Applies to ReadyAPI 2.7, last modified on May 14, 2019

The Implicit grant is similar to an authorization code, but instead of using the code as an intermediary, the access token is sent directly through browser redirect.

OAuth 2.0: Implicit Grant
OAuth 2.0 Azure: Implicit Grant
Option Description
OAuth 2 Flow Sets the OAuth 2.0 method to use.
Client Identification An alphanumeric string used to identify the client.
Response Mode (For Azure only) Specifies how the authorization server sends the access token. Available options:
  • not defined - The authorization server will define which method to use.

  • form_post - The token will be sent as an HTML form by using the POST method.

  • query - The token will be added to the query as a parameter.

State (For Azure only) The value included in the request that is also added to the token response. Usually it is used to provide a randomly generated string to prevent a cross-site request forgery attack.
Resource (For Azure only) The App ID URI of the web service.
Prompt (For Azure only) Specifies if the authentication server prompts the user to log in or consent even if they are logged in. Possible values:
  • not defined - The server will not prompt a user to log in.

  • login - The server asks to login again.

  • consent - The server asks user to consent.

  • admin-consent - The server asks prompts for the administrator consent.

Login Hint (For Azure only) The string displayed as a login hint in the sign-in form.
Domain Hint (For Azure only) Specifies the domain the user should use to sign in.
Authorization URL The authorization server URL.
Access Token URL The URL to get an access token from.
Redirect URL The URL you will be redirected to after successful authorization.
Scope The full scope string defining the requested permissions.
Use Nonce Select to generate a unique string for each request.
Get Access Token Click this button to retrieve the access token.
Automation Click this button to open the Automated Token Profile editor.

See Also

Authorization Code Grant
Client Credentials Grant
Resource Owner Password Credentials Grant
OAuth 2.0 Grant Types

Highlight search results