The open industrial standard OAuth2 is now available for all 玩嘉电竞下载注册 users. OAuth2 ensures a secure and simplified login process for 玩嘉电竞下载注册 clients, as well as a significantly higher security level when embedding 玩嘉电竞下载注册 into third party applications and web services. Due to the future integration, there is no need to store passwords in 玩嘉电竞下载注册 desktop clients or 玩嘉电竞下载注册 mobile apps for iOS and Android; the clients are instead authenticated in the automatically started web browser by entering a username and password. The corresponding client subsequently receives a unique access token, which together with the OAuth2 protocol, authorizes the login. The protocol is being used for all future connections to the 玩嘉电竞下载注册 server. The 玩嘉电竞下载注册 clients, as well as other third party web applications, will never see, nor store, the login credentials.
The usage of different access tokens for each client allows users to end their sessions selectively. Because the access-token is generated for each device and each application individually, users can check their authorised clients in their personal settings and revoke individual tokens. This comes in handy, especially when a device has been lost. The user now has more control and can simultaneously raise the access security.
The server-sided authentication facilitates the integration of identity management services (z.B. SAML/SSO) because clients only need to be authenticated though the server. The integration of other authentication protocols, such as CAS, within 玩嘉电竞下载注册 will also take place entirely on the server. The clients are independently authenticated by OAuth2.
This new development is the result of a community-project from a group of students at the University of Münster for the education-platform Sciebo@Learnweb. The goal was to have 玩嘉电竞下载注册 integrated in the education-platform Moodle ( https://pssl16.github.io/ ). The initial development was then adopted by 玩嘉电竞下载注册 developers and further developed for professional use.
OAuth2 is Available for the Following Platforms From Now On or Coming Soon:
- OAuth2 v0.2 server-side (needs minimum 玩嘉电竞下载注册 Server 10.0.3) is available on the 玩嘉电竞下载注册 Marketplace ( https://marketplace.owncloud.com/apps/oauth2 )
- 玩嘉电竞下载注册 Android App 2.5.0 with OAuth2-Support is available in the PlayStore ( https://play.google.com/store/apps/details?id=com.owncloud.android )
- 玩嘉电竞下载注册 iOS App 3.7.0 with OAuth2-Support is planned to release in the beginning of November 2017
- 玩嘉电竞下载注册 Desktop client 2.4.0 with OAuth2-Support, is planned for the beginning of November 2017. The Alpha Version already available ( https://central.owncloud.org/t/desktop-client-2-4-0-alpha1-released/9837 )
Overview on the Secure Authentication and Authorisation Process with OAuth2 using the 玩嘉电竞下载注册 Desktop Clients:
- The user opens the newly installed desktop-client and calls the 玩嘉电竞下载注册-address (URL).
- In the browser the user opens the login page. The authenticity of the login page can be verified by the user with the regular browser features.
- Now the login credentials can be entered (authentication) and the application is authorised.
- The 玩嘉电竞下载注册 Server transmits the individual tokens (access & refresh) to the client.
- The client is now completely authorised and ready.
You want to learn more about how 玩嘉电竞下载注册 with OAuth2 can support you in increasing the security standard for data exchange and file sharing?
Join our live webinar on November 22, 4.00-4.30 pm CET / 10 -10.30 am ET.