[ https://issues.apache.org/jira/browse/CXF-3967?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Sergey Beryozkin updated CXF-3967: ---------------------------------- Description: Glen helped to identify a limitation to do with OAuth tokens not being able to provide a hint re which end user authorized a client request. This makes it tricky to avoid writing OAuth apps where the end user does not wish to share the same login name between third-party services and resource servers (was: Glen helped to identify a limitation to do with OAuth tokens not being able to provide a hint re which end user authorized a client request. This makes it tricky to avoid writing OAuth apps where the end user does not with to share the same login name between third-party services and resource servers) > OAuth Tokens need to be able to keep the end-user name used to authorize the > client request > -------------------------------------------------------------------------------------------- > > Key: CXF-3967 > URL: https://issues.apache.org/jira/browse/CXF-3967 > Project: CXF > Issue Type: Improvement > Components: JAX-RS > Affects Versions: 2.5 > Reporter: Sergey Beryozkin > Assignee: Sergey Beryozkin > Fix For: 2.5.1 > > > Glen helped to identify a limitation to do with OAuth tokens not being able > to provide a hint re which end user authorized a client request. This makes > it tricky to avoid writing OAuth apps where the end user does not wish to > share the same login name between third-party services and resource servers -- This message is automatically generated by JIRA. If you think it was sent incorrectly, please contact your JIRA administrators: https://issues.apache.org/jira/secure/ContactAdministrators!default.jspa For more information on JIRA, see: http://www.atlassian.com/software/jira