[Openid-specs-ab] SIOP Special Call Notes 9-Dec-21
Mike Jones
Michael.Jones at microsoft.com
Thu Dec 9 18:10:44 UTC 2021
SIOP Special Call Notes 9-Dec-21
Kristina Yasuda
David Chadwick
Petteri Stenius
Niels Klomp
Torsten Lodderstedt
Giuseppe De Marco
Juan Caballero
John Bradley
Mike Jones
Stephane Durand
Jo Vercammen
Bjorn Hjelm
Tom Jones
OpenID Workshop
The latest OpenID Workshop is today at 9am Pacific Time (2 hours after the start of this call)
SIOP and OIDC4VP Implementer's Draft Process
Latest editor's drafts are published at openid.bitbucket.io/connect
These reflect several PRs being merged for both the SIOP and OIDC4VP specs
PR #80 introduced the option of pre-registered clients
Open Pull Requests
https://bitbucket.org/openid/connect/pull-requests/
#79: Remove id token and userinfo embedding
This removes the option of returning VPs in the ID Token and the UserInfo Endpoint
This was informed by a poll to the list about what options people had implemented
Torsten addressed comments by Niels and Kristina
Mike suggested merging now
Torsten will merge and publish and updated editor's draft
Open Issues
https://bitbucket.org/openid/connect/issues?status=new&status=open
#1369: Make requesting verifiable presentations extensible
Torsten suggested that we just migrate to PE v2
Mike said that we should choose a version and not give people options to use different ones
David said that he'd like to be able to profile and use subsets of PE
Profiles could be declared in metadata but we haven't defined how to do so yet
#1336: rename to "vp_tokens" from "vp_token" to make clear it is an array
We agreed not to rename the field
"aud" is a precedent for a field that can be a singleton or an array
#1356: SIOP request, parameters state and nonce
Kristina agreed to remove "state" from the examples
#1335: add a text how SIOP can be used for authentication and claim presentation
John to review text about cross-device SIOP not being appropriate for authentication
#1370: [SIOPv2] agree on the set of Static Self-Issued OpenID Provider Discovery Metadata
Mike suggested that it's better to take a stab at this than not
John said we shouldn't put anything in here that isn't MTI for everyone
Kristina to create a PR
#1261: How does RP determine sub type?
We agreed that this has been addressed
OpenID Connect for Verifiable Credential Issuance Specification
No objections to its adoption were voiced during the review period
Therefore, it has been adopted
Mike requested that the editors make a PR to create the working group version
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20211209/889eb107/attachment.html>
More information about the Openid-specs-ab
mailing list