PHP OAuth 2.0 Server
league/oauth2-server is a a standards compliant implementation of an OAuth 2.0 authorization server written in PHP which makes working with OAuth 2.0 trivial. You can easily configure an OAuth 2.0 server to protect your API with access tokens, or allow clients to request new access tokens and refresh them.
It supports out of the box the following grants:
- Authorization code grant
- Implicit grant
- Client credentials grant
- Resource owner password credentials grant
- Refresh grant
The following RFCs are implemented:
- RFC6749 "OAuth 2.0"
- RFC6750 " The OAuth 2.0 Authorization Framework: Bearer Token Usage"
- RFC7519 "JSON Web Token (JWT)"
- RFC7636 "Proof Key for Code Exchange by OAuth Public Clients"
This library was created by Alex Bilbie. Find him on Twitter at @alexbilbie.
The following versions of PHP are supported:
- PHP 5.5 (>=5.5.9)
- PHP 5.6
- PHP 7.0
openssl extension is also required.
Bugs and feature request are tracked on GitHub.
If you have any questions about OAuth please open a ticket here; please don't email the address below.
If you would like help implementing this library into your existing platform, or would be interested in OAuth advice or training for you and your team please get in touch with Glynde Labs.
If you discover any security related issues, please email
firstname.lastname@example.org instead of using the issue tracker.
This package is released under the MIT License. See the bundled LICENSE file for details.
This code is principally developed and maintained by Alex Bilbie.
Special thanks to all of these awesome contributors