[Openid-specs-ab] SIOP Special Topic Call Notes 16-Jun-22

Mike Jones Michael.Jones at microsoft.com
Thu Jun 16 17:03:38 UTC 2022


SIOP Special Topic Call Notes 16-Jun-22

Kristina Yasuda
Mike Jones
Filip Skokan
Giuseppe De Marco
David Chadwick
Tom Jones
Brian Campbell
Torsten Lodderstedt
Jo Vercammen
Mark Haine
Mike Varley
Kenichi Nakamura
David Waite

Torsten requested that the calendar invitation be updated to use the correct gotomeeting link
              Kristina said that she would contact Mike Leszcz about it

Kristina said that we want to publish an updated OpenID for Verifiable Presentations spec before Identiverse
              This version will be based on OAuth

David Chadwick reported on conversations in the VC API working group
              He told them that our specs are moving to being based on OAuth
              The Jobs of the Future Group is holding an interop plugfest for VCs
              Mike Varley reported on discussions aimed at converging some of the efforts

A JSON Web Proofs (JWPs) BoF is tentatively scheduled for IETF 114
              See the description in the notes from the regular working group call today

Open Pull Requests
              https://bitbucket.org/openid/connect/pull-requests/
              PR #145: Revises the approach to credential metadata publishing
                           We proposed merging this PR to make progress
                           Tom Jones had questions about displaying credentials
                           David Chadwick described doing just that
                           Torsten suggested that Tom review the latest drafts
                           Tom said that users can't understand claims
                           David Chadwick said that, for instance, an mDL should be displayed in a manner similar to a plastic driver's license
                           We merged the PR
              PR #209: Revises the approach to credential metadata publishing
                           This is straightforward
                           We merged it
              PR #210: enabling Obtaining Metadata Just-in-time in OpenID4VP
                           This is needed because we're no longer dependent upon SIOPv2
                           This moves the needed text into the OpenID4VP spec
                           Kristina proposes that we merge this after 24 hours if there are no objections
              PR #211: enabling Obtaining Metadata Just-in-time in OpenID4VP
                           This adds the cross-device flow to OpenID4VP, similarly to what we did in PR #210
                           We will likewise merge this in 24 hours if no one objects
              PR #198: Two new uses cases added
                           Mike Varley asked questions about cross-device use cases
                           Torsten said that consent is orthogonal to the protocols
                           We discussed that issuers might want assurances that the wallet is actually obtaining consent
                           David wanted to ensure that refresh is a genuine use case
                                         Torsten wants the PR to have the mechanism added
                           David said that he could supplement the first use case with text from his PR
                                         and he could split the refresh functionality into a second PR
              PR #186: Request Verifiable Presentation with scope value
                           Torsten is creating a second mechanism for scopes for us to evaluate
              PR #152: OP Identification/Attestation
                           An alternative mechanism using JARM will be proposed

The next big PR being worked on reorganizes the issuance spec for readability purposes

The VC Data Model V2 charter has been approved
              The meeting schedule will be announced shortly
              People have to rejoin the working group to participate in V2

Jason Lim made a post about an online use case for model
https://www.linkedin.com/feed/update/urn:li:activity:6939845389856497664/

Issues
              https://bitbucket.org/openid/connect/issues?status=new&status=open
              #1524: Is it OpenID Connect Core when Authorization Request is sent to the OP without using redirects via a user agent?
                           Kristina said that this was a liaison issue
                           Mike asked whether there's an ask from ISO to the OpenID Connect working group
                           We need enough information for any asks to be actionable

Next Call
              The next call will be on Monday, June 20, 2022 at 4pm Pacific Time
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20220616/6d548078/attachment.html>


More information about the Openid-specs-ab mailing list