[openstreetmap/openstreetmap-website] OAuth2 support? (#1408)

Tom Hughes notifications at github.com
Sat Jan 7 12:20:17 UTC 2017


Well the problem is OAuth2 isn't really a protocol, it's more of a toolkit that can you can use to design a protocol.

I've no objection to supporting it if somebody wants to do the work, but I don't really have the time or energy to do enough reading and research myself to come up with something.

I'm not sure what you mean by "client side consumer key vulnerability" though - if you just mean the fact that you need to have a key on the client side to identify the client then I'm not sure how OAuth2 is supposed to help as every OAuth2 system I'm ever seen still has that?

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/openstreetmap/openstreetmap-website/issues/1408#issuecomment-271080460
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstreetmap.org/pipermail/rails-dev/attachments/20170107/3c714e59/attachment.html>


More information about the rails-dev mailing list