What app do you intend to implement? It could use the authorization code flow in order to also obtain refresh tokens. Authorization servers may also support token refreshment for clients w/o secrets.
Regards, Torsten. Gesendet mit BlackBerry® Webmail von Telekom Deutschland -----Original Message----- From: Eran Hammer-Lahav <[email protected]> Sender: [email protected] Date: Thu, 21 Apr 2011 09:34:32 To: Doug Tangren<[email protected]>; [email protected]<[email protected]> Subject: Re: [OAUTH-WG] implicit clients and refresh tokens _______________________________________________ OAuth mailing list [email protected] https://www.ietf.org/mailman/listinfo/oauth _______________________________________________ OAuth mailing list [email protected] https://www.ietf.org/mailman/listinfo/oauth
