Re: [OAUTH-WG] Deutsche Telekom launched OAuth 2.0 support

2011-07-01 Thread Torsten Lodderstedt
Hi Igor,

if this information is of broader interest - why not. Let's talk about this in 
Quebec.

regards,
Torsten.



Igor Faynberg  schrieb:

Torsten,

With many thanks for the note, I think it would be great if you 
documented the implementation report in an Informational RFC. In 
particular, the SIM-based authentication part is of particular interest 
here--we had this discussion on this list recently-- as it naturally 
extends the use of the Internet protocols in the telecom environment.

I also think that such an implementation report would influence 
positively the OAuth profiling work that is taking place in ITU-T, OMA 
and other places.

Igor

On 7/1/2011 5:19 PM, Torsten Lodderstedt wrote:
> Hi all,
>
> I would like to announce that we recently launched OAuth 2.0 support 
> in our Security Token Service. It will be used in upcoming consumer 
> products (e.g. Smartphone apps).
>
> The current implementation supports draft 10 (but is also inline with 
> the latest text on native apps). It has the following additional 
> features:
> - Issuance of multiple tokens for different services in single 
> authorization process (Bulk User Authorization)
> - Token revocation 
> (http://datatracker.ietf.org/doc/draft-lodderstedt-oauth-revocation/)
> - custom grant types for token exchange and SIM card authentication
> - Token replacement
> - Parameter to explicitely request refresh token for "Resource Owner 
> Password Credentials" grant type
>
> regards,
> Torsten.
>_

> OAuth mailing list
> OAuth@ietf.org
> https://www.ietf.org/mailman/listinfo/oauth
_

OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth

___
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth


Re: [OAUTH-WG] Deutsche Telekom launched OAuth 2.0 support

2011-07-01 Thread Igor Faynberg

Torsten,

With many thanks for the note, I think it would be great if you 
documented the implementation report in an Informational RFC.  In 
particular, the SIM-based authentication part is of particular interest 
here--we had this discussion on this list recently-- as it naturally 
extends the use of the Internet protocols in the telecom environment.


I also think that such an implementation report would influence 
positively  the OAuth profiling work that is taking  place in ITU-T, OMA 
and other places.


Igor

On 7/1/2011 5:19 PM, Torsten Lodderstedt wrote:

Hi all,

I would like to announce that we recently launched OAuth 2.0 support 
in our Security Token Service. It will be used in upcoming consumer 
products (e.g. Smartphone apps).


The current implementation supports draft 10 (but is also inline with 
the latest text on native apps). It has the following additional 
features:
- Issuance of multiple tokens for different services in single 
authorization process (Bulk User Authorization)
- Token revocation 
(http://datatracker.ietf.org/doc/draft-lodderstedt-oauth-revocation/)

- custom grant types for token exchange and SIM card authentication
- Token replacement
- Parameter to explicitely request refresh token for "Resource Owner 
Password Credentials" grant type


regards,
Torsten.
___
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth

___
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth


[OAUTH-WG] Deutsche Telekom launched OAuth 2.0 support

2011-07-01 Thread Torsten Lodderstedt

Hi all,

I would like to announce that we recently launched OAuth 2.0 support in 
our Security Token Service. It will be used in upcoming consumer 
products (e.g. Smartphone apps).


The current implementation supports draft 10 (but is also inline with 
the latest text on native apps). It has the following additional features:
- Issuance of multiple tokens for different services in single 
authorization process (Bulk User Authorization)
- Token revocation 
(http://datatracker.ietf.org/doc/draft-lodderstedt-oauth-revocation/)

- custom grant types for token exchange and SIM card authentication
- Token replacement
- Parameter to explicitely request refresh token for "Resource Owner 
Password Credentials" grant type


regards,
Torsten.
___
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth