OAuth

OATH 2

OATH Flow

Authorization Code Flow

Resource Owner

Client

Authorization Server

Resource Server

Authorization Server and Resource Server

Redirect URI

Response Type

Scope

Consent

Client ID

Client Secret

Authorization Code

Access Token

Client and Authorization Server established a relationship before anything else happens. The Authorization Server gave the Client a Client ID and Client Secret.

OpenId Connect OIDC

ID Token