Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. Create new Client IDs for edX-iOS-OAuth-v2-with-refresh and edX-Android-OAuth-v2-with-refresh to be used for the new versions of the mobile clients that will have support for refresh tokens.
  2. Run a script to extend the access token expiration time for all old mobile Clients by 100 years.
  3. Publicize the release of the new mobile apps and encourage old users to upgrade for "better security".  (Caveat: see Why not long-lived Access Tokens?)


Authentication Flow

The OAuth authentication and refresh flow for mobile in case of login or any API call. 

Lucidchart
pageCount1
autoUpdatefalse
aligncenter
typesimple
autoSize0
macroIdc1f50cce-bea7-45a7-bbea-390355ab0153
instanceIdConfluence:1710260420
pages
width1400
documentId76fa585f-a3a2-4aea-a9fd-adb8544e00b1
documentToken76fa585f-a3a2-4aea-a9fd-adb8544e00b1|38005|42599769|yPbL8bgbESjzQockhaevXvVez+0aoztfFLmNnj8J2VI=
updated1646380729683
height600