Roles Clients and Tokens
Roles: Client, Authorization Server, Resource Server
2 types of clients: Confidential and Public
2 token types
Identifier Type Token: The resource server needs to further query from auth server’s DB about this token, re what user it is.
Self-Contained Token (e.g. JWT)
The coded token be like:
Content