[Openid-specs-ab] Issue #1568: the format of the iss parameter (openid/connect)

Andrii Deinega issues-reply at bitbucket.org
Wed Jul 20 19:23:56 UTC 2022


New issue 1568: the format of the iss parameter
https://bitbucket.org/openid/connect/issues/1568/the-format-of-the-iss-parameter

Andrii Deinega:

The specification requires that the iat parameter is required and

> MUST contain the instant when the proof was created

it isn’t very clear what the instant is in this context but in OpenID Connect and OAuth world we usually deal with

> the number of seconds from 1970-01-01T0:0:0Z as measured in UTC until the date/time.

that applies for `iat` and similar parameters in OpenID Connect ID Token, DPoP proofs, and so forth. If feels like this needs to be corrected including the provided examples.




More information about the Openid-specs-ab mailing list