[Openid-specs-ab] [Bitbucket] Issue #878: Messages 188.8.131.52 Define "negative response" for id_token_hint (openid/connect)
Michael.Jones at microsoft.com
Wed Oct 23 23:47:54 UTC 2013
o changed status to open<https://bitbucket.org/openid/connect/issues?status=open>
In his review, Brian Campbell pointed out that errors other than login_required are likely appropriate in some failing prompt=none cases, for instance interaction_required, consent_required., and session_selection_required He proposed that we generalize the text accordingly. I think he's right.
We could either go back to just saying that an error is returned, or we could strike a middle ground by saying that an error is returned, and that it will typically be from among the set defined in http://openid.net/specs/openid-connect-core-1_0-14.html#AuthError, such as "login_required". I think I prefer the latter approach.
From: Vladimir Dzhuvinov [mailto:issues-reply at bitbucket.org]
Sent: Wednesday, October 09, 2013 11:19 PM
To: Mike Jones
Subject: Re: [Bitbucket] Issue #878: Messages 184.108.40.206 Define "negative response" for id_token_hint (openid/connect)
Vladimir Dzhuvinov commented on issue #878:
Messages 220.127.116.11 Define "negative response" for id_token_hint<https://bitbucket.org/openid/connect/issue/878/messages-2111-define-negative-response-for>
Thanks Mike, thanks Nat. We'll now make sure we use login_required for the negative condition.
View this issue<https://bitbucket.org/openid/connect/issue/878/messages-2111-define-negative-response-for> or add a comment by replying to this email.
Unwatch this issue<https://bitbucket.org/openid/connect/issue/878/unwatch/mbj/08d4d7c609cd15137b7cf789fa281a14811a6705/> to stop receiving email updates.
-------------- next part --------------
An HTML attachment was scrubbed...
More information about the Openid-specs-ab