官术网_书友最值得收藏!

There's more...

Besides the fact that we should avoid this grant type, it's not a problem if you use it when interacting with one server that belongs to the same domain of the client application. That is to say, that both client and OAuth 2.0 Provider belong to the same solution as well. As it comprises of the same application divided between the client and server, the users can trust sharing the credentials because it belongs to the same application. The only important thing to mention is that, as the client application, it must throw away the client's username and password required to obtain an access token.

Once again, do not forget to use TLS/SSL when running such solutions described by this recipe in production.

主站蜘蛛池模板: 屯留县| 新邵县| 印江| 日土县| 西丰县| 达州市| 崇仁县| 英山县| 怀化市| 湘潭县| 石楼县| 凤台县| 左权县| 梓潼县| 聂拉木县| 汾西县| 北辰区| 柳河县| 孟津县| 通城县| 浦城县| 荔浦县| 临西县| 沙湾县| 浮山县| 蒲江县| 宜春市| 孟州市| 革吉县| 固安县| 永昌县| 汕尾市| 云浮市| 信丰县| 巴林右旗| 黄山市| 拜泉县| 通城县| 姚安县| 大新县| 铁岭县|