Logo des Repositoriums
 

Managing authorization grants beyond OAuth 2

dc.contributor.authorImbault, Fabien
dc.contributor.authorRicher, Justin
dc.contributor.authorParecki, Aaron
dc.contributor.editorRoßnagel, Heiko
dc.contributor.editorSchunck, Christian H.
dc.contributor.editorMödersheim, Sebastian
dc.date.accessioned2021-05-20T13:12:13Z
dc.date.available2021-05-20T13:12:13Z
dc.date.issued2021
dc.description.abstractThe Grant Negotiation and Authorization Protocol, also known as GNAP, is currently being formulated in an IETF working group. GNAP gives the opportunity to reflect on the strengths and weaknesses of OAuth 2, and highlights the new directions to improve digital access. We compare with the approach taken by OAuth 2 and show that designing authorization servers primarily as “token issuers” provides insightful consequences for security and privacy.en
dc.identifier.isbn978-3-88579-706-7
dc.identifier.pissn1617-5468
dc.identifier.urihttps://dl.gi.de/handle/20.500.12116/36492
dc.language.isoen
dc.publisherGesellschaft für Informatik e.V.
dc.relation.ispartofOpen Identity Summit 2021
dc.relation.ispartofseriesLecture Notes in Informatics (LNI) - Proceedings, Volume P-312
dc.subjectauthorization protocol
dc.subjectOAuth 2
dc.subjectGNAP
dc.titleManaging authorization grants beyond OAuth 2en
dc.typeText/Conference Paper
gi.citation.endPage198
gi.citation.publisherPlaceBonn
gi.citation.startPage193
gi.conference.date01.-02. June 2021
gi.conference.locationCopenhagen, Denmark
gi.conference.sessiontitleShort Paper

Dateien

Originalbündel
1 - 1 von 1
Vorschaubild nicht verfügbar
Name:
proceedings-16.pdf
Größe:
147.37 KB
Format:
Adobe Portable Document Format