@techreport{wing-pcp-third-party-authz-03, number = {draft-wing-pcp-third-party-authz-03}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-wing-pcp-third-party-authz/03/}, author = {Dan Wing and Tirumaleswar Reddy.K and Prashanth Patil and Reinaldo Penno}, title = {{PCP Extension for Third Party Authorization}}, pagetotal = 15, year = 2014, month = apr, day = 2, abstract = {It is often desirable for an application server to permit a flow across a firewall, as happens today when a firewall includes an Application Layer Gateway (ALG) function. However, an ALG has several weaknesses. This document describes a cryptographic technique for an application server to permit a flow across a firewall. This technique uses OAuth and a new PCP option.}, }