Hello, Implementing mTLS on the RS side raised the following question:
What error code should the RS return if the x5t#S256 bound to the access token token doesn't match the hash of the submitted client certificate? Here are the error codes already defined in "bearer token usage": https://tools.ietf.org/html/rfc6750#section-3.1 Thanks, Vladimir
smime.p7s
Description: S/MIME Cryptographic Signature
_______________________________________________ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth