| < draft-richer-oauth-signed-http-request-00.txt | draft-richer-oauth-signed-http-request-01.txt > | |||
|---|---|---|---|---|
| OAuth Working Group J. Richer, Ed. | OAuth Working Group J. Richer, Ed. | |||
| Internet-Draft The MITRE Corporation | Internet-Draft The MITRE Corporation | |||
| Intended status: Experimental J. Bradley | Intended status: Experimental J. Bradley | |||
| Expires: October 26, 2014 Ping Identity | Expires: October 26, 2014 Ping Identity | |||
| H. Tschofenig | H. Tschofenig | |||
| ARM Limited | ARM Limited | |||
| April 24, 2014 | April 24, 2014 | |||
| A Method for Signing an HTTP Requests for OAuth | A Method for Signing an HTTP Requests for OAuth | |||
| draft-richer-oauth-signed-http-request-00.txt | draft-richer-oauth-signed-http-request-01 | |||
| Abstract | Abstract | |||
| This document a method for offering data origin authentication and | This document a method for offering data origin authentication and | |||
| integrity protection of HTTP requests. To convey the relevant data | integrity protection of HTTP requests. To convey the relevant data | |||
| items in the request a JSON-based encapsulation is used and the JSON | items in the request a JSON-based encapsulation is used and the JSON | |||
| Web Signature (JWS) technique is re-used. JWS offers integrity | Web Signature (JWS) technique is re-used. JWS offers integrity | |||
| protection using symmetric as well as asymmetric cryptography. | protection using symmetric as well as asymmetric cryptography. | |||
| Status of This Memo | Status of This Memo | |||
| skipping to change at page 11, line 30 ¶ | skipping to change at page 11, line 30 ¶ | |||
| Hunt, P., Richer, J., Mills, W., Mishra, P., and H. | Hunt, P., Richer, J., Mills, W., Mishra, P., and H. | |||
| Tschofenig, "OAuth 2.0 Proof-of-Possession (PoP) Security | Tschofenig, "OAuth 2.0 Proof-of-Possession (PoP) Security | |||
| Architecture", draft-hunt-oauth-pop-architecture-00 (work | Architecture", draft-hunt-oauth-pop-architecture-00 (work | |||
| in progress), April 2014. | in progress), April 2014. | |||
| Authors' Addresses | Authors' Addresses | |||
| Justin Richer (editor) | Justin Richer (editor) | |||
| The MITRE Corporation | The MITRE Corporation | |||
| Email: jricher@mitre.org | ||||
| John Bradley | John Bradley | |||
| Ping Identity | Ping Identity | |||
| Email: ve7jtb@ve7jtb.com | Email: ve7jtb@ve7jtb.com | |||
| URI: http://www.thread-safe.com/ | URI: http://www.thread-safe.com/ | |||
| Hannes Tschofenig | Hannes Tschofenig | |||
| ARM Limited | ARM Limited | |||
| Austria | Austria | |||
| End of changes. 2 change blocks. | ||||
| 1 lines changed or deleted | 3 lines changed or added | |||
This html diff was produced by rfcdiff 1.48. The latest version is available from http://tools.ietf.org/tools/rfcdiff/ | ||||