OAuth 2 in ACS - nordvall/TokenClient GitHub Wiki
Capabilities
ACS plays the Authorization Server role in OAuth 2 terms.
Supported flows
ACS supports these flows:
OAuth grant | ACS support |
---|---|
Authorization Code | Supported |
Implicit | Not supported |
Client credentials | Supported |
Resource owner password credentials | Not supported |
Endpoints
Token endpoint: https://abc.accesscontrol.windows.net/v2/oauth2-13/
No authorization endpoint.
Glossary
OAuth 2 term | ACS name |
---|---|
Resource Server | Relying party |
Client | Service identity |
The granted permissions, that means the combination of client, user, resource, and permission scope, are stored in ACS as a Delegation-object.