OAuth 2 stripped down, with OAuth 1 signature protection, optimized for mobile/native.
You should be familiar with OAuth 1 or 2 to have a good grip of Oz.
EH
-----Original Message-----
From: algermissen1971 [mailto:
algermi...@me.com]
Sent: Friday, November 23, 2012 1:50 PM
To: Eran Hammer
Cc:
oz-pr...@googlegroups.com
Subject: Re: Formal Specification and Verification
Hi Eran,
On Nov 6, 2012, at 6:28 PM, Eran Hammer <
er...@hueniverse.com> wrote:
> The end-user experience isn't going to be dramatically different from OAuth
What reading do you suggest to help me understand what you are up to with OZ?
I would very much like to follow your implementation, but I lack the sufficient understanding so much that I do not even know where to start, really.
Sould I be thinking
'OZ is sort of OAuth1 done better'
or
'OZ is like BigCoVariantX of OAuth2 with client certs and no Open ID Connect or SAML'
or is it too different from both to use eany of the existing docs to help me understand your coding.
Is there a time period of OAuth2 WG Archives that you think is educational to dig through?
Jan