[Openid-specs-authzen] AuthZEN Authorization API 1.0 - roadmap

Omri Gazitt omri at aserto.com
Wed Aug 21 15:53:40 UTC 2024


Hi folks!

At yesterday's meeting, we received substantive feedback on two points:

   - making the 1.0 spec more schema-friendly, allowing a strongly-typed
   protobuf <https://protobuf.dev/> / gRPC contract, a strongly-typed JSON
   schema <https://json-schema.org/>, and a better OpenAPI
   <https://www.openapis.org/> representation.
   - preserving ordering in boxcarred requests in the 1.1 spec, to
   facilitate scenarios like "fail on first fail", by switching from using a
   map for the evaluations field to an array.

The co-chairs discussed today, and we agreed to delay the review period of
the first implementer's draft of the 1.0 spec until we've resolved these.
Our rationale is that making breaking changes to the 1.0 spec after
releasing the first implementer's draft will render the latter dead on
arrival, and we'd like to preserve the optionality of making the spec more
friendly to the modern developer toolchain.

We will review proposals for the minimal changes necessary on September 3.

Also, given travel / vacation schedules, we've decided to cancel the August
27 meeting.

Cheers,
Omri, on behalf of the co-chairs.

-- 

<http://www.aserto.com/>

Omri Gazitt | CEO

Aserto <http://www.aserto.com/> Inc. | (425) 765-0079
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-authzen/attachments/20240821/47e32f93/attachment-0001.html>


More information about the Openid-specs-authzen mailing list