OAuth 2.0 Authorization

OAuth 2.0 is an authorization framework in which a resource owner grants a client limited access to a resource server. It does not itself define user authentication; OpenID Connect adds that identity layer.

Resource ServerAuthorization ServerClient ApplicationResource OwnerResource ServerAuthorization ServerClient ApplicationResource OwnerClick LoginRedirect to Auth (Client ID, Scope)Show Login/ConsentProvide Credentials & ConsentRedirect with Auth CodeExchange Code + Secret for TokenReturn Access TokenRequest Data (with Access Token)Return Resource Data