<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-2022-jp">
<style type="text/css" style="display:none;"> P {margin-top:0;margin-bottom:0;} </style>
</head>
<body dir="ltr">
<div style="font-family: Calibri, Arial, Helvetica, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">
<p data-pm-slice="1 1 []">How would the RP check that it is a true "PWA / cloud wallet provider" and not a malicious provider pretending to be a good one?
</p>
<br>
</div>
<div id="appendonsend"></div>
<hr style="display:inline-block;width:98%" tabindex="-1">
<div id="divRplyFwdMsg" dir="ltr"><font face="Calibri, sans-serif" style="font-size:11pt" color="#000000"><b>$B:9=P?M(B:</b> Openid-specs-ab <openid-specs-ab-bounces@lists.openid.net> $B$,(B Oliver Terbu via Openid-specs-ab <openid-specs-ab@lists.openid.net> $B$NBeM}$GAw?.(B<br>
<b>$BAw?.F|;~(B:</b> 2021$BG/(B2$B7n(B23$BF|(B 21:47<br>
<b>$B08@h(B:</b> Artifact Binding/Connect Working Group <openid-specs-ab@lists.openid.net><br>
<b>CC:</b> Oliver Terbu <o.terbu@gmail.com>; Adam Lemmon <issues-reply@bitbucket.org><br>
<b>$B7oL>(B:</b> Re: [Openid-specs-ab] Issue #1208: SIOP V2 dynamic iss claim ref: REQUIRED. Issuer. MUST be https://self-issued.me/v2 (openid/connect)</font>
<div> </div>
</div>
<div>
<div dir="ltr">+1 to expanding the iss field beyond <a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fself-issued.me%2F&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703813424%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=HrWSFMeul%2BuVzzLSR%2FMpkFViBumtxWX6vF5jmZez92o%3D&reserved=0" originalsrc="https://self-issued.me/" shash="DHN+82aWJ/Edwbjbj3l74y2d9wbsrEdFIkBDcIku9WHAFSqQxjSDPr9t3SsuVrZfH0UPpAp9t7NGnW/bT/9EcjYJovp7SCQwZsjU/UXLyAZeFNAgBeupvEDkIDOrAbln9AUxc8JzFvWo4Hgj3hHll5ci22O8lAbdJZ4p52+dK1w=">
https://self-issued.me</a>. This would allow using id_token as a VP in the future as well although I'm not arguing for that.<br>
</div>
<br>
<div class="x_gmail_quote">
<div dir="ltr" class="x_gmail_attr">On Wed, 17 Feb 2021 at 02:59, Tobias Looker via Openid-specs-ab <<a href="mailto:openid-specs-ab@lists.openid.net">openid-specs-ab@lists.openid.net</a>> wrote:<br>
</div>
<blockquote class="x_gmail_quote" style="margin:0px 0px 0px 0.8ex; border-left:1px solid rgb(204,204,204); padding-left:1ex">
<div dir="ltr">+1 to expanding the iss field beyond <a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fself-issued.me%2F&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703813424%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=HrWSFMeul%2BuVzzLSR%2FMpkFViBumtxWX6vF5jmZez92o%3D&reserved=0" originalsrc="https://self-issued.me/" shash="DHN+82aWJ/Edwbjbj3l74y2d9wbsrEdFIkBDcIku9WHAFSqQxjSDPr9t3SsuVrZfH0UPpAp9t7NGnW/bT/9EcjYJovp7SCQwZsjU/UXLyAZeFNAgBeupvEDkIDOrAbln9AUxc8JzFvWo4Hgj3hHll5ci22O8lAbdJZ4p52+dK1w=" target="_blank">
https://self-issued.me</a>, at the end of the day there is still a provider acting as the issuer of the id_token in SIOP its just that the provider is operating in a more distributed model (i.e as a PWA or native app on the end-users device) rather than as
a centralized HTTP based authorization server. So being able to identify who this provider is, rather than some opaque string that points more to how the provider is operating (e.g
