<html xmlns:v="urn:schemas-microsoft-com:vml" xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=us-ascii">
<meta name="Generator" content="Microsoft Word 14 (filtered medium)">
<style><!--
/* Font Definitions */
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
{font-family:Tahoma;
panose-1:2 11 6 4 3 5 4 4 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0in;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri","sans-serif";}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:blue;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:purple;
text-decoration:underline;}
span.EmailStyle17
{mso-style-type:personal;
font-family:"Calibri","sans-serif";
color:windowtext;}
span.EmailStyle18
{mso-style-type:personal-reply;
font-family:"Calibri","sans-serif";
color:#1F497D;}
.MsoChpDefault
{mso-style-type:export-only;
font-size:10.0pt;}
@page WordSection1
{size:8.5in 11.0in;
margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
</head>
<body lang="EN-US" link="blue" vlink="purple">
<div class="WordSection1">
<p class="MsoNormal"><span style="color:#1F497D">FYI, I spoke to Vittorio Bertocci (and Caleb Baker) about the two items below.<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:#1F497D"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:#1F497D">Caleb believes that he knows how to use prompt=none without a page change, so no action is required on our part. I’ll stay in touch with him on this.<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:#1F497D"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:#1F497D">Vittorio didn’t have a concrete need for an expiration time on JWKs – he was more raising the point that some deployments will requirement key metadata for managing the key. He understands that the JWK format
is extensible and that additional fields can be added later by other specifications, as needed.<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:#1F497D"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:#1F497D"> -- Mike<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:#1F497D"><o:p> </o:p></span></p>
<div>
<div style="border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0in 0in 0in">
<p class="MsoNormal"><b><span style="font-size:10.0pt;font-family:"Tahoma","sans-serif"">From:</span></b><span style="font-size:10.0pt;font-family:"Tahoma","sans-serif""> openid-specs-ab-bounces@lists.openid.net [mailto:openid-specs-ab-bounces@lists.openid.net]
<b>On Behalf Of </b>Mike Jones<br>
<b>Sent:</b> Thursday, July 18, 2013 8:01 AM<br>
<b>To:</b> openid-specs-ab@lists.openid.net<br>
<b>Subject:</b> [Openid-specs-ab] Spec call notes 18-Jul-13<o:p></o:p></span></p>
</div>
</div>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Spec call notes 18-Jul-13<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Nat Sakimura<o:p></o:p></p>
<p class="MsoNormal">Mike Jones<o:p></o:p></p>
<p class="MsoNormal">Justin Richer<o:p></o:p></p>
<p class="MsoNormal">William Kim (Mitre observer)<o:p></o:p></p>
<p class="MsoNormal">Edmund Jay<o:p></o:p></p>
<p class="MsoNormal">John Bradley<o:p></o:p></p>
<p class="MsoNormal">Brian Campbell<o:p></o:p></p>
<p class="MsoNormal">George Fletcher<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Agenda:<o:p></o:p></p>
<p class="MsoNormal"> Implementer's Draft Vote<o:p></o:p></p>
<p class="MsoNormal"> Open Issues<o:p></o:p></p>
<p class="MsoNormal"> OpenID Meeting at IETF<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Implementer's Draft Vote:<o:p></o:p></p>
<p class="MsoNormal"> Notifications didn't appear to go out to members<o:p></o:p></p>
<p class="MsoNormal"> Mike will ask Darin Richardson about it<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Open Issues:<o:p></o:p></p>
<p class="MsoNormal"> #860: id_token_signing_alg_values_supported: RS256 - This is editorial - we will do this for Final<o:p></o:p></p>
<p class="MsoNormal"> JavaScript client check id immediate without page change - Mike to talk to Vittorio<o:p></o:p></p>
<p class="MsoNormal"> JWKS not having expiry date - Mike to talk to Vittorio<o:p></o:p></p>
<p class="MsoNormal"> unregistered stateless client issue - John to file an issue<o:p></o:p></p>
<p class="MsoNormal"> iOS Native Public Client nondeterministic - John to file an issue<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">OpenID Meeting at IETF:<o:p></o:p></p>
<p class="MsoNormal"> People should register at <a href="http://openid-ietf-87.eventbrite.com/">
http://openid-ietf-87.eventbrite.com/</a><o:p></o:p></p>
<p class="MsoNormal"> We will have a special working group meeting (with the Note Well, etc.)<o:p></o:p></p>
<p class="MsoNormal"> We will do an update on the Connect status and the relationship to the IETF specs<o:p></o:p></p>
<p class="MsoNormal"> We could talk about OpenID 2.0 migration<o:p></o:p></p>
<p class="MsoNormal"> Phil Hunt will be advocating creating a SSO profile in OAuth<o:p></o:p></p>
<p class="MsoNormal"> Per <a href="http://www.ietf.org/mail-archive/web/oauth/current/msg11757.html">
http://www.ietf.org/mail-archive/web/oauth/current/msg11757.html</a><o:p></o:p></p>
<p class="MsoNormal"> He's stating that Connect is too complicated<o:p></o:p></p>
<p class="MsoNormal"> This is a perception problem we need to address<o:p></o:p></p>
<p class="MsoNormal"> We should write up the server version of Nat's simplicity blog post<o:p></o:p></p>
<p class="MsoNormal"> We could revise the first paragraph of the abstract to say "how" - not just "what"<o:p></o:p></p>
<p class="MsoNormal"> We should look at whether we're explaining Connect well at openid.net/connect<o:p></o:p></p>
</div>
</body>
</html>