[Openid-specs-ab] Meeting notes July 17th, 2025
Frederik Krogsdal Jacobsen
frederik.krogsdal at criipto.com
Thu Jul 17 14:36:39 UTC 2025
OpenID Connect Working Group
Meeting Date: July 17th, 2025
Attendees: Michael Jones, Frederik Krogsdal Jacobsen, Guilherme Niero,
Filip Skokan, Brian Campbell, Andy Barlow.
There was no posted agenda for this meeting, so we will just reuse the
previous meeting agenda (see email titled “Proposed agenda for 10-Jul-25
Connect WG call” on list).
Guilherme is new to the working group. He is a solution architect working
with identity at the Brazilian financial institution Itaú.
Working Group Last Call for Proposed Implementer's Draft of Native SSO for
Mobile Apps ended with only support for proceeding. It will be moved to
Implementer’s Draft status.
Discussion of whether it should be possible to define different
authentication methods for different endpoints.
References: https://github.com/openid/federation/pull/232 and
https://github.com/openid/rp-metadata-choices/pull/7.
Consensus: It should not be possible to define different authentication
methods. It was a mistake to allow this in the AS metadata, and it should
not be compounded by also allowing it it in client metadata. In practice,
the same authentication method is used at all endpoints.
Working group members are encouraged to review
https://github.com/oauth-wg/draft-ietf-oauth-rfc7523bis/pull/10. This was
discussed at IETF 122 and will be discussed at IETF 123 as well.
Call ended after 25 minutes.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20250717/de6b9273/attachment.htm>
More information about the Openid-specs-ab
mailing list