[Openid-specs-ab] Spec call notes 25-Feb-13
Mike Jones
Michael.Jones at microsoft.com
Tue Feb 26 00:47:16 UTC 2013
Spec call notes 25-Feb-13
Mike Jones
Brian Campbell
Tim Bray
John Bradley
Breno de Medeiros
Edmund Jay
Agenda:
Open Issues
MTI Discussion
Key Rollover
Open Issues:
We discussed a few open issues while waiting for Breno to join the call
MTI Discussion:
We went through the MTI lists in 9.1 and 9.2
Breno suggested that we repeat the MTI response_types from 2.1.1.1 in 9.1
Breno suggested that we write a comprehensive section on re-authorization
We will say in 9.1 that ui_locales and claims_locales must not result in errors
We will say in 9.1 that acr_values must not result in errors
Tim stated that the spec should specify the use HTTP caching for the request_uri values
Breno would like more data on whether Request Object and request_uri should be MTI
Mike will talk with Chuck on Thursday
There was general agreement that we could drop the "request" parameter from MTI
Breno suggested moving the request_uri MTI requirement to dynamic providers (9.2)
Nat suggested that request_uri could only be MTI when pre-registered
Breno suggested that we only need to support request_uri one way to be compliant -
with pre-registered URIs or with dynamic URIs
We decided to move request_uri MTI for dynamic OPs and remove the request parameter from MTI
We started to talk about whether X.509 should remain the MTI key format, but ran out of time
Key Rollover:
We pointed out the current key roll-over text
Breno agreed to review it
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20130226/39eb8f22/attachment.html>
More information about the Openid-specs-ab
mailing list