OAuth – How does the Resource Server validate the access token is not for any other Resource Server?
Let’s take an example where there are two resource servers – RS1 and RS2 and there is one authorization server – AS.
Both resource servers – RS1 and RS2 use authorization server – AS
If a client requests an access token for… Continue reading OAuth – How does the Resource Server validate the access token is not for any other Resource Server?