Published January 12, 2026 | Version v1
Standard Open

OAuth 2.0 Proxied Token Introspection (AARC-G052)

  • 1. ROR icon GÉANT
  • 2. ROR icon National Infrastructures for Research and Technology - GRNET S.A
  • 3. ROR icon Masaryk University
  • 4. Karlsruher Institut für Technologie - Campus Nord
  • 5. Science and Technology Facilities Council
  • 6. SUNET
  • 7. National Institute for Subatomic Physics
  • 8. ROR icon Poznan Supercomputing and Networking Center

Description

This specification extends the OAuth 2.0 Token Introspection method defined in RFC7662. It defines a method for an OAuth 2.0 Authorization Server (AS) that receives an introspection request for a token it did not issue, to query a different, trusted AS. This enables the AS to determine the active state of the token and to retrieve associated metadata.

Files

AARC-G052 - OAuth 2.0 Proxied Token Introspection.pdf

Files (430.6 kB)

Additional details

Funding

European Commission
EOSC Future - EOSC Future 101017536
European Commission
AARC TREE - Authentication and Authorisation for Research Collaboration Technical Revision to Enhance Effectiveness 101131237