@misc{rfc9200, series = {Request for Comments}, number = 9200, howpublished = {RFC 9200}, publisher = {RFC Editor}, doi = {10.17487/RFC9200}, url = {https://www.rfc-editor.org/info/rfc9200}, author = {Ludwig Seitz and Göran Selander and Erik Wahlstroem and Samuel Erdtman and Hannes Tschofenig}, title = {{Authentication and Authorization for Constrained Environments Using the OAuth 2.0 Framework (ACE-OAuth)}}, pagetotal = 72, year = 2022, month = aug, abstract = {This specification defines a framework for authentication and authorization in Internet of Things (IoT) environments called ACE-OAuth. The framework is based on a set of building blocks including OAuth 2.0 and the Constrained Application Protocol (CoAP), thus transforming a well-known and widely used authorization solution into a form suitable for IoT devices. Existing specifications are used where possible, but extensions are added and profiles are defined to better serve the IoT use cases.}, }