Hey Raghu,
Fell free to share your requirements around authz and UMA.
We're considering two use cases and scenarios where the subject of a transaction
can be an individual or a NPE (Non-person entity).
Right now, I'm focusing on NPE use cases, where an organization is both the
resource owner and the authorizing party, acting on its own behalf, protecting its own
resources. Which, IMO, helps to address most of the authz requirements for those
applications that need to protect their own resources.
Regards.
Pedro Igor
----- Original Message -----
From: "Bill Burke" <bburke(a)redhat.com>
To: keycloak-user(a)lists.jboss.org
Sent: Wednesday, September 9, 2015 9:14:12 AM
Subject: Re: [keycloak-user] UMA Profile for OAuth 2
Pedro is working on a permission service on top of UMA, but it will be a
separate service and/or an optional addon to keycloak.
On 9/9/2015 7:11 AM, Raghu Prabhala wrote:
Bill/Stian,
Do you have any plans to support the UMA profile for OAuth 2 in the near
future?
http://tools.ietf.org/html/draft-hardjono-oauth-umacore-13
Thanks,
Raghu
_______________________________________________
keycloak-user mailing list
keycloak-user(a)lists.jboss.org
https://lists.jboss.org/mailman/listinfo/keycloak-user
--
Bill Burke
JBoss, a division of Red Hat
http://bill.burkecentral.com
_______________________________________________
keycloak-user mailing list
keycloak-user(a)lists.jboss.org
https://lists.jboss.org/mailman/listinfo/keycloak-user