Robuta

Sponsor of the Day: Jerkmate
https://datatracker.ietf.org/doc/html/draft-ietf-oauth-device-flow-02 draft-ietf-oauth-device-flow-02 OAuth 2.0 Device Flow (Internet-Draft, 2016) draft ietf oauthdeviceflow02 https://datatracker.ietf.org/doc/html/draft-ietf-oauth-spop-11 draft-ietf-oauth-spop-11 Proof Key for Code Exchange by OAuth Public Clients (Internet-Draft, 2015) draft ietf oauthspop11 https://datatracker.ietf.org/doc/draft-ietf-oauth-cross-device-security/ draft-ietf-oauth-cross-device-security-16 - Cross-Device Flows: Security Best Current Practice This document describes threats against cross-device flows along with practical mitigations, protocol selection guidance, and a summary of formal analysis... draft ietf oauthcross devicesecurity 16best currentflows https://datatracker.ietf.org/doc/draft-ietf-oauth-rfc7523bis/ draft-ietf-oauth-rfc7523bis-11 - Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication... This document updates RFC7521, RFC7522, RFC7523 and RFC9126 with respect to the treatment of audience values in OAuth 2.0 Client Assertion Authentication and... draft ietf oauthjson web token11 updates2 0client authentication https://datatracker.ietf.org/doc/html/draft-ietf-oauth-json-web-token-11 draft-ietf-oauth-json-web-token-11 JSON Web Token (JWT) (Internet-Draft, 2013) draft ietf oauthjson web token11 https://datatracker.ietf.org/doc/draft-ietf-oauth-attestation-based-client-auth/ draft-ietf-oauth-attestation-based-client-auth-08 - OAuth 2.0 Attestation-Based Client... This specification defines an extension to the OAuth 2.0 protocol [RFC6749] that enables a client instance to include a key-bound attestation when interacting... draft ietf oauthbased client08 2attestation https://datatracker.ietf.org/doc/html/draft-ietf-oauth-spop-04 draft-ietf-oauth-spop-04 Symmetric Proof of Possession for the OAuth Authorization Code Grant (Internet-Draft, 2014) draft ietf oauthspop04 https://datatracker.ietf.org/doc/html/draft-ietf-oauth-json-web-token-25 draft-ietf-oauth-json-web-token-25 JSON Web Token (JWT) (Internet-Draft, 2014) draft ietf oauthjson web token25 https://datatracker.ietf.org/doc/draft-ietf-oauth-identity-assertion-authz-grant/ draft-ietf-oauth-identity-assertion-authz-grant-03 - Identity Assertion JWT Authorization Grant This specification provides a mechanism for an application to use an identity assertion to obtain an access token for a third-party API by coordinating through... draft ietf oauthidentityassertionauthzgrant https://datatracker.ietf.org/doc/html/draft-ietf-oauth-json-web-token-18 draft-ietf-oauth-json-web-token-18 JSON Web Token (JWT) (Internet-Draft, 2014) draft ietf oauthjson web token18 https://datatracker.ietf.org/doc/html/draft-ietf-oauth-json-web-token-21 draft-ietf-oauth-json-web-token-21 JSON Web Token (JWT) (Internet-Draft, 2014) draft ietf oauthjson web token21