[Openid-specs-ab] What is the relationship between scope and user info claims ?

John Bradley ve7jtb at ve7jtb.com
Sat Nov 5 22:53:18 UTC 2011


No error if it is optional. 

If required then it would be a authentication failed error. 

From a privacy point of view you don.'t want to leak info. 

Others may think we need a more specific error. 

John B

Sent from my iPhone

On 2011-11-05, at 2:52 PM, Roland Hedberg <roland.hedberg at adm.umu.se> wrote:

> 
> 19 sep 2011 kl. 17:37 skrev John Bradley:
> 
>> If you want a particular claim to be required you use the claim request to override the scope.
> 
> What is the error response if a claim request can not be met ?
> 
> -- Roland



More information about the Openid-specs-ab mailing list