Hey Raghu,
Fell free to share your requirements around authz and UMA.
We're considering two use cases and scenarios where the subject of a transaction can be an individual or a NPE (Non-person entity).
Right now, I'm focusing on NPE use cases, where an organization is both the resource owner and the authorizing party, acting on its own behalf, protecting its own resources. Which, IMO, helps to address most of the authz requirements for those applications that need to protect their own resources.
Regards.
Pedro Igor
----- Original Message -----
From: "Bill Burke" <
bburke@redhat.com>
To:
keycloak-user@lists.jboss.orgSent: Wednesday, September 9, 2015 9:14:12 AM
Subject: Re: [keycloak-user] UMA Profile for OAuth 2
Pedro is working on a permission service on top of UMA, but it will be a
separate service and/or an optional addon to keycloak.
On 9/9/2015 7:11 AM, Raghu Prabhala wrote:
> Bill/Stian,
>
> Do you have any plans to support the UMA profile for OAuth 2 in the near
> future?
>
>
http://tools.ietf.org/html/draft-hardjono-oauth-umacore-13>
> Thanks,
> Raghu
>
>
> _______________________________________________
> keycloak-user mailing list
>
keycloak-user@lists.jboss.org>
https://lists.jboss.org/mailman/listinfo/keycloak-user>
--
Bill Burke
JBoss, a division of Red Hat
http://bill.burkecentral.com