Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Why is there no consistent single signon API flow? (mjg59.dreamwidth.org)
3 points by ingve 7 months ago | hide | past | favorite | 1 comment


because SSO is implemented using various protocols like SAML, OAuth 2.0, and OIDC, each with different use cases, data formats, and security models. Identity providers also have custom implementations, which lead to variations in endpoints, token formats, and user info structures, making a universal API flow difficult to standardize.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: