Skip to content
Raidiam Auth

OAuth 2.0 Authorisation Server

Raidiam Auth is a secure, standards-compliant OAuth 2.0 Authorisation Server purpose-built for API ecosystems. It issues and manages cryptographically protected access tokens for machine-to-machine authentication and authorisation.

  • Ministry of Defence
  • Commonwealth Bank
  • Foreign & Commonwealth Office
  • Open Insurance Brasil
  • thredd
  • Westpac
  • UAE-central-bank
  • central bank of brasil
  • Open finance brasil

Financial-Grade Authorisation for Any API Ecosystem

Raidiam Auth is a financial-grade authorisation server that authenticates software clients and issues signed OAuth 2.0 tokens—enabling secure, standards-based API access across ecosystems and enterprises. Delivered as part of the Raidiam Connect platform, it provides high-trust, automated authentication without user interaction.

It includes:

  • Full OAuth 2.0 and OpenID Connect (OIDC) support

  • FAPI 2.0-certified conformance

  • Mutual TLS (mTLS) and private_key_jwt client authentication

  • Rich Authorisation Requests (RAR) for fine-grained scopes

  • Central audit and revocation controls

  • Integration with Connect’s directory and certificate authority

With native integration into Raidiam’s directory and credential infrastructure, Auth simplifies deployment, ensures regulatory compliance, and delivers robust token-based access control to any API ecosystem.

API Security Campaign (4)

Key Features That Power Secure Access

FAPI 2.0 Certified OAuth Server

Raidiam Auth meets the highest bar for security with conformance to the Financial-grade API (FAPI) 2.0 profile, enabling secure, standards-aligned access to high-value APIs from day one—without custom builds.

Signed JWT Token Issuance

Issues cryptographically signed access tokens with support for short-lived credentials, scope definitions, and token introspection, ensuring every API request is verifiably from a trusted, authorised source - simplifying integration and auditability..

Mutual TLS and Private Key JWT Support

Supports the most secure client authentication methods—binding tokens to certificates and eliminating shared secrets, providing non-repudiation and resilience against token misuse in zero-trust architectures.

Rich Authorisation Requests (RAR)

Supports OAuth extensions to request specific access rights (e.g. “read accounts”, “initiate payments”), enabling fine-grained access control and contextual authorisation, especially in regulated environments like finance.

Centralised Token Management & Revocation

Integrated with Raidiam Connect’s directory and certificate services—enabling revocation, monitoring, and lifecycle enforcement from a single control plane, delivering complete operational visibility and control over every token, credential, and client.

Who It's Built For

Public Sector and Regulatory Ecosystems

Public Sector and Regulatory Ecosystems

Raidiam Auth enables secure, standardised access control for APIs in open data frameworks - without the need for user presence. It is used in Brazil’s Open Finance and Australia’s ConnectID ecosystems to ensure only accredited, authorised clients can access sensitive APIs under FAPI 2.0 rules.

Building ecosystems is hard.
Talk to the experts.

Talk to our experts and discover how Raidiam can simplify your open banking and enterprise data needs.