OAuth Tokens need to be able to keep the end-user name used to authorize the 
client request 
--------------------------------------------------------------------------------------------

                 Key: CXF-3967
                 URL: https://issues.apache.org/jira/browse/CXF-3967
             Project: CXF
          Issue Type: Improvement
          Components: JAX-RS
    Affects Versions: 2.5
            Reporter: Sergey Beryozkin
            Assignee: Sergey Beryozkin
             Fix For: 2.5.1


Glen helped to identify a limitation to do with OAuth tokens not being able to 
provide a hint re which end user authorized a client request. This makes it 
tricky to avoid writing OAuth apps where the end user does not with to share 
the same login name between third-party services and resource servers

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: 
https://issues.apache.org/jira/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

Reply via email to