxpsystems.com>
Date: Wednesday, April 25, 2018 at 5:24 PM
To: "mitreid-connect at mit.edu" <mitreid-connect at mit.edu>
Subject: [mitreid-connect] OAuth 2 Token exchange support

Hello Justin,

This token exchange draft (https://tools.ietf.org/html/draft-ietf-oauth-token-exchange-13)<https://urldefense.proofpoint.com/v2/url?u=https-3A__tools.ietf.org_html_draft-2Dietf-2Doauth-2Dtoken-2Dexchange-2D13-29&d=DwMGaQ&c=imBPVzF25OnBgGmVOlcsiEgHoG1i6YHLR0Sj_gZ4adc&r=R6m41WT3w_KtulQAsSIxc_C2mwuKoWSycEMpss0QQJA&m=gN5VttDXM-_RQmkJnPXvTHA5refcvfXIzxSOcOhQ3DI&s=k9DotML05tn12whu2wD_KlTye571akw8_3lxmOOEyyM&e=> is a very reasonable proposal.
Is there any plan to support this in MitreID OIDC?


Thanks,
Eric


-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.mit.edu/pipermail/mitreid-connect/attachments/20180426/af28ec33/attachment.html


More information about the mitreid-connect mailing list