<html>
<head>
<meta content="text/html; charset=ISO-8859-1"
http-equiv="Content-Type">
</head>
<body text="#000000" bgcolor="#FFFFFF">
<div class="moz-cite-prefix">First of all, opbs is just a parameter
name that I happened to have used in the example. It could have
been anything. <br>
<br>
Sencondly, what is being stored in the OP Browser State completely
depends on each OP. It may just be a random variable that the OP
relates the server side state and the browser. Alternatively, it
may be storing bunch of state related variables which is then
signed or encrypted for the server to be less stateful. <br>
<br>
I do not want to give false impression to the developpers that
there is one single way of doing it. The maximum I am willing to
do is to add some comments to the example. <br>
<br>
Nat<br>
<br>
(2013/10/03 9:50), Mike Jones wrote:<br>
</div>
<blockquote
cite="mid:4E1F6AAD24975D4BA5B16804296739437201ABD0@TK5EX14MBXC290.redmond.corp.microsoft.com"
type="cite">
<meta http-equiv="Context-Type" content="text/html; charset=utf-8">
<meta name="Generator" content="Microsoft Word 14 (filtered
medium)">
<div class="WordSection1">
<p class="MsoNormal"><span>P.S. Nat, if you could provide
proposed text giving a few examples of what Opbs might
contain and (if we’re not already saying this) what
properties this state needs to have, that would be really
useful in helping to close this issue.</span></p>
<p class="MsoNormal"><span> </span></p>
<p class="MsoNormal"><span>
Thanks,</span></p>
<p class="MsoNormal"><span>
-- Mike</span></p>
<p class="MsoNormal"><span> </span></p>
<div>
<div>
<p class="MsoNormal"><b><span>From:</span></b><span>
<a class="moz-txt-link-abbreviated" href="mailto:openid-specs-ab-bounces@lists.openid.net">openid-specs-ab-bounces@lists.openid.net</a>
[<a class="moz-txt-link-freetext" href="mailto:openid-specs-ab-bounces@lists.openid.net">mailto:openid-specs-ab-bounces@lists.openid.net</a>]
<b>On Behalf Of </b>Mike Jones<br>
<b>Sent:</b> Wednesday, October 02, 2013 5:47 PM<br>
<b>To:</b> <a class="moz-txt-link-abbreviated" href="mailto:openid-specs-ab@lists.openid.net">openid-specs-ab@lists.openid.net</a><br>
<b>Subject:</b> Re: [Openid-specs-ab] [Bitbucket] Issue
#872: session 4.1. Opbs is unclear and conflict with
"session management memo" on wiki (openid/connect)</span></p>
</div>
</div>
<p class="MsoNormal"> </p>
<p class="MsoNormal"><span>I strongly disagree with removing the
example. I believe it’s the only thing giving implementers
a sense of what they need to do to fulfill the requirements.</span></p>
<p class="MsoNormal"><span> </span></p>
<p class="MsoNormal"><span>We should do what it takes to clarify
the example, if needed – not remove it.</span></p>
<p class="MsoNormal"><span> </span></p>
<p class="MsoNormal"><span>
-- Mike</span></p>
<p class="MsoNormal"><span> </span></p>
<div>
<div>
<p class="MsoNormal"><b><span>From:</span></b><span> Nat
Sakimura [<a moz-do-not-send="true"
href="mailto:issues-reply@bitbucket.org">mailto:issues-reply@bitbucket.org</a>]
<br>
<b>Sent:</b> Wednesday, October 02, 2013 5:26 PM<br>
<b>To:</b> Mike Jones<br>
<b>Subject:</b> Re: [Bitbucket] Issue #872: session 4.1.
