• OpenID Connect
  • OAuth 2.x
  • SAML v2.0
  • Events
  1. Get Started > 
  2. Here is a list of standards that Authway supports

Here is a list of standards that Authway supports

Authway supports the following list of standards and specifications:

OpenID Connect

  • OpenID Connect Core 1.0
  • OpenID Connect Discovery 1.0
  • OpenID Connect RP-Initiated Logout 1.0
  • OpenID Connect Session Management 1.0
  • OpenID Connect Front-Channel Logout 1.0
  • OpenID Connect Back-Channel Logout 1.0
  • Multiple Response Types
  • Form Post Response Mode

OAuth 2.x

  • OAuth 2.0
  • OAuth 2.0 Bearer Token Usage
  • JSON Web Token
  • OAuth 2.0 Token Revocation
  • OAuth 2.0 Token Introspection
  • OAuth 2.0 JSON Web Tokens for Client Authentication
  • JWT Profile for OAuth 2.0 Access Tokens
  • OAuth 2.0 Authorization Server Issuer Identifier in Authorization Response
  • OAuth 2.0 Step-up Authentication Challenge Protocol
  • OAuth 2.0 Pushed Authorization Requests
  • JSON Web Token (JWT) Response for OAuth Token Introspection
  • Assertion Framework for OAuth 2.0 Client Authentication and Authorization Grants
  • JSON Web Token (JWT) Profile for OAuth 2.0 Client Authentication and Authorization Grants

SAML v2.0

  • Assertions and Protocols for the OASIS Security Assertion Markup Language (SAML) V2.0
  • Bindings for the OASIS Security Assertion Markup Language (SAML) V2.0
    • HTTP Redirect Binding
    • HTTP POST Binding
    • HTTP Artifact Binding
  • Profiles for the OASIS Security Assertion Markup Language (SAML) V2.0
  • Metadata for the OASIS Security Assertion Markup Language (SAML) V2.0

Events

  • The Atom Syndication Format

  • Change history
  • Get Started
    • Introduction to IAM
    • Introduction to OIDC and OAuth
    • Glossary
    • Here is a list of standards that Authway supports
  • Configure Authway
    • Modules and Functionality
    • The relation between modules, systems and APIs
    • Configure an Application
    • Customize UI for an Application
    • Configure an External System
    • Configure an API
    • Configure a Tenant
    • Access Control With Modules
  • User Management
    • Create and Invite Users
    • Auto provisioning of Users
    • Verify User Emails
    • Delete Users
  • Developer guide
    • Create a User
      • Link Users
    • User sign-in
      • Choose Authentication for a SPA
      • OpenId Connect Authentication with Authorisation Code Flow
      • Authorization Endpoint Parameters
      • Default Claims Supported
      • OpenId Connect Authentication with .NET
      • Protect user information from the IdP
      • Only allow users from a specific tenant to sign in
      • Control authentication method from the Client (application)
      • Require MFA Authentication for a Client (application)
      • Force re-authentication of a user
      • Impersonate (run as) a user
      • Force single-sign-on from a Client (Application)
      • Switch linked user
    • User sign-out
      • Trigger OpenId Connect Sign-out
      • Handle OIDC back-channel notification
    • Access control
      • Role-based access control
      • Permission-based access control
      • Permission-based access control with .NET
    • Consume an API
      • Machine-to-Machine (M2M) authentication
      • Call an API
    • Protect an API
    • Privacy and GDPR
    • Signing keys
    • Standard and Custom OAuth 2.0 and OpenId Connect Endpoints
      • Discovery Endpoints
      • JWK Set
      • Authorization Endpoint
      • Pushed Authorization Request (PAR) Endpoint
      • Token Endpoint
      • Token Introspection Endpoint
      • Token Revocation Endpoint
      • UserInfo Endpoint
      • Check Session iframe
      • Logout (End Session) Endpoint
      • Custom Scope Introspection Endpoint
    • Tokens
      • ID Tokens
      • Access Tokens
      • Refresh Tokens
      • Revoke Tokens
    • Integrations
      • Admin APIs
        • Deprecated APIs
        • OAS 3.0
      • Events API
        • Organisation Events
          • OrganisationClaimAdded
          • OrganisationClaimRemoved
          • OrganisationCreated
          • TrustedDomainRemoved
          • TrustedDomainAdded
          • OrganisationUpdated
          • OrganisationDeleted
        • Person Events
          • PersonCreated
          • PersonDeleted
          • PersonUpdated
        • User Events
          • UserCreated
          • UserActivated
          • UserUpdated
          • UserUsernameChanged
          • UserDeleted
          • UserDeviceAdded
          • UserDeviceCountryAdded
          • UserInvited
          • UserLoginAdded
          • UserLoginRemoved
          • UserPasswordAdded
          • UserPasswordChanged
          • UserPasswordRemoved
          • UserRoleAdded
          • UserRoleRemoved
          • UserSignInAssociated
          • UserSignedIn
          • UserSignedOut
          • UserSignInFailed
          • UserLockedout
          • UserUnlocked
          • UserDeactivated
          • UserReactivated
          • UserConfirmedEmail
          • UserConfirmedPhoneNumber
        • Organisation module Events
          • ModuleActivatedForOrganisation
          • ModuleInactivatedForOrganisation
          • ModulePayedForOrganisation
          • ModuleUnpayedForOrganisation
        • Module Events
          • ModuleWentOffline
          • ModuleWentOnLine
          • FunctionalityDeleted
      • Webhooks
        • Webhook Events and Payload
    • Migration
      • Migration of Users With Passwords
  • System Administrator Guide
    • Privacy and GDPR
    • Linked users
    • Lägga till inloggning med Microsoft Entra ID (eller Microsoft-konto)
    • Configure Authentication Methods for a Tenant
      • Configure Password Requirements for a Tenant
      • Configure Microsoft Entra ID for a Tenant
More
  • Tags

  •  
  •  
  •  

Built with by Hugo