[Openid-specs-authzen] Meeting notes for June 10, 2025

Gerry Gebel gerry at strata.io
Tue Jun 10 20:59:40 UTC 2025


Attendees

   - Omri Gazitt
   - David Brossard
   - Jeff Lombardo
   - Vladi Berger
   - Alex Babeanu
   - Michiel Trimpe
   - Rajiv Rajani
   - George Fletcher
   - Elie Azerad

<#Agenda>Agenda

   - Identiverse recap
   - Interop feedback
   - Review second half road map
   - AuthZEN mentioned in Gartner report
   - Forrester briefing scheduled for July 8

<#Notes>Notes

Identiverse

   - three editions of AuthZEN: Search API implementation review and Panel
   session on Tuesday plus a Friday morning session
   - Action, Resource and Subject search was implemented by nine
   products/projects
   - Discovery endpoint was also supported by seven of the implementations
   - Some photos were posted on LinkedIn and elsewhere
   - The Panel session on Tuesday was heavily attended

Interop feedback

   - We should specify what is the minimum requirement for supporting
   version 1.0. For example, Evaluation could be the base requirement and all
   other APIs are optional.

Second half roadmap

   - Finalize Discovery endpoint
   - Create Draft 04 as working group draft
   - Then go for Final spec
   - David to check with Forrester on dates for events
   - Gartner IAM in December: target a profile for IDPs to make an AuthZEN
   call before minting tokens
      - As I am about to issue a token, ask AuthZEN "can I issue this token"
      - I am about to issue a token, ask AuthZEN "what claims/scopes should
      be included"
      - OAuth: Authorization server does this function
      - OIDC: OpenID Provider is the function
   - Review and update the Design Patterns doc based on learnings since its
   first draft
      - https://hackmd.io/@oidf-wg-authzen/S1inmizEa
      - https://openid.github.io/authzen/patterns.html
   - Return to AuthZEN RAR proposal

Gartner mention of AuthZEN

   - The Must-Have IAM Requirements for Enterprise Applications
      - DocID G00828435 published on June 5
      - AuthZEN is mentioned 9 times

Forrester

   - Gerry is briefing them on AuthZEN on July 8
   - David is talking to another analyst regarding participation at a
   future event

Other

   - Omri will step away for the summer and check back in with us in
   September. Thanks from all to Omri for the leadership and great work to
   bring AuthZEN to where we are today!!
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-authzen/attachments/20250610/feca356b/attachment.htm>


More information about the Openid-specs-authzen mailing list