<a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fself-issued.me%2F&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703823373%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=%2BuWfR074utACgEQlt2TE0cWXbvC9C582jjA%2BTX%2FXqxc%3D&reserved=0" originalsrc="https://self-issued.me/" shash="zmWvGfr4E6sOS77xudDiMtE+cWECPQdiOLWyNszgCSio9GI1r3FEAYzR9v56zTQDQ+9JVJ7IpQO+sJ8zgIjTUqpLDVCizSbeysGrLsxEE1LGb6nA9MaXVUL6zarC1ud4HLET9dzHTaiDJpi7JnUfJ2Ujn4MMGDRlKH8Ce2vX4rk=" target="_blank">
https://self-issued.me</a>) is a better all round solution in my opinion. I think this issue also raises the need to review the signing process of id_tokens in SIOP.<br clear="all">
<div>
<div dir="ltr">
<div dir="ltr"><br>
</div>
<div dir="ltr">Thanks,<br>
<table width="auto" cellpadding="0" cellspacing="0" border="0" style="color:rgb(0,0,0); font-family:Times; font-size:medium; border:0px">
<tbody>
<tr style="font-family:"Helvetica Neue",Helvetica,Arial,sans-serif; font-size:11px; line-height:16px">
<td width="125" valign="top"><a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fmattr.global%2F&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703823373%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=fMC79mcPwd6kXDMggG9UcWdIHw93qQwv3Hm9MQIQv3U%3D&reserved=0" originalsrc="https://mattr.global/" shash="cuyhtdKkLRSErcNlrxu8NQW/x6sUSpwzfjCDVCU9lfiyEQpNo5izq7th/o8KThDrz4cuH0ttomXPtpf9FZaGhhF247z/W1mIEFm+7xfK9ujfopF0rMH+mB5P738BcIEh24/CnYBb+fsURsQJfERfIBY25LBJ4E8Hm6ldB7Dw5mY=" target="_blank" style="border:none; color:rgb(15,173,225)"><img alt="Mattr website" width="125" height="125" style="height:auto" src="https://mattr.global/assets/images/MattrLogo.png"></a></td>
<td width="16"> </td>
<td width="159" valign="top" style="color:rgb(51,49,50); font-size:12px">
<table cellpadding="0" cellspacing="0" border="0" style="border:0px">
<tbody>
<tr style="font-family:"Helvetica Neue",Helvetica,Arial,sans-serif; font-size:11px; line-height:16px">
<td><strong style="font-size:12px">Tobias Looker</strong><br>
</td>
</tr>
<tr style="font-family:"Helvetica Neue",Helvetica,Arial,sans-serif; font-size:11px; line-height:16px">
<td style="line-height:16px">Mattr</td>
</tr>
<tr style="font-family:"Helvetica Neue",Helvetica,Arial,sans-serif; font-size:11px; line-height:16px">
<td style="line-height:16px; padding-top:12px">+64 (0) 27 378 0461<br>
<a href="mailto:tobias.looker@mattr.global" target="_blank" style="border:none; color:rgb(51,49,50)">tobias.looker@mattr.global</a></td>
</tr>
<tr style="font-family:"Helvetica Neue",Helvetica,Arial,sans-serif; font-size:11px; line-height:16px">
<td style="font-size:12px; padding-top:12px">
<table cellpadding="0" cellspacing="0" border="0" style="border:0px">
<tbody>
<tr style="font-family:"Helvetica Neue",Helvetica,Arial,sans-serif; font-size:11px; line-height:16px">
<td width="40"><a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fmattr.global%2F&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703823373%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=fMC79mcPwd6kXDMggG9UcWdIHw93qQwv3Hm9MQIQv3U%3D&reserved=0" originalsrc="https://mattr.global/" shash="cuyhtdKkLRSErcNlrxu8NQW/x6sUSpwzfjCDVCU9lfiyEQpNo5izq7th/o8KThDrz4cuH0ttomXPtpf9FZaGhhF247z/W1mIEFm+7xfK9ujfopF0rMH+mB5P738BcIEh24/CnYBb+fsURsQJfERfIBY25LBJ4E8Hm6ldB7Dw5mY=" target="_blank" style="border:none; color:rgb(51,49,50); margin-right:12px"><img alt="Mattr website" width="24" style="border:0px; height:40px; width:24px" src="https://mattr.global/assets/images/website.png"></a></td>
