[Openid-specs-ab] [Bitbucket] Issue #878: Messages Define "negative response" for id_token_hint (openid/connect)

Mike Jones Michael.Jones at microsoft.com
Wed Oct 23 23:47:54 UTC 2013

o   changed status to open<https://bitbucket.org/openid/connect/issues?status=open>

In his review, Brian Campbell pointed out that errors other than login_required are likely appropriate in some failing prompt=none cases, for instance interaction_required, consent_required., and session_selection_required He proposed that we generalize the text accordingly. I think he's right.

We could either go back to just saying that an error is returned, or we could strike a middle ground by saying that an error is returned, and that it will typically be from among the set defined in http://openid.net/specs/openid-connect-core-1_0-14.html#AuthError, such as "login_required". I think I prefer the latter approach.

From: Vladimir Dzhuvinov [mailto:issues-reply at bitbucket.org]
Sent: Wednesday, October 09, 2013 11:19 PM
To: Mike Jones
Subject: Re: [Bitbucket] Issue #878: Messages Define "negative response" for id_token_hint (openid/connect)


Vladimir Dzhuvinov commented on issue #878:

Messages Define "negative response" for id_token_hint<https://bitbucket.org/openid/connect/issue/878/messages-2111-define-negative-response-for>

Thanks Mike, thanks Nat. We'll now make sure we use login_required for the negative condition.

View this issue<https://bitbucket.org/openid/connect/issue/878/messages-2111-define-negative-response-for> or add a comment by replying to this email.

Unwatch this issue<https://bitbucket.org/openid/connect/issue/878/unwatch/mbj/08d4d7c609cd15137b7cf789fa281a14811a6705/> to stop receiving email updates.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-ab/attachments/20131023/e5a7e6c4/attachment.html>

More information about the Openid-specs-ab mailing list