[Openid-specs-ab] Inconsistency in redirect_uri definitions
Justin Richer
jricher at mitre.org
Fri Jun 7 17:39:57 UTC 2013
+1 to the proposed fix -- greater specificity seems to be the intent here.
-- Justin
On 06/07/2013 01:33 PM, Mike Jones wrote:
>
> While working on the spelling and grammar check, I noticed the
> following in redirect_uri definitions. While I hate to bring this up
> while we're trying to finish the Implementer's Drafts, this is
> potentially a recall-class issue, so I wanted to raise it now, rather
> than have it come up later.
>
> Messages, Basic, and Implicit say:
>
> redirect_uri
>
> REQUIRED. Redirection URI to which the response will be sent. This
> MUST be pre-registered with the OpenID Provider.
>
> Standard says:
>
> redirect_uri
>
> REQUIRED. Redirection URI to which the response will be sent. The
> Scheme, Host, Path, and Query Parameter segments of this URI MUST
> match one of the redirect_urisregistered for the client_idin the
> OpenID Connect Dynamic Client Registration 1.0
> <file:///C:%5Cmbj%5CDSG%5COpenID%5Copenid-connect-standard-1_0.html#OpenID.Registration>
> [OpenID.Registration] specification.
>
> Dynamic Registration says:
>
> redirect_uris
>
> REQUIRED. Array of redirection URIs values used in the Authorization
> Code and Implicit grant types. One of these registered redirection URI
> values MUST match the Scheme, Host, and Path segments of the
> redirect_uriparameter value used in each Authorization Request.
>
> Should Messages, Basic, and Implicit be changed to match Standard?
> That's my sense of the situation, but wanted to get others' input
> before doing so.
>
> Thanks,
>
> -- Mike
>
>
>
> _______________________________________________
> Openid-specs-ab mailing list
> Openid-specs-ab at lists.openid.net
> http://lists.openid.net/mailman/listinfo/openid-specs-ab
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20130607/0b26945a/attachment.html>
More information about the Openid-specs-ab
mailing list