[Openid-specs-fapi] Issue #545: FAPI2SP vs FAPI1 table has incorrect value for request_uri lifetime (openid/fapi)

josephheenan issues-reply at bitbucket.org
Tue Oct 11 08:44:54 UTC 2022


New issue 545: FAPI2SP vs FAPI1 table has incorrect value for request_uri lifetime
https://bitbucket.org/openid/fapi/issues/545/fapi2sp-vs-fapi1-table-has-incorrect-value

Joseph Heenan:

The table says “`request_uri has lifetime under 300 seconds`”. However the normative language limits the lifetime to 600 seconds:

> shall issue pushed authorization requests `request_uri` with `expires_in` values of between 5 and 600 seconds.

The table should be corrected.

Responsible: Joseph Heenan



More information about the Openid-specs-fapi mailing list