<td width="40"><a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linkedin.com%2Fcompany%2Fmattrglobal&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703833330%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=l5vvNYOGbphohImijm8dCgyecrwmSGd%2BPplfZDhmdZs%3D&reserved=0" originalsrc="https://www.linkedin.com/company/mattrglobal" shash="csI0wPV2wi1VFSGex1SlicbLbY54jZ7h9kxnIJke4y3De2lkZOALMLYmhANw8WVEqqajrcG96vqpfscCuWCNs+i0lPWLshNGsnAPVIj7Zd3jiaitcOyVMSJdLx1106bXjSR5KpYNetreBEpX72hGVbCVviL1RNdwnIy66mPZtVI=" target="_blank" style="border:none; color:rgb(51,49,50); margin-right:12px"><img alt="Mattr on LinkedIn" width="24" style="border:0px; height:40px; width:24px" src="https://mattr.global/assets/images/linkedin.png"></a></td>
<td width="40"><a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Ftwitter.com%2Fmattrglobal&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703833330%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=EliJ8bEYDqynffx3%2BL8FUQeFVMSRE3PfrMJOmsmWvzg%3D&reserved=0" originalsrc="https://twitter.com/mattrglobal" shash="gZjK1Xs3IeqwfZWr7JwhUg5pR+fjknbPoU63KCv/POhUlz9IKFg5pSjndqEi74HC1rSGR7Jza98KLhZUedsz8YjbcGBhqIcVoc/gz4lMiNWtLBVGM/YOKDMSdjcgWNHfwdcDgt0Y2PxZhUL85RkdQyb2r9Z/ELDivQJSUnTQq78=" target="_blank" style="border:none; color:rgb(51,49,50); margin-right:12px"><img alt="Mattr on Twitter" width="24" style="border:0px; height:40px; width:24px" src="https://mattr.global/assets/images/twitter.png"></a></td>
<td width="40"><a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgithub.com%2Fmattrglobal&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703843282%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=0IeapO%2BtIoyRlKmKbdkgLkLIpLn9uQj6zESGWQ%2FwOOM%3D&reserved=0" originalsrc="https://github.com/mattrglobal" shash="c/NkrqbmvEpvZOAhoo/j8+mEQkj8sq4AAen1ia5zgx3ox//aD/KS7mskuXyO23QOQ0IvhR45NZy734cffBx5pNDDZy/vdVplqaHiG4N9C0swLR6kr8Q8sSldyWHrmMsC7/ThYyzQizD2v/iY87NOTU6n3e8FP7xYQ7r5+HYXwJI=" target="_blank" style="border:none; color:rgb(51,49,50); margin-right:12px"><img alt="Mattr on Github" width="24" style="border:0px; height:40px; width:24px" src="https://mattr.global/assets/images/github.png"></a></td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
<br style="color:rgb(0,0,0); font-family:Times; font-size:medium">
<small style="color:rgb(118,118,118); font-family:"Helvetica Neue",Helvetica,Arial,sans-serif; font-size:8px; line-height:14px">This communication, including any attachments, is confidential. If you are not the intended recipient, you should not read it - please
contact me immediately, destroy it, and do not copy or use any part of this communication or disclose anything about it. Thank you. Please note that this communication does not designate an information system for the purposes of the Electronic Transactions
Act 2002.</small><br>
</div>
</div>
</div>
<br>
</div>
<br>
