New security specifications, such as OAuth and OpenID Connect, have emerged to provide the necessary authentication and authorization standards for REST APIs. Read this whitepaper to learn what these standards and specifications are, how they can be composed with existing standards like SAML, and how they work to provide security now — and into the future.
This whitepaper provides an overview of these security specifications:
- OAuth 2.0 as the present and future choice for API protection.
- Security Assertion Markup Language (SAML) as an open XML standard for identity federation.
- OpenID Connect 1.0 as a new specification used to extend OAuth 2.0 with an identity layer.