[Openid-specs-ab] Spec Call Notes 31-Mar-25

Michael Jones michael_b_jones at hotmail.com
Mon Mar 31 23:32:04 UTC 2025


Spec Call Notes 31-Mar-25

Aaron Parecki
Michael Fraser
Mike Jones

Takeaways from IETF 122
                Michael: The Client ID prefix discussions were worthwhile
                                Aaron: I think we'll find a way for everyone to get what they need
                                Aaron: Joseph is worried about situations where URLs can be used in multiple ways
                                We will be discussing Client ID prefixes on the next Connect WG call
                Mike: Having a clear decision on the rfc7523bis direction was useful
                                Mike and Brian Campbell are working on updating the draft
                Mike: The ML-DSA private key representation discussion was significant
                                NIST specified two ways of representing private keys for ML-DSA - a "seed" and an "expanded private key".
                                COSE and JOSE had been using only the "seed" representation, because it is more compact.
                                But the Lamps working group, which is defining the X.509 certificate representation for ML-DSA, decided to support both representations - in part, because some HSMs are already in the market that use the expanded private key representation.
                                COSE and JOSE are considering following suit.
                                Please discuss on the cose at ietf.org<mailto:cose at ietf.org> mailing list

Federation Issue https://github.com/openid/federation/issues/193
                Concerns around the practicality of the requirement for an empty json object on present entity type identifiers
                Mike: It's a declaration that the Entity supports the Entity Type
                Michael: We may want to say that it's OK if the Entity Type appears in the Resolved Metadata
                                Mike asked Michael to add that comment to the issue

Federation Interop Event
                Michael and Łukasz Jaromin will both be there in person
                Michael volunteered to host a test federation that others can join
                Mike said that we want at least one test federation with multiple Trust Anchors

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20250331/761187e9/attachment.htm>


More information about the Openid-specs-ab mailing list