The IANA "OAuth Extensions Error Registry<http://www.iana.org/assignments/oauth-parameters/oauth-parameters.xhtml#extensions-error>" doesn't list most of the errors defined in the core OAuth 2.0 spec [RFC6749], only those added by other specs.
This is just annoying. It would be far more useful for the IANA registry to be a single source of all OAuth 2.0 error codes. I suggest listing the following to the registry (with RFC6749 as the reference, and perhaps "core" as the "extension"): access_denied invalid_client invalid_grant invalid_scope server_error temporarily_unavailable unauthorized_client unsupported_grant_type unsupported_response_type -- James Manger
_______________________________________________ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth