keycloak-scim/authorization_services/topics/service-authorization-authorization-api.adoc

9 lines
562 B
Text
Raw Normal View History

2016-11-29 15:30:53 +00:00
[[_service_authorization_api]]
= Authorization API
2016-06-05 22:17:31 +00:00
The Authorization API provides a UMA-compliant endpoint for obtaining authorization data from the server, where the authorization data represents the result of the evaluation
of all permissions and authorization policies associated with the resources being requested.
Unlike the Protection API, any client application can access the Authorization API endpoint, which requires a special OAuth2 access token called an authorization API token (AAT).
In UMA, an AAT is a token with the scope *uma_authorization*.