<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/2.0.4" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
	<title>Comments on: Implementing OAuth &#8212; Take care with those keys!</title>
	<link>http://brail.org/wordpress/2009/05/01/implementing-oauth-take-care-with-those-keys/</link>
	<description>Greg Brail's Blog</description>
	<pubDate>Sun, 05 Feb 2012 17:50:09 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.0.4</generator>

	<item>
		<title>by: The Crow &#187; Blog Archive &#187; OAuth in open source applications</title>
		<link>http://brail.org/wordpress/2009/05/01/implementing-oauth-take-care-with-those-keys/#comment-2007</link>
		<pubDate>Mon, 12 Apr 2010 09:25:29 +0000</pubDate>
		<guid>http://brail.org/wordpress/2009/05/01/implementing-oauth-take-care-with-those-keys/#comment-2007</guid>
					<description>[...] Apart from the &#8220;consumer&#8221; and &#8220;consumer secret&#8221; keys another major problem is of the access tokens which are provided by the oauth server upon successful authentication. These tokens MUST be treated as passwords they are used by the client for accessing the web service. One blog(http://brail.org/wordpress/2009/05/01/implementing-oauth-take-care-with-those-keys/) suggests: [...]</description>
		<content:encoded><![CDATA[<p>[&#8230;] Apart from the &#8220;consumer&#8221; and &#8220;consumer secret&#8221; keys another major problem is of the access tokens which are provided by the oauth server upon successful authentication. These tokens MUST be treated as passwords they are used by the client for accessing the web service. One blog(http://brail.org/wordpress/2009/05/01/implementing-oauth-take-care-with-those-keys/) suggests: [&#8230;]
</p>
]]></content:encoded>
				</item>
	<item>
		<title>by: Jason</title>
		<link>http://brail.org/wordpress/2009/05/01/implementing-oauth-take-care-with-those-keys/#comment-1452</link>
		<pubDate>Tue, 15 Dec 2009 01:36:14 +0000</pubDate>
		<guid>http://brail.org/wordpress/2009/05/01/implementing-oauth-take-care-with-those-keys/#comment-1452</guid>
					<description>I'd like to see a standard for Oauth &#38; LDAP. Havent seen anything online yet.</description>
		<content:encoded><![CDATA[<p>I&#8217;d like to see a standard for Oauth &amp; LDAP. Havent seen anything online yet.
</p>
]]></content:encoded>
				</item>
</channel>
</rss>

