Profile for only authorization server endpoints

When the DataPower® Gateway is authorization server endpoints, you must define an OAuth client profile to support the type or types that you need.

The following types are supported.
  • Authorization code
  • Implicit grant
  • Resource-owner password credential grant
  • Client credentials grant
  • JWT grant
  • OpenID Connect
Although Disable Validation Grant is a choice, when you select this option you cannot control which validation grant type features to enable. In other words, you cannot control the following behavior.
  • Whether to support introspection format.
  • Whether to allow anonymous access to the validation grant type.