Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Research Existing Formalisations of OAuth Protocols #61

Open
bblfish opened this issue Jul 27, 2020 · 1 comment
Open

Research Existing Formalisations of OAuth Protocols #61

bblfish opened this issue Jul 27, 2020 · 1 comment

Comments

@bblfish
Copy link
Member

bblfish commented Jul 27, 2020

It would help to have a place to collect formalization of the (relevant parts of) the OAuth Protocols.

We can do this in this issue/question or create a wiki page to collect them. These could help build a formalization for OAuth as applied to Solid, which may help resolve some thorny issues, clarify what needs doing, etc... We'll only know when we know what has already been done.

@bblfish
Copy link
Member Author

bblfish commented Jul 27, 2020

@elf-pavlik on gitter pointed to this October 2016 paper A Comprehensive Formal Security Analysis of OAuth 2.0 which was presented at CCS 2016. The video of the presentation is available on YouTube, for a nice relaxed late evening viewing. It looks like they put together a formalization of the web!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant