PCP Extension for Third Party Authorization

Document Type Expired Internet-Draft (individual)
Last updated 2014-10-04 (latest revision 2014-04-02)
Stream (None)
Intended RFC status (None)
Expired & archived
pdf htmlized (tools) htmlized bibtex
Stream Stream state (No stream defined)
Consensus Boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


It is often desirable for an application server to permit a flow across a firewall, as happens today when a firewall includes an Application Layer Gateway (ALG) function. However, an ALG has several weaknesses. This document describes a cryptographic technique for an application server to permit a flow across a firewall. This technique uses OAuth and a new PCP option.


Dan Wing (dwing@cisco.com)
Tirumaleswar Reddy.K (tireddy@cisco.com)
Prashanth Patil (praspati@cisco.com)
Reinaldo Penno (repenno@cisco.com)

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)