Skip to main content

Identity Assertion Authorization Grant
draft-parecki-oauth-identity-assertion-authz-grant-05

Document Type Replaced Internet-Draft (candidate for oauth WG)
Expired & archived
Authors Aaron Parecki , Karl McGuinness , Brian Campbell
Last updated 2025-08-25 (Latest revision 2025-07-02)
Replaced by draft-ietf-oauth-identity-assertion-authz-grant
RFC stream Internet Engineering Task Force (IETF)
Intended RFC status (None)
Formats
Additional resources Mailing list discussion
Stream WG state Call For Adoption By WG Issued
Document shepherd (None)
IESG IESG state Replaced by draft-ietf-oauth-identity-assertion-authz-grant
Consensus boilerplate Unknown
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

This specification provides a mechanism for an application to use an identity assertion to obtain an access token for a third-party API by coordinating through a common enterprise identity provider using Token Exchange [RFC8693] and JWT Profile for OAuth 2.0 Authorization Grants [RFC7523].

Authors

Aaron Parecki
Karl McGuinness
Brian Campbell

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)