AuthScope provides fine grained entitlements for REST style APIs using Scope based access control. AuthScope manages scopes across different applications and provides centralized entitlements decisions for all APIs.
AuthScope has two components:
The Administrative portal can be used for following designing Scope based access control policies for APIs. These policies are then deployed to "AuthScope Authority" component.
The Authority component provides centralized access decisions for all APIs. This component exposes APIs which can be called by API Gateways to evaluate authorization decisions.