Episode 108 - GluuFederation/identerati-office-hours GitHub Wiki
Title: The Many Faces of Delegated Authorization
- Host: Mike Schwartz, Founder/CEO Gluu
- Guest: George Fletcher, Identerati at Capital One
- Co-Guest: Jen Schreiber, Sr Software Engineer, Identity at Workday
Channels
Description
Delegated Authorization has been around for a long time.
๐ OAuth is about one entity (usually a human) delegating authority to another entity (usually software) regarding resources owned by the first entity.
๐ค User Managed Access (UMA) addressed what became known as โAlice to Bob sharing.โ
But with the rise of AI agents, another key use case has come to the forefront: the โon-behalf-ofโ model, where one entity delegates the authority for another entity to act as a fiduciary of the first. โ ๏ธ Much less work has been done within the industry to address this pattern.
In an world where the AI agents (๐ค, ๐ค , ๐ค ...) might outnumber the humans, what models will we need to enable trusted delegation?
Homework
-
Linkedin Post (Feb-2024): ๐๐ฟ๐ฒ ๐๐ฒ๐น๐ฒ๐ด๐ฎ๐๐ถ๐ผ๐ป ๐ฎ๐ป๐ฑ ๐ข๐ป-๐ฏ๐ฒ๐ต๐ฎ๐น๐ณ-๐ผ๐ณ ๐๐๐ผ ๐๐ถ๐ฑ๐ฒ๐ ๐ผ๐ณ ๐๐ต๐ฒ ๐๐ฎ๐บ๐ฒ ๐๐๐ฒ ๐ฐ๐ฎ๐๐ฒ?
-
Linkedin Article (Apr-2025): Delegating Your Personas: As-Known-As Delegation
-
Linkedin Thread (Feb-2024): Some thoughts on how to obtain an on-behalf-of token.
-
Linkedin Article (Mar-2024): What Might an On-Behalf Of Token Look Like
-
Early Slides Delegated Authorization
Takeaways
TBD