%% You should probably cite draft-tsitkov-oauth-audit-02 instead of this revision. @techreport{tsitkov-oauth-audit-01, number = {draft-tsitkov-oauth-audit-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-tsitkov-oauth-audit/01/}, author = {Zhanna Tsitkov}, title = {{Audit in OAuth 2.0}}, pagetotal = 7, year = 2014, month = dec, day = 8, abstract = {This specification is an effort to provide guidelines for implementing the Audit functionality for OAuth 2.0 enabled environments. The data of interest for the OAuth 2.0 audit includes scopes, permissions, policies and other authorization and authentication related information. It can be used by resource and authorization servers for detecting security-related problems in real time and fast violation response, or by government agencies and various institutions for after-the-fact forensic and compliance analysis.}, }