RFC 8898 · PROPOSED STANDARD · 2020

Third-Party Token-Based Authentication and Authorization for Session Initiation Protocol

Overview

RFC 8898, “Third-Party Token-Based Authentication and Authorization for Session Initiation Protocol”, is a Proposed Standard document published in September 2020 by R. Shekh-Yusef, C. Holmberg, V. Pascual. It updates RFC 3261. The canonical text is published by the RFC Editor.

Abstract

This document defines the "Bearer" authentication scheme for the Session Initiation Protocol (SIP) and a mechanism by which user authentication and SIP registration authorization is delegated to a third party, using the OAuth 2.0 framework and OpenID Connect Core 1.0. This document updates RFC 3261 to provide guidance on how a SIP User Agent Client (UAC) responds to a SIP 401/407 response that contains multiple WWW-Authenticate/Proxy-Authenticate header fields.

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 8898 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.

Relationships to other RFCs
This RFC updates
RFC 3261
Other RFCs from 2020

Who Is Online

In total there are 64 users online: 0 registered, 57 guests and 7 bots.

Most users ever online was 5,555 on 17 Jul 2026, 3:23 am.

Bots: AhrefsBot Applebot Baiduspider Other Bot Other Spider PetalBot SemrushBot

Users active in the past 15 minutes. Total registered members: 372