Skip to main content

AI Agent Authentication and Authorization
draft-klrc-aiagent-auth-03

Document Type Replaced Internet-Draft (wimse WG)
Expired & archived
Authors Pieter Kasselman , Jeff Lombardo , Yaroslav Rosomakho , Brian Campbell , Nick Steele , Aaron Parecki
Last updated 2026-09-09 (Latest revision 2026-07-06)
Replaced by draft-ietf-wimse-aims
RFC stream Internet Engineering Task Force (IETF)
Intended RFC status (None)
Formats
Additional resources Mailing list discussion
Stream WG state Adopted by a WG
Document shepherd (None)
IESG IESG state Replaced by draft-ietf-wimse-aims
Consensus boilerplate Unknown
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

This document proposes best practices for authentication and authorization of AI agent interactions. It leverages existing standards such as the Workload Identity in Multi-System Environments (WIMSE) architecture and OAuth 2.0 family of specifications. Rather than defining new protocols, this document describes how existing and widely deployed standards can be applied or extended to establish agent authentication and authorization. By doing so, it aims to provide a framework within which to use existing standards, identify gaps and guide future standardization efforts for agent authentication and authorization.

Authors

Pieter Kasselman
Jeff Lombardo
Yaroslav Rosomakho
Brian Campbell
Nick Steele
Aaron Parecki

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)