[Openid-specs-ab] Issue #971: Registration - 2. userinfo_encrypted_response_enc default value (openid/connect)

Edmund Jay issues-reply at bitbucket.org
Wed Jul 22 18:29:48 UTC 2015


New issue 971: Registration - 2. userinfo_encrypted_response_enc default value
https://bitbucket.org/openid/connect/issues/971/registration-2

Edmund Jay:

The current text :

```
#!text
userinfo_encrypted_response_enc
OPTIONAL. JWE enc algorithm [JWA] REQUIRED for encrypting UserInfo Responses. 
If userinfo_encrypted_response_alg is specified, the default for this value is 
A128CBC-HS256. When userinfo_encrypted_response_enc is included,
userinfo_encrypted_response_alg MUST also be provided
```


There is a inconsistency with the sentence "If userinfo_encrypted_response_alg is specified, the default for this value is A128CBC-HS256"
 
It should say "is omitted" instead of "is specified".




More information about the Openid-specs-ab mailing list