[cifs-protocol] [MS-OAPXBC] Exchange PRT for Access Token, HS256 or RS256? - TrackingID#2312150040011919

David Mulder dmulder at samba.org
Tue Dec 19 17:44:38 UTC 2023


On 12/19/23 10:39 AM, Kristian Smith wrote:
> [Obaid to Bcc]
>
> Hi David,
>
> I'll be looking into this Oauth question you've posed. Once I've 
> completed my research, I'll reach out to you with my findings.
>
FYI, I think the correct answer is that these pages need to be updated 
to say to sign with the device key for RS256, or sign with the session 
key for HS256. They should not say that you can sign with either. When I 
send an Exchange PRT request signed with the device key and RS256, the 
request is ignored.

-- 
David Mulder
Labs Software Engineer, Samba
SUSE
1221 S Valley Grove Way, Suite 500
Pleasant Grove, UT 84062
(P)+1 385.208.2989
dmulder at suse.com
http://www.suse.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.samba.org/pipermail/cifs-protocol/attachments/20231219/be07f246/attachment.htm>


More information about the cifs-protocol mailing list