Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • SEARCH
  • Home
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 7574661
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: May 30, 20262026-05-30T16:29:23+00:00 2026-05-30T16:29:23+00:00

I have been exploring OAuth version 1.0 for the REST API I am currently

  • 0

I have been exploring OAuth version 1.0 for the REST API I am currently working on.

I have 3 authentication scenarios

  1. this involves 3 parties, the service provider, the consumer and the user. The 3-legged Oauth matches this scenario.
  2. 2 parties are involved, the consumer and the service provider. Is this a scenario where 2-legged Oauth is most applicable and if so what is the process as there is hardly a difference between this and HTTP basic authentication based on my understanding.
  3. I also am creating a special type of user that can always access the currently logged in user’s data without the user’s authorization. How can this fit into the picture while still implementing OAuth.

Using this scenarios? how can I implement Oauth neatly and how can this help me understand the 3-legged and 2-legged Oauth processes?

  • 1 1 Answer
  • 0 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. Editorial Team
    Editorial Team
    2026-05-30T16:29:25+00:00Added an answer on May 30, 2026 at 4:29 pm

    Number 1: Correct, just use the typical 3-legged oauth flow.

    Number 2. 2-legged oauth is pretty much the same as http-basic, except that the oauth signature gives you protection agains MITM attacks (but if you use http-basic over TLS than you get the same protection). The process for 2-legged oauth is just the signing of the request with the consumer key/secret which is synonymous with a username/password over http basic.

    Number 3. I’m not 100% clear on what you mean here, but it sounds similar to how google uses 2-legged oauth for google apps domains. Take a look at their documentation here: https://developers.google.com/accounts/docs/OAuth#GoogleAppsOAuth

    Have you looked into OAuth 2.0? It’s still in draft, but it has a lot more flexibility for different scenarios. May be something to consider. http://oauth.net/2/

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

I have been exploring this issue for the first time and I am struggling
Actually I am studying this algorithm and I have been exploring his code (which
I am rather new to ZXing and has been exploring their API. I have
I have been working on a web services related project for about the last
I have been working with Visual Studio (WinForm and ASP.NET applications using mostly C#)
Does anyone have a modern CSS method for doing something like this? I've been
Recently I have been exploring using the fancy new dynamic keyword introduced in C#
I have recently been exploring the Tornado web framework to serve a lot of
I have been tasked with exploring the possibility of offline access of my webapp.
Hope someone can help, I'm not a programmer, but have been interested in exploring

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.