2016-05-31 20:36:14 +00:00
|
|
|
== Entitlements API
|
|
|
|
|
2016-06-05 22:17:31 +00:00
|
|
|
The *Entitlement API* provides a 1-legged protocol for obtaining authorization data from the server, where the authorization data
|
|
|
|
represents the result of the evaluation of all permissions and authorization policies associated with the resources being requested.
|
2016-05-31 20:36:14 +00:00
|
|
|
|
2016-09-09 03:53:39 +00:00
|
|
|
Unlike the _Authorization API_, the Entitlement API is not UMA-compliant and doesn't require permission tickets.
|
2016-05-31 20:36:14 +00:00
|
|
|
|
2016-06-05 22:17:31 +00:00
|
|
|
The purpose of this API is provide a more lightweight API for obtaining authorization data, where the client in possession of a valid
|
2016-09-09 03:53:39 +00:00
|
|
|
OAuth2 Access Token is able to obtain the necessary authorization data on behalf of its users.
|