@techreport{thornburgh-fwk-dc-token-iss-01, number = {draft-thornburgh-fwk-dc-token-iss-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-thornburgh-fwk-dc-token-iss/01/}, author = {Michael C. Thornburgh}, title = {{A Framework For Decentralized Bearer Token Issuance in HTTP}}, pagetotal = 18, year = 2020, month = aug, day = 26, abstract = {This memo describes a protocol framework for HTTP clients to obtain bearer tokens for accessing restricted resources, where in some applications the client may not have prior knowledge of, or a direct relationship with, the resource server's authorization infrastructure (such as in decentralized identity systems). Semi-concrete applications of the framework using proof-of-possession and TLS client certificate mechanisms are also described.}, }