@techreport{ietf-oauth-v2-http-mac-05, number = {draft-ietf-oauth-v2-http-mac-05}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-oauth-v2-http-mac/05/}, author = {Justin Richer and William Mills and Hannes Tschofenig and Phil Hunt}, title = {{OAuth 2.0 Message Authentication Code (MAC) Tokens}}, pagetotal = 37, year = 2014, month = jan, day = 15, abstract = {This specification describes how to use MAC Tokens in HTTP requests to access OAuth 2.0 protected resources. An OAuth client willing to access a protected resource needs to demonstrate possession of a cryptographic key by using it with a keyed message digest function to the request. The document also defines a key distribution protocol for obtaining a fresh session key.}, }