Cite this RFC:TXT | XML | BibTeX
DOI: https://doi.org/10.17487/RFC9470
Discuss this RFC: Send questions or comments to the mailing listoauth@ietf.org
Other actions:View Errata | Submit Errata | Find IPR Disclosures from the IETF | View History of RFC 9470
It is not uncommon for resource servers to require differentauthentication strengths or recentness according to thecharacteristics of a request. This document introduces a mechanismthat resource servers can use to signal to a client that theauthentication event associated with the access token of the currentrequest does not meet its authentication requirements and, further,how to meet them. This document also codifies a mechanism for aclient to request that an authorization server achieve a specificauthentication strength or recentness when processing anauthorization request.
For the definition ofStatus,seeRFC 2026.
For the definition ofStream, seeRFC 8729.