Discussions
New (2015.1) Restlet Authentication Via OAuth - Limitations
Hi,
I was really excited to see the Token Based Authentication (OAuth) possibilities for RESTlets in the Release Notes!!!
However, I was deeply disappointed to discover that the 'Login Via Token' permission cannot be added to either the Customer Center Role, or the Employee Center Role.
Seems crazy, as these Roles can Authenticate against a RESTlet if the NLAUTH header method is used (and client's UI Login credentials are used externally).
Was this just an oversight? Will this permission be added to these Role types soon, or do my customer & employee facing mobile apps need to use the less secure and non standards based NLAUTH Header Methods?