Hello,

Implementing mTLS on the RS side raised the following question:

What error code should the RS return if the x5t#S256 bound to the access
token token doesn't match the hash of the submitted client certificate?

Here are the error codes already defined in "bearer token usage":

https://tools.ietf.org/html/rfc6750#section-3.1

Thanks,
Vladimir

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

_______________________________________________
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth

Reply via email to