metabrainz / web-service-v3-design

A collaborative specification for the third version of the MusicBrainz web service
2 stars 1 forks source link

How do we handle auhenticated requests #22

Open warpr opened 12 years ago

warpr commented 12 years ago

HTTP basic authentication over SSL? OAuth 1.0a or OAuth 2.0? * Any other options?

* Not as straightforward as you might expect on first glance, required reading: http://hueniverse.com/2012/07/oauth-2-0-and-the-road-to-hell/

ocharles commented 12 years ago

I am sadly now very uncertain on the future of OAuth. I would suggest that the minimal solution is basic auth over SSL, and suggest we go with that.