Opbs is unclear and conflict with "session management
memo" on wiki (openid/connect)</span></p>
</div>
</div>
<p class="MsoNormal"> </p>
<table class="MsoNormalTable" width="100%">
<tbody>
<tr>
<td>
<table class="MsoNormalTable" width="100%">
<tbody>
<tr>
<td>
<div>
<table class="MsoNormalTable" width="100%">
<tbody>
<tr>
<td>
<table class="MsoNormalTable"
width="100%">
<tbody>
<tr>
<td width="32">
<p class="MsoNormal"><span><img
moz-do-not-send="true"
id="_x0000_i1025"
alt="Nat" width="32"
height="32"></span></p>
</td>
<td id="content">
<table class="MsoNormalTable"
width="100%">
<tbody>
<tr>
<td colspan="2">
<p class="MsoNormal"><strong><span>Nat
Sakimura</span></strong><span>
commented on issue
#872:
</span></p>
</td>
</tr>
<tr>
<td colspan="2">
<p class="MsoNormal"><b><span><a
moz-do-not-send="true"
href="https://bitbucket.org/openid/connect/issue/872/session-41-opbs-is-unclear-and-conflict"><span>session
4.1. Opbs is
unclear and
conflict with
"session
management
memo" on wiki</span></a>
</span></b></p>
</td>
</tr>
<tr>
<td colspan="2">
<p><span>Did not even
needed to follow
up with Breno. My
intention here is
clear. The example
is non-normative
and is just
illustrating what
an OP might do to
fulfill what the
spec. normatively
requires. If it is
causing more
confusion than
explaining it, we
may want to drop
the example and
just go with the
normative text.</span></p>
</td>
</tr>
<tr>
<td nowrap="nowrap">
<p class="MsoNormal"><span>Status:</span></p>
</td>
<td width="100%">
<p class="MsoNormal"><span
class="old"><s><span>new</span></s></span><span>
<span class="new"><span>open</span></span>
</span></p>
</td>
</tr>
<tr>
<td><br>
</td>
<td><br>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
<tr>
<td>
<p class="MsoNormal"><span><a
moz-do-not-send="true"
href="https://bitbucket.org/openid/connect/issue/872/session-41-opbs-is-unclear-and-conflict"><span>View
this issue</span></a> or add a
comment by replying to this email.
</span></p>
</td>
</tr>
</tbody>
</table>
</div>
</td>
</tr>
<tr>
<td>
<table class="MsoNormalTable" width="100%">
<tbody>
<tr>
<td>
<p class="MsoNormal"><a
moz-do-not-send="true"
href="https://bitbucket.org/openid/connect/issue/872/unwatch/mbj/6ee343dc8521bd44c690cfa4ae5fe8299cabd061/"><span>Unwatch
this issue</span></a> to stop
receiving email updates.
</p>
</td>
<td><br>
</td>
<td width="100">
<p class="MsoNormal"><a
moz-do-not-send="true"
href="https://bitbucket.org"><span><img
moz-do-not-send="true"
id="_x0000_i1026"
alt="Bitbucket" width="100"
height="18"></span></a></p>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
<p class="MsoNormal"> </p>
</div>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<br>
<pre wrap="">_______________________________________________
Openid-specs-ab mailing list
<a class="moz-txt-link-abbreviated" href="mailto:Openid-specs-ab@lists.openid.net">Openid-specs-ab@lists.openid.net</a>
<a class="moz-txt-link-freetext" href="http://lists.openid.net/mailman/listinfo/openid-specs-ab">http://lists.openid.net/mailman/listinfo/openid-specs-ab</a>
</pre>
</blockquote>
<br>
<br>
<pre class="moz-signature" cols="72">--
Nat Sakimura (<a class="moz-txt-link-abbreviated" href="mailto:n-sakimura@nri.co.jp">n-sakimura@nri.co.jp</a>)
Nomura Research Institute, Ltd.
Tel:+81-3-6274-1412 Fax:+81-3-6274-1547
本メールに含まれる情報は機密情報であり、宛先に記載されている方のみに送信することを意図しております。意図された受取人以外の方によるこれらの情報の開示、複製、再配布や転送など一切の利用が禁止されています。誤って本メールを受信された場合は、申し訳ござӓ
6;|
14;せんが、送信者までお知らせいただき、受信されたメールを削除していただきますようお願い致します。
PLEASE READ:
The information contained in this e-mail is confidential and intended for the named recipient(s) only.
If you are not an intended recipient of this e-mail, you are hereby notified that any review, dissemination, distribution or duplication of this message is strictly prohibited. If you have received this message in error, please notify the sender immediately and delete your copy from your system.
</pre>
</body>
</html>