Update OAuth Section#325
Conversation
|
Alternative option to the ascii drawing would be to replace with the text below (or similar). Both accomplish my goal of clarity on the mapping of OAuth roles to SSF Roles. @thomasdarimont what do you think would be most useful to a reader? |
|
I think the classification is sufficient. Perhaps we can find a more precise description for "a service trusted by the SSF Transmitter", e.g.: "Authorization Server: the OAuth 2.0 Authorization Server that issues access tokens accepted by the SSF Transmitter endpoints." |
|
@ysarig75 > Do you expect the OPRM URL to be In the wild I have seen the following variants
Variant 2. Issuer with path:
OPRM Metadata URL: For the OPRM metadata URL, we append the custom path to the If we follow this pattern, we can derive the oauth auth server to use the following way:
|
|
@derrumbe @ysarig75 @thomasdarimont @atultulshi @apoorvadeshpande-okta - please take a look. i've removed reference to OPRM as well as the ascii drawing as discussed |
Update OAuth section for Clarity and to remove reference to OPRM.