[ 
https://issues.apache.org/jira/browse/CXF-3967?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Sergey Beryozkin updated CXF-3967:
----------------------------------

    Description: Glen helped to identify a limitation to do with OAuth tokens 
not being able to provide a hint re which end user authorized a client request. 
This makes it tricky to avoid writing OAuth apps where the end user does not 
wish to share the same login name between third-party services and resource 
servers  (was: Glen helped to identify a limitation to do with OAuth tokens not 
being able to provide a hint re which end user authorized a client request. 
This makes it tricky to avoid writing OAuth apps where the end user does not 
with to share the same login name between third-party services and resource 
servers)
    
> OAuth Tokens need to be able to keep the end-user name used to authorize the 
> client request 
> --------------------------------------------------------------------------------------------
>
>                 Key: CXF-3967
>                 URL: https://issues.apache.org/jira/browse/CXF-3967
>             Project: CXF
>          Issue Type: Improvement
>          Components: JAX-RS
>    Affects Versions: 2.5
>            Reporter: Sergey Beryozkin
>            Assignee: Sergey Beryozkin
>             Fix For: 2.5.1
>
>
> Glen helped to identify a limitation to do with OAuth tokens not being able 
> to provide a hint re which end user authorized a client request. This makes 
> it tricky to avoid writing OAuth apps where the end user does not wish to 
> share the same login name between third-party services and resource servers

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: 
https://issues.apache.org/jira/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

Reply via email to