dougaojue8185 2015-07-03 15:00
浏览 43
已采纳

oauth2删除请求,禁止

I'm sending a DELETE server method to an API protected by Oauth2, however, I get the following message.

 "error_description": "When putting the token in the body, the method must be POST or PUT"

I've been looking documentation regarding to this issue, and I cannot find a way to send other methods than post and put when including the access token to validate the permisions.

Any ideas?

  • 写回答

1条回答 默认 最新

  • doujiang1993 2015-07-03 15:18
    关注

    The entire security of OAuth2 is based on the SSL/TLS. Access Tokens are usually passed to the server in the header like this:

    Authorization: Bearer ee000c4eb0610ed1ed3115571133fcead52b2233
    

    In requests like GET and DELETE the access token must be passed in the header. For POST and PUT requests it is okay to send it in the body, but sending it in the header is recommended.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 Mac系统vs code使用phpstudy如何配置debug来调试php
  • ¥15 目前主流的音乐软件,像网易云音乐,QQ音乐他们的前端和后台部分是用的什么技术实现的?求解!
  • ¥60 pb数据库修改与连接
  • ¥15 spss统计中二分类变量和有序变量的相关性分析可以用kendall相关分析吗?
  • ¥15 拟通过pc下指令到安卓系统,如果追求响应速度,尽可能无延迟,是不是用安卓模拟器会优于实体的安卓手机?如果是,可以快多少毫秒?
  • ¥20 神经网络Sequential name=sequential, built=False
  • ¥16 Qphython 用xlrd读取excel报错
  • ¥15 单片机学习顺序问题!!
  • ¥15 ikuai客户端多拨vpn,重启总是有个别重拨不上
  • ¥20 关于#anlogic#sdram#的问题,如何解决?(关键词-performance)