IBM Tivoli Federated Identity Manager, Version 6.2.2

About two-legged OAuth

Use two-legged OAuth to implement a delegation of authority in the client.

Two-legged OAuth is also called a Signed Fetch. In the two-legged OAuth scenario, the OAuth client uses the client secret to sign the request and directly access the protected resource. The OAuth server trusts the OAuth client to provide data without asking the resource owner for authorization.



Feedback