<div dir="ltr">Connect Spec Meeting<br><br>Attending:<br><ul><li>Justin Richer</li><li>Mike Jones</li><li>Pamela Dingle</li><li>Nat Sakimura</li><li>Brian Campbell</li><li>John Bradley</li><li>Roland Hedberg</li><li>Nov Matake</li></ul><br>OAuth dynamic registration spec is nearly done - in “Auth 48”.<br><br><b>RP Conformance Tests</b><br><br>- Roland has written the OP that will perform the RP conformance tests<br><a href="https://rp.certification.openid.net:8080/test_list">https://rp.certification.openid.net:8080/test_list</a><br>- Descriptions have been written<br>- Hans has started already, Roland hopes to see Edmund start soon as well<br>Under discussion: how to make it easier for testing RPs to know which test they have to run for a specific profile and what information to provide<br>- Want to make it easier for folks to evaluate the tests and know you have the info that’s needed<br>- one thing would be to set up a web form where, if you choose a profile, all the necessary tests would appear and you could manage your screen dumps, logs etc and you can see that you’ve done all the tests<br>- One big difference between RP tests and OP tests is that the results will be screen captures not logs.<br>- Roland has fixed the certificate<br><br>Nat is meeting with Edmund tomorrow and will speak to him about re-prioritizing his time more towards the rp test side of the house<br><br><u>Please read the RP test descriptions and provide feedback</u><br><br><b>Logout Specs</b><br>- Mike got feedback from developers at MS<br>- outstanding questions for HTTP spec are: whether to invoke as image GET or iFrame load, or to allow the choice<br>-- most of the protocols are now just using iframe load — can this protocol be simplified by eliminating image GET?<br>  Justin -  hasn’t implemented yet but feels that the image get is a hack<br>  John - that possibly using iFrames is somehow less deterministic, i.e. never-ending loops of nested iframe that never exit<br>one bad RP could mess up all the RPs<br>  Justin - that is us trying to police RPs which isn’t our job<br>  Mike says iframe tab can execute javascript, which would let you execute client-side code to clean up <br>  - OTOH javascript is alsorequred to login, so maybe if they can’t login, maybe it is ok if they can’t logout.<br><br>- NRI is using image get - because of common use of feature phones is a barrier to using iFrame only protocol, question is whether those phones can execute iFrame or not?  Nat will check out the situation and get back to the group.<br><br>ACTION DOES ANYONE OBJECT TO REMOVING IMAGE GET LANGUAGE FROM THE SPECS?  Comment in email in the next few days.  If not, Mike will start the task of simplification.<br><br>One of the things idenified as part of NAPPS was a way to signal to a downstream provider that something has happened (theft, termination) so please clean things up<br>Talking to Google about backchannel login<br>Mike -   even though NAPPS will use the logout spec, the spec should still be part of the Connect group<br>John - confirmed that the plan is to keep everything in connect<br><br>Nat asked John about status of the PKCE draft, there is an IETF submission deadline on Monday, so John is working to meet that government<br><br>New government working group will do profiles of specs <br>question was, why not roll that into Connect,  but John noted that it’s an IPR thing, the IPR burden for profiling  is less, hopefully <br>if they can come up with a strong enough quickly enough, HEART can use it.<br>Ideas for Names:<br>“Government Assurance Profile (GAP) WG”<br><br clear="all"><br>-- <br><div class="gmail_signature"><div dir="ltr"><div><br><div style="padding-bottom:5px;margin-bottom:0px">
        <table style="height:40px">
                <tbody>
                        <tr>
                                <td style="width:75px;vertical-align:top;height:79px">
                                        <a href="https://www.pingidentity.com/" style="text-decoration:none" target="_blank"><img alt="Ping Identity logo" src="http://4.pingidentity.com/rs/pingidentity/images/EXP_PIC_square_logo_RGB_with_hard_drop.png" style="width: 75px; height: 79px; margin: 0px; border: medium none;"></a></td>
                                <td style="vertical-align:top;padding-left:10px">
                                        <div style="margin-bottom:7px">
                                                <span style="color:rgb(230,29,60);font-family:arial,helvetica,sans-serif;font-weight:bold;font-size:14px">Pam Dingle</span><br>
                                                <span style="color:rgb(0,0,0);font-family:arial,helvetica,sans-serif;font-weight:normal;font-size:14px">Principal Technical Architect</span></div>
                                        
                                                        <table>
