Добавил:
AAA1
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
Опубликованный материал нарушает ваши авторские права? Сообщите нам.
Вуз:
Предмет:
Файл:4-1 Електрона комерція / oauth-tutorial (1).ppt
X
- •Hannes Tschofenig, Blaine Cook
- •Acknowledgements
- •The Problem: Secure Data Sharing
- •Example OAuth Exchange
- •Entities
- •User navigates to Resource Client
- •User authenticated by Authorization Server
- •User authorizes Resource Consumer to access Resource Server
- •Resource Client calls the Resource Server API
- •Remark: Authentication
- •Remark: Authorization
- •Remark: Authorization, cont.
- •Remark: Authorization, cont.
- •Remark: Authorization, cont.
- •Remark: Prior-Registration
- •Remark,
- •History
- •History
- •History, cont.
- •History, cont.
- •Entities
- •Scope of the OAuth WG
- •Work Areas
- •Web Server Flow
- •A little bit about OAuth security…
- •Work Areas
- •“Bearer Token”
- •“Message Signing”
- •Conclusion
- •Backup Slides
- •JavaScript Flow
- •Native Application Flow
- •Autonomous Flow
- •Device Flow
Conclusion
•Open Web Authentication (OAuth) is developed in the IETF to provide delegated authentication for Web- based environments.
–Usage for non-Web based applications has been proposed as well.
•Work is in progress and re-chartering will expand the work to include new features and use cases as well as security.
•Join the OAuth mailing list at http://datatracker.ietf.org/wg/oauth/charter/ to make your contribution.
02/02/21 |
IETF #79, OAuth Tutorial Beijing |
31 |
Backup Slides
02/02/21 |
IETF #79, OAuth Tutorial Beijing |
32 |
JavaScript Flow
(User Agent Flow in Draft)
02/02/21 |
IETF #79, OAuth Tutorial Beijing |
34 |
Native Application Flow
02/02/21 |
IETF #79, OAuth Tutorial Beijing |
36 |
Autonomous Flow
02/02/21 |
IETF #79, OAuth Tutorial Beijing |
38 |
Device Flow
02/02/21 |
IETF #79, OAuth Tutorial Beijing |
40 |
02/02/21 |
IETF #79, OAuth Tutorial Beijing |
41 |
Соседние файлы в папке 4-1 Електрона комерція
