<html xmlns:v="urn:schemas-microsoft-com:vml" xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta name="Generator" content="Microsoft Word 14 (filtered medium)">
<!--[if !mso]><style>v\:* {behavior:url(#default#VML);}
o\:* {behavior:url(#default#VML);}
w\:* {behavior:url(#default#VML);}
.shape {behavior:url(#default#VML);}
</style><![endif]--><style><!--
/* Font Definitions */
@font-face
        {font-family:Calibri;
        panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
        {font-family:Tahoma;
        panose-1:2 11 6 4 3 5 4 4 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
        {margin:0in;
        margin-bottom:.0001pt;
        font-size:12.0pt;
        font-family:"Times New Roman","serif";}
a:link, span.MsoHyperlink
        {mso-style-priority:99;
        color:blue;
        text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
        {mso-style-priority:99;
        color:purple;
        text-decoration:underline;}
p.MsoAcetate, li.MsoAcetate, div.MsoAcetate
        {mso-style-priority:99;
        mso-style-link:"Balloon Text Char";
        margin:0in;
        margin-bottom:.0001pt;
        font-size:8.0pt;
        font-family:"Tahoma","sans-serif";}
span.EmailStyle17
        {mso-style-type:personal-reply;
        font-family:"Calibri","sans-serif";
        color:#002060;}
span.BalloonTextChar
        {mso-style-name:"Balloon Text Char";
        mso-style-priority:99;
        mso-style-link:"Balloon Text";
        font-family:"Tahoma","sans-serif";}
.MsoChpDefault
        {mso-style-type:export-only;
        font-size:10.0pt;}
@page WordSection1
        {size:8.5in 11.0in;
        margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
        {page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
</head>
<body lang="EN-US" link="blue" vlink="purple">
<div class="WordSection1">
<p class="MsoNormal"><span style="font-size:11.0pt;font-family:"Calibri","sans-serif";color:#002060">Roland, can you update your JWK code as well?<o:p></o:p></span></p>
<p class="MsoNormal"><span style="font-size:11.0pt;font-family:"Calibri","sans-serif";color:#002060"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="font-size:11.0pt;font-family:"Calibri","sans-serif";color:#002060">                                                                Thanks both!<o:p></o:p></span></p>
<p class="MsoNormal"><span style="font-size:11.0pt;font-family:"Calibri","sans-serif";color:#002060">                                                                -- Mike<o:p></o:p></span></p>
<p class="MsoNormal"><span style="font-size:11.0pt;font-family:"Calibri","sans-serif";color:#002060"><o:p> </o:p></span></p>
<div>
<div style="border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0in 0in 0in">
<p class="MsoNormal"><b><span style="font-size:10.0pt;font-family:"Tahoma","sans-serif"">From:</span></b><span style="font-size:10.0pt;font-family:"Tahoma","sans-serif""> openid-connect-interop@googlegroups.com [mailto:openid-connect-interop@googlegroups.com]
<b>On Behalf Of </b>Edmund Jay<br>
<b>Sent:</b> Wednesday, December 05, 2012 1:59 PM<br>
<b>To:</b> openid-connect-interop@googlegroups.com<br>
<b>Cc:</b> openid-specs-ab@lists.openid.net<br>
<b>Subject:</b> Re: OpenID specs updated to track JWE changes<o:p></o:p></span></p>
</div>
</div>
<p class="MsoNormal"><o:p> </o:p></p>
<div>
<div>
<p class="MsoNormal" style="margin-bottom:12.0pt"><span style="font-size:10.0pt;font-family:"Tahoma","sans-serif"">Everyone,<br>
<br>
I've update my code to latest spec revisions also.<br>
<br>
OP : <a href="https://connect.openid4.us" target="_blank">https://connect.openid4.us</a><br>
RP: <a href="https://connect.openid4.us" target="_blank">https://connect.openid4.us</a>/abrp<br>
<br>
Roland,<br>
<br>
The JWK names for the RSA Keys have changed.  mod => n and exp => e.<br>
<a href="http://tools.ietf.org/html/draft-ietf-jose-json-web-algorithms-07#section-5.3" target="_blank">http://tools.ietf.org/html/draft-ietf-jose-json-web-algorithms-07#section-5.3</a><br>
<br>
If I use the new format, your oic tests report bad signatures.<br>
If I switch back to the old format, most tests are OK.<br>
<br>
<br>
-- Edmund<o:p></o:p></span></p>
</div>
<div>
<p class="MsoNormal"><span style="font-size:10.0pt;font-family:"Tahoma","sans-serif""><o:p> </o:p></span></p>
<div>
<div class="MsoNormal" align="center" style="text-align:center"><span style="font-size:10.0pt;font-family:"Tahoma","sans-serif"">
<hr size="1" width="100%" align="center">
</span></div>
<p class="MsoNormal" style="margin-bottom:12.0pt"><b><span style="font-size:10.0pt;font-family:"Tahoma","sans-serif"">From:</span></b><span style="font-size:10.0pt;font-family:"Tahoma","sans-serif""> Roland Hedberg <<a href="mailto:roland.hedberg@adm.umu.se">roland.hedberg@adm.umu.se</a>><br>
<b>To:</b> "<a href="mailto:openid-connect-interop@googlegroups.com">openid-connect-interop@googlegroups.com</a>" <<a href="mailto:openid-connect-interop@googlegroups.com">openid-connect-interop@googlegroups.com</a>><br>
<b>Cc:</b> "<a href="mailto:openid-specs-ab@lists.openid.net">openid-specs-ab@lists.openid.net</a>" <<a href="mailto:openid-specs-ab@lists.openid.net">openid-specs-ab@lists.openid.net</a>><br>
<b>Sent:</b> Wed, December 5, 2012 2:45:13 AM<br>
<b>Subject:</b> Re: OpenID specs updated to track JWE changes<br>
</span><span style="font-size:10.0pt;font-family:"Arial","sans-serif""><br>
<br>
Hi guys,<br>
<br>
27 nov 2012 kl. 01:15 skrev Mike Jones <<a href="mailto:Michael.Jones@microsoft.com">Michael.Jones@microsoft.com</a>>:<br>
<br>
> The working group wants to encourage implementers to make these changes as soon as possible so that testing can be performed on updated implementations before we publish the upcoming set of implementers drafts.  Also, if you can please send a note to the
 openid-connect-interop list when you’ve updated your test endpoints, that would be useful so others will know when they can begin testing the updated interfaces with your code.<br>
<br>
I've updated my <a href="mailto:OP@xenosmilus2.umdc.umu.se">OP@xenosmilus2.umdc.umu.se</a> to the latest version of the code (which implements the latest version of the specs).<br>
I've also updated the test tool at openidtest.uninett.no.<br>
<br>
The later, with a high probability, will mean that all your implementations will now *FAIL* against the test tool!!<br>
<br>
I've checked and it seems no one (except I) have changed their client registration endpoint to return a registration_access_token for one. So are you depending on dynamic client registration it will definitely fail.<br>
<br>
-- Roland<br>
------------------------------------------------------<br>
Roland Hedberg<br>
IT Architect/Senior Researcher<br>
ICT Services and System Development (ITS) <br>
Umeå University <br>
SE-901 87 Umeå, Sweden    <br>
Phone +46 90 786 68 44<br>
Mobile +46 70 696 68 44 <br>
<a href="http://www.its.umu.se" target="_blank">www.its.umu.se</a> <o:p></o:p></span></p>
</div>
</div>
</div>
</div>
</body>
</html>