Ȩ > Ç¥ÁØÈ °³¿ä > TTAÀÇ Ç¥ÁØÇöȲ
Ç¥ÁعøÈ£ | TTAE.IF-RFC7009 | ±¸Ç¥ÁعøÈ£ | |
---|---|---|---|
Á¦°³Á¤ÀÏ | 2014-12-17 | ÃÑÆäÀÌÁö | 13 |
ÇѱÛÇ¥Áظí | °ø°³ ÀÎÁõ 2.0 ÅäÅ« Æó±â | ||
¿µ¹®Ç¥Áظí | Open Authentication 2.0 Token Revocation | ||
Çѱ۳»¿ë¿ä¾à | ÀÌ Ç¥ÁØÀº OAuth ÀÎÁõÀ» À§ÇÑ Ãß°¡ÀûÀÎ Á¾´ÜÁ¡À» Á¦¾ÈÇÑ´Ù. À̴ Ŭ¶óÀ̾ðÆ®°¡ ÀÌÀü¿¡ ÃëµæÇÑ Àç»ý ¶Ç´Â Á¢±Ù ÅäÅ«ÀÌ ´õ ÀÌ»ó ÇÊ¿äÇÏÁö ¾ÊÀº ÀÎÁõ ¼¹ö¿¡ ÅëÁöÇÑ´Ù. ÀÌ°ÍÀ¸·Î Àΰ¡ ¼¹ö°¡ º¸¾È Å©¸®µ§¼È(credentials)À» ÆóÁöÇÒ ¼ö ÀÖ´Ù. ÆóÁö ¿äûÀº ÇöÀçÀÇ ÅäÅ«À» ¹«È¿È Çϸç, Àû¿ë °¡´ÉÇÏ´Ù¸é, °°Àº Àΰ¡ ºÎ¿©¿¡ µû¶ó ´Ù¸¥ ÅäÅ«µµ ¹«È¿È ÇÑ´Ù. | ||
¿µ¹®³»¿ë¿ä¾à | This document proposes an additional endpoint for OAuth authorization servers, which allows clients to notify the authorization server that a previously obtained refresh or access token is no longer needed. This allows the authorization server to clean up security credentials. A revocation request will invalidate the actual token and, if applicable, other tokens based on the same authorization grant. | ||
±¹Á¦Ç¥ÁØ | |||
°ü·ÃÆÄÀÏ | TTAE.IF-RFC7009.pdf |