Code | Display | Definition |
public |
Public |
Public access without any specific access control. |
OAuth |
OAuth |
OAuth (unspecified version see oauth.net). |
SMART-on-FHIR |
SMART-on-FHIR |
OAuth2 using SMART-on-FHIR profile (see http://docs.smarthealthit.org/). |
NTLM |
NTLM |
Microsoft NTLM Authentication. |
basic |
Basic |
Basic authentication defined in HTTP specification. |
Kerberos |
Kerberos |
see http://www.ietf.org/rfc/rfc4120.txt. |
Certificates |
Certificates |
SSL where client must have a certificate registered with the server. |
opaque-access-token |
Opaque Access Token |
Uses an opaque token for access control, which is a token whose structure is not visible or meaningful to the client. |
jwt-access-token |
JWT Access Token |
Uses a JSON Web Token (JWT) for access control, which is a compact, URL-safe means of representing claims to be transferred between two parties. |
mutual-tls |
Mutual TLS |
Uses mutual Transport Layer Security (TLS) where both client and server authenticate each other using certificates. |
wss-saml-token |
WSS SAML Token |
Uses a Security Assertion Markup Language (SAML) token within the Web Services Security (WSS) framework for access control. |
wss-username-token |
WSS User Name Token |
Uses a username token within the WSS framework for access control. |
wss-kerberos-token |
WSS Kerberos Token |
Uses a Kerberos token within the WSS framework for access control. |
wss-x509-token |
WSS X509 Token |
Uses an X.509 certificate token within the WSS framework for access control. |
wss-custom-token |
WSS Custom Token |
Uses a custom token within the WSS framework for access control. |