Decentralized Open Authorization Framework: A Novel Approach of Securing Resource Owner’s Credentials
Vinit Kumar, Parul Gupta · 2020 2nd International Conference on Advances in Computing, Communication Control and Networking (ICACCCN) · 2020
Open Authorization 2.0 is a widely used authorization framework that can be used by any third-party application to access protected resources without sharing actual credentials of resource owner. The proposed framework: Decentralized Open Authorization Framework is an improvement over the conventional Open Authorization 2.0 framework. Unlike Open Authorization 2.0 Framework, the proposed Decentralized Open Authorization Framework doesn’t require to fully trust the third-party authorization server and in order to create access tokens, it adopts a decentralized approach for enhancing security and maintaining trust. It may also be configured to remove dependency on third party authorization servers and hence promises better security.