                                                <tbody>
                                                        <tr>
                                                                <td style="text-align:center;border-right:1px solid rgb(230,29,60);padding:0px 5px 0px 0px">
                                                                        <span style="color:rgb(230,29,60);font-family:arial,helvetica,sans-serif;font-weight:bold;font-size:14px">@</span></td>
                                                                <td style="text-align:left;padding:0px 0px 0px 3px">
                                                                        <span style="text-decoration:none;color:rgb(0,0,0);font-family:arial,helvetica,sans-serif;font-weight:normal;font-size:14px"><a href="mailto:pdingle@pingidentity.com" target="_blank">pdingle@pingidentity.com</a></span></td>
                                                        </tr>
                                                        <tr>
                                                                <td style="text-align:center;border-right:1px solid rgb(230,60,29);padding:0px;vertical-align:middle">
                                                                        <img alt="phone" src="http://4.pingidentity.com/rs/pingidentity/images/EXP_phone_glyph.gif" style="width: 13px; height: 16px;"></td>
                                                                <td style="text-align:left;padding:0px 0px 0px 3px">
                                                                        <span style="color:rgb(0,0,0);font-family:arial,helvetica,sans-serif;font-weight:normal;font-size:14px">+1 303.999.5890</span></td>
                                                        </tr><tr>
                                                                <td colspan="2" style="font-family:arial,helvetica,sans-serif;font-size:14px;font-weight:normal;padding-top:15px;color:rgb(153,153,153)">
                                                                        Connect with us…</td>
                                                        </tr>
                                                        <tr>
                                                                <td colspan="2">
                                                                        <a href="https://twitter.com/pingidentity" style="text-decoration:none" title="Ping on Twitter" target="_blank"><img alt="twitter logo" src="http://4.pingidentity.com/rs/pingidentity/images/twitter.gif" style="width: 20px; height: 23px; border: medium none; margin: 0px;"></a> <a href="https://www.youtube.com/user/PingIdentityTV" style="text-decoration:none" title="Ping on YouTube" target="_blank"><img alt="youtube logo" src="http://4.pingidentity.com/rs/pingidentity/images/youtube.gif" style="width: 23px; height: 23px; border: medium none; margin: 0px;"></a> <a href="https://www.linkedin.com/company/21870" style="text-decoration:none" title="Ping on LinkedIn" target="_blank"><img alt="LinkedIn logo" src="http://4.pingidentity.com/rs/pingidentity/images/linkedin.gif" style="width: 23px; height: 23px; border: medium none; margin: 0px;"></a> <a href="https://www.facebook.com/pingidentitypage" style="text-decoration:none" title="Ping on Facebook" target="_blank"><img alt="Facebook logo" src="http://4.pingidentity.com/rs/pingidentity/images/facebook.gif" style="width: 23px; height: 23px; border: medium none; margin: 0px;"></a> <a href="https://plus.google.com/u/0/114266977739397708540" style="text-decoration:none" title="Ping on Google+" target="_blank"><img alt="Google+ logo" src="http://4.pingidentity.com/rs/pingidentity/images/google%2B.gif" style="width: 23px; height: 23px; border: medium none; margin: 0px;"></a> <a href="http://www.slideshare.net/PingIdentity" style="text-decoration:none" title="Ping on SlideShare" target="_blank"><img alt="slideshare logo" src="http://4.pingidentity.com/rs/pingidentity/images/slideshare.gif" style="width: 23px; height: 23px; border: medium none; margin: 0px;"></a> <a href="http://flip.it/vjBF7" style="text-decoration:none" title="Ping on Flipboard" target="_blank"><img alt="flipboard logo" src="http://4.pingidentity.com/rs/pingidentity/images/flipboard.gif" style="width: 23px; height: 23px; border: medium none; margin: 0px;"></a> <a href="https://www.pingidentity.com/blogs/" style="text-decoration:none" title="Ping blogs" target="_blank"><img alt="rss feed icon" src="http://4.pingidentity.com/rs/pingidentity/images/rss.gif" style="width: 23px; height: 23px; border: medium none; margin: 0px;"></a></td>
                                                        </tr>
                                                </tbody>
                                        </table>
                                </td>
                        </tr>
                </tbody>
        </table>
</div></div></div></div>
</div>