deep dive into the oauth RFCs this morning ☕
-
deep dive into the oauth RFCs this morning ☕
-
deep dive into the oauth RFCs this morning ☕
I found and filed a bug in Pleroma Dynamic Client Registration code
-
I found and filed a bug in Pleroma Dynamic Client Registration code
Hacked away at C2S authorization in Fedbox with @mariusor 💪
-
Hacked away at C2S authorization in Fedbox with @mariusor 💪
and just discovered @evan lovely oauth decision tree diagram
https://github.com/swicg/activitypub-api/issues/1#issuecomment-3708524521
-
undefined evan@cosocial.ca shared this topic on
-
and just discovered @evan lovely oauth decision tree diagram
https://github.com/swicg/activitypub-api/issues/1#issuecomment-3708524521
@django the part I'm not sure of is the protected resource metadata. I think that's what you use to use SaaS authorization like Okta or Auth0, or if you use a separate server like Keycloak. So, it doesn't assume that the API server is the authorization server.