[Openid-specs-ab] Spec Call Notes 7-Aug-23
Michael Jones
michael_b_jones at hotmail.com
Tue Aug 8 00:27:24 UTC 2023
Spec Call Notes 7-Aug-23
Mike Jones
Nat Sakimura
Rajvardhan Deshmukh
Edmund Jay
Dima Postnikov
David Waite
Events
OAuth Security Workshop
https://oauth.secworkshop.events/osw2023
Registration closes at the end of the week
IETF 117 San Francisco
https://www.ietf.org/how/meetings/117/
The call for adoption for SD-JWT VC is under way in the OAuth working group
Digital Credentials Protocols Working Group
The first meeting will be on Thursday, Aug 31st in place of the SIOP Special Topic call
Errata Status
A few months ago we had 27 open errata issues
We are currently down to 13
Mike has created proposed edits to address all of them
This brings us closer to ISO PAS submission
See the PRs marked [Errata]
Open Issues
https://bitbucket.org/openid/connect/issues?status=new&status=open
#989: Core - Should Userinfo include the issuer?
We'll add a statement that the "iss" for signed UserInfo responses must be the OP's issuer
Nat may suggest additional wording in the ticket
#2002: [federation] please add a visual diagram
Additional diagram ideas are welcomed
#1362: alignment of certification tests with OAuth 2.1
Mike and Nat are both conservative about breaking things
Mike floated the idea of creating a new profile such as Basic-with-OAuth-2.1
We probably do want to provide a certification path for servers that are trying to do the right thing
PRs
https://bitbucket.org/openid/connect/pull-requests/
PR #588: Tighten Federation Abstract and Introduction
Additional reviews requested
PR #589: [Federation] Allow retrieving metadata from existing locations
Additional reviews requested
PR #594: [Errata] Discuss unknown display and prompt values
The PR doesn't change the situation but proposes a path forward
Kosuke Koiwai's proposed display_values_supported metadata parameter would also help
PR #600: [Errata] Login with id_token_hint may involve other information
Mike will respond to Joseph's comment after the call
Issues with Status "Submitted"
https://bitbucket.org/openid/connect/issues?is_spam=%21spam&status=submitted
Mike will mark #1997, #1998, and #1999 with status "New"
Next Call
The next call will be on Thursday, August 10th at 7am Pacific Time
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20230808/937295b6/attachment.html>
More information about the Openid-specs-ab
mailing list