[Openid-specs-ab] Meeting notes July 17th, 2025

Frederik Krogsdal Jacobsen frederik.krogsdal at criipto.com
Thu Jul 17 14:36:39 UTC 2025


OpenID Connect Working Group

Meeting Date: July 17th, 2025

Attendees: Michael Jones, Frederik Krogsdal Jacobsen, Guilherme Niero,
Filip Skokan, Brian Campbell, Andy Barlow.

There was no posted agenda for this meeting, so we will just reuse the
previous meeting agenda (see email titled “Proposed agenda for 10-Jul-25
Connect WG call” on list).


Guilherme is new to the working group. He is a solution architect working
with identity at the Brazilian financial institution Itaú.


Working Group Last Call for Proposed Implementer's Draft of Native SSO for
Mobile Apps ended with only support for proceeding. It will be moved to
Implementer’s Draft status.


Discussion of whether it should be possible to define different
authentication methods for different endpoints.
References: https://github.com/openid/federation/pull/232 and
https://github.com/openid/rp-metadata-choices/pull/7.
Consensus: It should not be possible to define different authentication
methods. It was a mistake to allow this in the AS metadata, and it should
not be compounded by also allowing it it in client metadata. In practice,
the same authentication method is used at all endpoints.


Working group members are encouraged to review
https://github.com/oauth-wg/draft-ietf-oauth-rfc7523bis/pull/10. This was
discussed at IETF 122 and will be discussed at IETF 123 as well.


Call ended after 25 minutes.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20250717/de6b9273/attachment.htm>


More information about the Openid-specs-ab mailing list