[Openid-specs-ab] Issue #1019: Core: IANA Consideration (openid/connect)
Nat Sakimura
issues-reply at bitbucket.org
Tue Jul 18 09:55:54 UTC 2017
New issue 1019: Core: IANA Consideration
https://bitbucket.org/openid/connect/issues/1019/core-iana-consideration
Nat Sakimura:
Authorization request parameter registration is needed.
https://mailarchive.ietf.org/arch/msg/oauth/_E14Trqu962cReu3t6FquPEyigY
We should register the top level JWT claims such as `iss`, `aud`, `sub`, and
`exp` (and maybe other common JWT claims that are about the token itself
like `jti`, `iat`, etc) as authorization request parameters in
https://www.iana.org/assignments/oauth-parameters/oauth-parameters.xhtml#parameters
because the parameter names and claim names collide when using a request object.
Potentially, we may need to register everything in
https://www.iana.org/assignments/jwt/jwt.xhtml
More information about the Openid-specs-ab
mailing list