[Openid-specs-ab] Spec Call Notes 10-Jan-22

Mike Jones Michael.Jones at microsoft.com
Tue Jan 11 01:54:00 UTC 2022


Spec Call Notes 10-Jan-22

Mike Jones
Tony Nadalin
Vittorio Bertocci
Kristina Yasuda
Jeremie Miller
Edmund Jay

Open Issues
              https://bitbucket.org/openid/connect/issues?status=new&status=open
              #1390: Term "Wallet" is used without being defined
                           Mike thinks that we need a behavioral definition, rather than defining it as a protocol participant
              #1382: Proposal of an improved Federation API
                           It's not clear that refactoring things at this point moves us towards finishing
                           However, as Roland points out in #1387, being able to use discovery for separate endpoints is cleaner
              #1391: Clarifications and proposals on Trust Negotiation
                           Mike to review with Roland and John
              #1384: Trust Negotiation
                           We reviewed PR #105 about this
              #1386: Federation specific Dynamic Client Registration Endpoint is underdefined
                           We reviewed PR #102 about this
              #1388: Trust Mark Introspection
                           We reviewed PR #104 about this
              #1387: Operations -> endpoints
                           This aligns with #1382
                           The multiple endpoints approach is probably cleaner
              #1383: Trust Marks claims - logo_uri instead of mark
                           I'd be fine changing to either "logo_uri" or "mark_logo_uri".
              #1366: Support for "immediate" exclusion of an entity from a federation
                           This also relates to #1382
              #1368: [federation_api] fetch entity statement - issuer paramenter is really required?
                           Waiting on a security review by John
              #1373: Definition of the Entity Statement
                           Waiting on a proposal by Mike

Pull Requests
              https://bitbucket.org/openid/connect/pull-requests/
              PR #105: Trust Negotiation
                           This appears to change the meaning. Is that intended?
              PR #102: Cleaned up description of explicit client registration. Added example.
                           This PR looks good
              PR #104: Added new federation api operation - trust mark status.
                           The PR strictly adds a new operation without changing anything else
                           Revocation is probably a necessary evil
              PR #100: clarifications re entity metadata
                           Mike to review the details
              PR #99: added text to clarify what keys are used for OIDC
                           Mike to review the details

I believe we went through all the Federation issues and PRs.

Next Call
              The next call will be on Thursday, January 13, 2022 at 7am Pacific Time, immediately followed by a SIOP call

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20220111/b31d9812/attachment.html>


More information about the Openid-specs-ab mailing list