Re: Example value for "oauth-authorization-scope"?
Michael Sweet via ipp <[email protected]>
| Newsgroups | gmane.ietf.ipp |
|---|---|
| Message-ID | <[email protected]> |
Smith, > On Apr 28, 2022, at 11:19 AM, Kennedy, Smith (Wireless & IPP Standards) via ipp <[email protected]> wrote: > > Signed PGP part > Greetings, > > HP is curious what types of values a Client might expect to find supplied by the "oauth-authorization-scope" Printer Description attribute registered in May 2019: > > https://ftp.pwg.org/pub/pwg/ipp/registrations/ippwg-oauth-authorization-scope-20190521.txt > > The registration talks about roles, such as User or Administrator. Is this the only range of information that a Client might encounter provided by this attribute? Or could it be more granular, like allowed operations, etc.? Looking at this page that points to the RFC and some examples, it seems like it could be application-specific: https://oauth.net/2/scope/ It *is* application-specific, but I would expect the scope(s) to specify a role or functionality supported by the OAuth server. I wouldn't expect it to be as fine-grained as individual IPP operations, but I can see admin/operator/user scopes for the Printer, much as Github exposes different scopes for read-only, read-write, and administrative access to repositories and organizations, in addition to scopes for access to contact/profile information. ________________________ Michael Sweet _______________________________________________ ipp mailing list [email protected] https://www.pwg.org/mailman/listinfo/ipp
signature.asc
(application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEkIbDzcZsP1Y8+PQFvmfHXsgfMkQFAmJqs8YACgkQvmfHXsgf MkS6FQ//WaF5Y0kxoUc7Et5mQMRGv1SXDxbHPtCyWMdcODqDSJqkDodYZn5b3lU3 rfOSCF0/jM5MkAcgwBP7Fw7W+I/oF1ybqrwnt59Ad+ns+9okOhC1JY0+y7SfihBA eY1PRbwFbr6ybPS9x4fK3sNUryMVmLmCyF50VfRDk2DW9dn/z7Kynn+tAucFpE8A e2pxBO4UxVBGhNFZ/b29j89g+dKSK15k5hBfZ6JOWsxXDcvOU18Vs9OFwf8uGP/G 5CkDbX1AfmISe5ew90NGNn0I/Fl+fpMUy6ayKTIv1rTQaFT+DKBMO5xyPy6KEFth BKdaVWNcjTzihaMATY9ZrVWFqtOz/nmh8VOoC60jSc9/pze/c1bV1QVMz5PW21r9 KlSTfg47SUH2wEce0qbcieuBweuKi5lOdKWE8RWjYfH6R8mCuW0ia0K5fzs9b73f xOyvjFJDmwgJXuk9hDqMCbb43stbWfQDtYt+uuVyt4qMtYEYFvpgLRb7nhuaTVj+ UJ2MKr7WkBpmsYRSPo/ZRcinTmIdhh0zWRE8HQuZNRnb7xdYaS/SrihrFnhtoT5Z IlfDIbkGwbARDlPXFbByBJWh+ffatcUAerNaBu82K4FteJhKKp1V+59FJSO2B6sO RstZFGdLcgMStDt5VJGUFjWM7SxBMBR1EMidkY4sojS+vS/Kw80= =3nt+ -----END PGP SIGNATURE-----