From 5c1da6e523dfa69e51f1eb0aadd16220fb257b53 Mon Sep 17 00:00:00 2001 From: Tom Conner Date: Fri, 9 Aug 2024 15:16:15 -0400 Subject: [PATCH] add reference to OAuth 2.0 Security Best Current Practice --- AAI/AAIConnectProfile.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/AAI/AAIConnectProfile.md b/AAI/AAIConnectProfile.md index 5700413..068b407 100644 --- a/AAI/AAIConnectProfile.md +++ b/AAI/AAIConnectProfile.md @@ -256,6 +256,9 @@ Internet Assigned Numbers Authority Current Practices", BCP 225, RFC 8725, DOI 10.17487/RFC8725, February 2020. + +[[OAuth-Security-BCP]](https://datatracker.ietf.org/doc/html/draft-ietf-oauth-security-topics) - Lodderstedt, T., Bradley, J., Labunets, A., Fett, D., "OAuth 2.0 Security Best Current Practice", draft-ietf-oauth-security-topics-29, June 2024. + [[RFC9068]](https://datatracker.ietf.org/doc/html/rfc9068) -- JWT Profile for OAuth 2.0 Access Tokens