[security-dev] Google OAuth2: Server to Server Trust Model

Bill Burke bburke at redhat.com
Wed Dec 12 17:13:28 EST 2012


I'm doing the same with JWS, but the access token is actually encoded 
JSON.  This json is an extended JWT with additional permission metadata.

On 12/12/2012 5:04 PM, Anil Saldhana wrote:
> https://developers.google.com/accounts/docs/OAuth2ServiceAccount
>
> An example of Service accounts and server to server interactions using
> bearer tokens (with JSON Web Tokens + signature/encryption)
> _______________________________________________
> security-dev mailing list
> security-dev at lists.jboss.org
> https://lists.jboss.org/mailman/listinfo/security-dev
>

-- 
Bill Burke
JBoss, a division of Red Hat
http://bill.burkecentral.com


More information about the security-dev mailing list