dougaojue8185 2015-07-03 15:00
浏览 43
已采纳

oauth2删除请求,禁止

I'm sending a DELETE server method to an API protected by Oauth2, however, I get the following message.

 "error_description": "When putting the token in the body, the method must be POST or PUT"

I've been looking documentation regarding to this issue, and I cannot find a way to send other methods than post and put when including the access token to validate the permisions.

Any ideas?

  • 写回答

1条回答 默认 最新

  • doujiang1993 2015-07-03 15:18
    关注

    The entire security of OAuth2 is based on the SSL/TLS. Access Tokens are usually passed to the server in the header like this:

    Authorization: Bearer ee000c4eb0610ed1ed3115571133fcead52b2233
    

    In requests like GET and DELETE the access token must be passed in the header. For POST and PUT requests it is okay to send it in the body, but sending it in the header is recommended.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 android报错 brut.common.BrutException: could not exec (exit code = 1)
  • ¥15 nginx反向代理获取ip,java获取真实ip
  • ¥15 eda:门禁系统设计
  • ¥50 如何使用js去调用vscode-js-debugger的方法去调试网页
  • ¥15 376.1电表主站通信协议下发指令全被否认问题
  • ¥15 物体双站RCS和其组成阵列后的双站RCS关系验证
  • ¥15 复杂网络,变滞后传递熵,FDA
  • ¥20 csv格式数据集预处理及模型选择
  • ¥15 部分网页页面无法显示!
  • ¥15 怎样解决power bi 中设置管理聚合,详细信息表和详细信息列显示灰色,而不能选择相应的内容呢?