CloudServices/Sagrada/ServiceClientFlow: Difference between revisions

Line 63: Line 63:


When receiving a 401 response from the service, clients should obtain new MAC Auth credentials and an updated endpoint URL via the Authentication API.
When receiving a 401 response from the service, clients should obtain new MAC Auth credentials and an updated endpoint URL via the Authentication API.
Why request-signing instead of a simpler bearer-token approach?  See [https://mail.mozilla.org/pipermail/services-dev/2011-December/000803.html this thread on the mailing list] for the background discussion.
Confirmed users
358

edits