[OAUTH-WG] oauth - Not having a session at IETF 110

2021-01-12 Thread IETF Meeting Session Request Tool
Rifaat Shekh-Yusef, a chair of the oauth working group, indicated that the oauth working group does not plan to hold a session at IETF 110. This message was generated and sent by the IETF Meeting Session Request Tool. ___ OAuth mailing list

Re: [OAUTH-WG] Tenancy in OAuth

2021-01-12 Thread Vladimir Dzhuvinov
Hello Jaap, Justin made a good overview of the available OAuth facilities when dealing with multiple resource servers or resource server tenants. If you have control over the resource server, i.e. the token validation is going to happen in one place, then you have plenty of freedom to find out

Re: [OAUTH-WG] Tenancy in OAuth

2021-01-12 Thread Justin Richer
Hi Jaap, There have been a number of efforts to address this kind of thing in the OAuth world. You can definitely use a special scope to encode this value, which has the benefit of fitting into the implementation limitations of nearly all OAuth systems out there. The “resource” parameter can

[OAUTH-WG] (no subject)

2021-01-12 Thread Bunh Tha Chau
Thanks ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

[OAUTH-WG] Tenancy in OAuth

2021-01-12 Thread Jaap Francke
Hi, I’m looking into the topic of tenancy. A multi-tenant service can be considered as an OAuth Resource Server managing resources of different tenants. An AS makes authorization decisions and communicates these using scopes, so one way would be to ‘encode’ the tenant into the scope values.

Re: [OAUTH-WG] OAuth Digest, Vol 147, Issue 3

2021-01-12 Thread 이천욱
You send not mail please Loose mail only Please send not mail 2021년 1월 12일 (화) 오전 5:02, 님이 작성: > Send OAuth mailing list submissions to > oauth@ietf.org > > To subscribe or unsubscribe via the World Wide Web, visit > https://www.ietf.org/mailman/listinfo/oauth > or, via email,