[Openid-specs-ab] Issue #971: Registration - 2. userinfo_encrypted_response_enc default value (openid/connect)
Edmund Jay
issues-reply at bitbucket.org
Wed Jul 22 18:29:48 UTC 2015
New issue 971: Registration - 2. userinfo_encrypted_response_enc default value
https://bitbucket.org/openid/connect/issues/971/registration-2
Edmund Jay:
The current text :
```
#!text
userinfo_encrypted_response_enc
OPTIONAL. JWE enc algorithm [JWA] REQUIRED for encrypting UserInfo Responses.
If userinfo_encrypted_response_alg is specified, the default for this value is
A128CBC-HS256. When userinfo_encrypted_response_enc is included,
userinfo_encrypted_response_alg MUST also be provided
```
There is a inconsistency with the sentence "If userinfo_encrypted_response_alg is specified, the default for this value is A128CBC-HS256"
It should say "is omitted" instead of "is specified".
More information about the Openid-specs-ab
mailing list