I'm doing the same with JWS, but the access token is actually encoded
JSON. This json is an extended JWT with additional permission metadata.
On 12/12/2012 5:04 PM, Anil Saldhana wrote:
https://developers.google.com/accounts/docs/OAuth2ServiceAccount
An example of Service accounts and server to server interactions using
bearer tokens (with JSON Web Tokens + signature/encryption)
_______________________________________________
security-dev mailing list
security-dev(a)lists.jboss.org
https://lists.jboss.org/mailman/listinfo/security-dev
--
Bill Burke
JBoss, a division of Red Hat
http://bill.burkecentral.com