[Openid-specs-mobile-profile] Issue #112: CIBA: Require presence of jwks_uri conditionally (openid/mobile)

Takahiko Kawasaki issues-reply at bitbucket.org
Wed Nov 7 06:44:32 UTC 2018


New issue 112: CIBA: Require presence of jwks_uri conditionally
https://bitbucket.org/openid/mobile/issues/112/ciba-require-presence-of-jwks_uri

Takahiko Kawasaki:

The page 6 of the 6th draft (draft-mobile-client-initiated-backchannel-authentication-06) says:

> it MUST check if a valid "jwks_uri" is set when the backchannel request grant type is present"

Because OpenID Provider implementations don't always support "pairwise", it will be better to add a condition like

> if the OpenID Provider supports "pairwise"




More information about the Openid-specs-mobile-profile mailing list