[OSLC-CM] How many tools support (or plan to) OAuth?

Tack Tong tacktong at ca.ibm.com
Mon Nov 23 13:59:22 EST 2009


Steve,

Insight and RPE, as data consumers, support OAuth, basic, and form.

There were some issues re:OAuth in the area of protocol between OAuth User
and OAuth Consumer. Dragos would have the details.

Tack Tong
IBM Rational software
tacktong at ca.ibm.com
905-413-3232
tie line 313-3232


                                                                           
             Steve K Speicher                                              
             <sspeiche at us.ibm.                                             
             com>                                                       To 
             Sent by:                  oslc-cm at open-services.net           
             oslc-cm-bounces at o                                          cc 
             pen-services.net                                              
                                                                   Subject 
                                       [OSLC-CM] How many tools support    
             11/20/2009 12:14          (or plan to) OAuth?                 
             PM                                                            
                                                                           
                                                                           
                                                                           
                                                                           
                                                                           





In our next meeting, I wanted to bring up this topic but just couldn't
wait.

For ALM tool interoperability, a good authentication story is needed.  In
CM 1.0, we sort of "punted" on the issue and made some general statements
about what SHOULD be supported: HTTP Basic auth, OAuth and SSL.  We never
made it a MUST hard mandatory requirement.

I'd like get some more information about where participants are with
respect to OAuth.  If you don't know much about OAuth, there are some good
introductory resources at http://oauth.net.

So the kind of feedback I'm looking for is:
      What solutions are used today for cross-system authentication?
      What are the current issues with today's solutions?
      Do any of your tools support OAuth today? If not, any plans. If no
      plans, reasons for not adopting?

Feel free to respond or we can talk on Wednesday.


So I'll respond to my own questions for Rational:

Team Concert:
        Currently supports OAuth

ClearQuest / Change:
        Currently support HTTP basic auth.  Investigating OAuth support,
might be available in an upcoming release.  Integrating service providers
must flow credentials through their servers, requiring careful handling.

Thanks,
Steve Speicher | IBM Rational Software | (919) 254-0645
_______________________________________________
OSLC-CM mailing list
OSLC-CM at open-services.net
http://open-services.net/mailman/listinfo/oslc-cm_open-services.net
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://open-services.net/pipermail/oslc-cm_open-services.net/attachments/20091123/05a853c4/attachment-0003.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: graycol.gif
Type: image/gif
Size: 105 bytes
Desc: not available
URL: <http://open-services.net/pipermail/oslc-cm_open-services.net/attachments/20091123/05a853c4/attachment.gif>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: pic06062.gif
Type: image/gif
Size: 1255 bytes
Desc: not available
URL: <http://open-services.net/pipermail/oslc-cm_open-services.net/attachments/20091123/05a853c4/attachment-0001.gif>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: ecblank.gif
Type: image/gif
Size: 45 bytes
Desc: not available
URL: <http://open-services.net/pipermail/oslc-cm_open-services.net/attachments/20091123/05a853c4/attachment-0002.gif>


More information about the Oslc-Cm mailing list