官术网_书友最值得收藏!

There's more...

Besides the fact that we should avoid this grant type, it's not a problem if you use it when interacting with one server that belongs to the same domain of the client application. That is to say, that both client and OAuth 2.0 Provider belong to the same solution as well. As it comprises of the same application divided between the client and server, the users can trust sharing the credentials because it belongs to the same application. The only important thing to mention is that, as the client application, it must throw away the client's username and password required to obtain an access token.

Once again, do not forget to use TLS/SSL when running such solutions described by this recipe in production.

主站蜘蛛池模板: 大港区| 太保市| 自贡市| 盐城市| 长沙县| 北流市| 萍乡市| 抚顺市| 慈溪市| 巴彦淖尔市| 荆门市| 定远县| 建瓯市| 饶河县| 库尔勒市| 万源市| 林甸县| 潼南县| 铁岭县| 雅安市| 迁安市| 健康| 郸城县| 富蕴县| 象州县| 海宁市| 平昌县| 固原市| 永修县| 军事| 广饶县| 攀枝花市| 洮南市| 苏州市| 四会市| 宜都市| 乌兰县| 广平县| 车致| 三都| 东辽县|