<div class="x_gmail_quote">
<div dir="ltr" class="x_gmail_attr">On Wed, Feb 17, 2021 at 1:55 PM Adam Lemmon via Openid-specs-ab <<a href="mailto:openid-specs-ab@lists.openid.net" target="_blank">openid-specs-ab@lists.openid.net</a>> wrote:<br>
</div>
<blockquote class="x_gmail_quote" style="margin:0px 0px 0px 0.8ex; border-left:1px solid rgb(204,204,204); padding-left:1ex">
New issue 1208: SIOP V2 dynamic iss claim ref: REQUIRED. Issuer. MUST be <a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fself-issued.me%2Fv2&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703843282%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=wBRr5Dg9w5q4kj0zKw1ylp8fNoIUfZJ%2FQfLswZGielA%3D&reserved=0" originalsrc="https://self-issued.me/v2" shash="TsCmBe8S83sTnibfHuSzddbWQXh1AKP0SStIMl/T6ChUW8o9J+jiwZiwW+MK9fWmSvwx7d6m955btwRo5V9egTLMoYEDgxsozbM3OEAvIcOO1OhfSGfQfzsehR429GUuO1xps2Iu86Jdnu0dkG5l9eFERmu4jvd7CFxvci1RVxE=" rel="noreferrer" target="_blank">
https://self-issued.me/v2</a><br>
<a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fbitbucket.org%2Fopenid%2Fconnect%2Fissues%2F1208%2Fsiop-v2-dynamic-iss-claim-ref-required&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703843282%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=jJm2vT8RDKW2zYSpWfEZO%2B8weYZFHLmBWaQSx4QR7LU%3D&reserved=0" originalsrc="https://bitbucket.org/openid/connect/issues/1208/siop-v2-dynamic-iss-claim-ref-required" shash="Q0y6U5vzVY20jDYQibUNa+M53kCZQ/QxvCTOWZ4PRQQZWUrobgPOsCkZ11Q9/UYlPp11tHQ2Wrr7sPJB9FptdH43BZaIzyGZKfygYwFLmVc/0f2ELD+4EEAVgHEN95TInepADTRDyRekGUUqcM3GPIeZayloq+9vWl5LhkWeOeU=" rel="noreferrer" target="_blank">https://bitbucket.org/openid/connect/issues/1208/siop-v2-dynamic-iss-claim-ref-required</a><br>
<br>
Adam Lemmon:<br>
<br>
Hi all, <br>
<br>
We have had some good discussions on this during past calls and I wanted to formally get this down somewhere to kick off a discussion and aim to reach consensus on the use of the `iss` claim in SIOP v2.<br>
<br>
We would like to discuss the option of enabling other URIs to be included as the `iss` claim and it not be constrained to s[<a href="https://nam06.safelinks.protection.outlook.com/?url=http%3A%2F%2Felf-issued.me%2Fv2.%255D(http%3A%2F%2Fself-issued.me%2Fv2)&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703853240%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=%2FjxDnffCVJFGbhiAwX7qJ36lqIzuSSH4Q9nG%2BBipdCo%3D&reserved=0" originalsrc="http://elf-issued.me/v2.%5D(http://self-issued.me/v2)" shash="zrsgstEbXs7NETasJd//TpCxU5gg4ZFb3T4RDyaqVZmW61yKb8OL9kRjf1mJ8wVICbkq0NO5Z+EKYML23GBe4rQ7XNOEZdfhKDbAINqdXOgBubiYItJINOqIMJI+PxldGoQrdIi03oKkpR36Z3X+TMDs4s4hNi7PQT5zhbBIKF0=" rel="noreferrer" target="_blank">elf-issued.me/v2.](http://self-issued.me/v2)</a><br>
<br>
For example being able to specify a URL of a PWA / cloud wallet provider as the `iss` , which can prove useful information for an RP that is being presented claims from such. We$B!G(Bd like a model that does not presume a specific deployment architecture of a wallet
but is inclusive; native, PWA, cloud, etc.<br>
<br>
