Zur Kurzanzeige

dc.contributor.authorImbault, Fabien
dc.contributor.authorRicher, Justin
dc.contributor.authorParecki, Aaron
dc.contributor.editorRoßnagel, Heiko
dc.contributor.editorSchunck, Christian H.
dc.contributor.editorMödersheim, Sebastian
dc.date.accessioned2021-05-20T13:12:13Z
dc.date.available2021-05-20T13:12:13Z
dc.date.issued2021
dc.identifier.isbn978-3-88579-706-7
dc.identifier.issn1617-5468
dc.identifier.urihttp://dl.gi.de/handle/20.500.12116/36492
dc.description.abstractThe Grant Negotiation and Authorization Protocol, also known as GNAP, is currently being formulated in an IETF working group. GNAP gives the opportunity to reflect on the strengths and weaknesses of OAuth 2, and highlights the new directions to improve digital access. We compare with the approach taken by OAuth 2 and show that designing authorization servers primarily as “token issuers” provides insightful consequences for security and privacy.en
dc.language.isoen
dc.publisherGesellschaft für Informatik e.V.
dc.relation.ispartofOpen Identity Summit 2021
dc.relation.ispartofseriesLecture Notes in Informatics (LNI) - Proceedings, Volume P-312
dc.subjectauthorization protocol
dc.subjectOAuth 2
dc.subjectGNAP
dc.titleManaging authorization grants beyond OAuth 2en
dc.typeText/Conference Paper
dc.pubPlaceBonn
mci.reference.pages193-198
mci.conference.sessiontitleShort Paper
mci.conference.locationCopenhagen, Denmark
mci.conference.date01.-02. June 2021


Dateien zu dieser Ressource

Thumbnail

Zur Kurzanzeige