Understanding the OAuth 2.0 spec is time consuming, here is the simplified version:
http://aaronparecki.com/articles/2012/07/29/1/oauth2-simplified written by: @aaronpk
http://aaronparecki.com/articles/2012/07/29/1/oauth2-simplified written by: @aaronpk