Also, we had previously mentioned that the presence of a `sub_jwk` could be the signal to the RP that the token is self signed instead of the `iss` claim being constrained to s[<a href="https://nam06.safelinks.protection.outlook.com/?url=http%3A%2F%2Felf-issued.me%2Fv2%255D(http%3A%2F%2Fself-issued.me%2Fv2)&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703853240%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=Z9H9qjxIHcKVWuRtGUXSBy4RWnnk8FF6FJuC%2Fiwrpoo%3D&reserved=0" originalsrc="http://elf-issued.me/v2%5D(http://self-issued.me/v2)" shash="z89cDXzmOuchtT7m4iqTHFRS5QnxkhqkxbXCREBj4Lbi+DkERvzqgKMmqhR0jSg+WnD8InYk7ryVmFhEDQMZx+zNN+KIDIHaYFfnVq06q6rhNVkKZ2pc2VySw6/GxuduENbBneg53SpM71dIElYkIc+wRBpnCk22HF9tU9JagMA=" rel="noreferrer" target="_blank">elf-issued.me/v2](http://self-issued.me/v2)</a>,
as one option to consider.<br>
<br>
Look forward to the discussion on this topic, thanks!<br>
<br>
<br>
_______________________________________________<br>
Openid-specs-ab mailing list<br>
<a href="mailto:Openid-specs-ab@lists.openid.net" target="_blank">Openid-specs-ab@lists.openid.net</a><br>
<a href="https://nam06.safelinks.protection.outlook.com/?url=http%3A%2F%2Flists.openid.net%2Fmailman%2Flistinfo%2Fopenid-specs-ab&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703853240%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=UaoUrKySRehoN8eDpDH2QCi2U%2B6MPGh4YgSW6DzyhrU%3D&reserved=0" originalsrc="http://lists.openid.net/mailman/listinfo/openid-specs-ab" shash="oEhsF7Modh7iJXuZ7OiOD8RI7ABHYVb+y7fIrMmUyRUfhFJEoCT3m1Mt3PEthbFrvDxw0qrEmg5vgMlcuMAQa0gIaVHV2CmOKHlGUu3WlYxohK9zmcyNckbdAcj+k1M2wpvQu4gSAeW1OUrQAW6F5xXB+rS0FgDP430bV1/Z+f0=" rel="noreferrer" target="_blank">http://lists.openid.net/mailman/listinfo/openid-specs-ab</a><br>
</blockquote>
</div>
<br>
<pre style="font-family:"Courier New",Courier,monospace,arial,sans-serif; margin-top:0px; margin-bottom:0px; white-space:pre-wrap; background-color:rgb(255,255,255); font-size:14px">This communication, including any attachments, is confidential. If you are not the intended recipient, you should not read it - please contact me immediately, destroy it, and do not copy or use any part of this communication or disclose anything about it. Thank you. Please note that this communication does not designate an information system for the purposes of the Electronic Transactions Act 2002.</pre>
_______________________________________________<br>
Openid-specs-ab mailing list<br>
<a href="mailto:Openid-specs-ab@lists.openid.net" target="_blank">Openid-specs-ab@lists.openid.net</a><br>
<a href="https://nam06.safelinks.protection.outlook.com/?url=http%3A%2F%2Flists.openid.net%2Fmailman%2Flistinfo%2Fopenid-specs-ab&data=04%7C01%7CKristina.Yasuda%40microsoft.com%7C0e415c32bfff4d84d34408d8d7f932bd%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637496812703863199%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000&sdata=r2OKzyEb1tl550axWEz%2Bg4f1AMAGcZvTOM3w6lkcwHE%3D&reserved=0" originalsrc="http://lists.openid.net/mailman/listinfo/openid-specs-ab" shash="cQT0elWuhjvbXlc/RweGagPNo0Yi4Ew5DQqcaUVUeWpZQFpggPMcq+7I3VLSZA1GqdKjt22o9cYt9YDYKgesZ2Z+7PrfWYbUB1aeMiMQNCV0pnQK8RXmwtg9/3O2eTpxf58PsT7yaCyf0g1u8j8vrF92wULksaIVWcOMoGAaTeY=" rel="noreferrer" target="_blank">http://lists.openid.net/mailman/listinfo/openid-specs-ab</a><br>
</blockquote>
</div>
</div>
</body>
</html>