[Openid-specs-fapi] Issue #545: FAPI2SP vs FAPI1 table has incorrect value for request_uri lifetime (openid/fapi)
josephheenan
issues-reply at bitbucket.org
Tue Oct 11 08:44:54 UTC 2022
New issue 545: FAPI2SP vs FAPI1 table has incorrect value for request_uri lifetime
https://bitbucket.org/openid/fapi/issues/545/fapi2sp-vs-fapi1-table-has-incorrect-value
Joseph Heenan:
The table says “`request_uri has lifetime under 300 seconds`”. However the normative language limits the lifetime to 600 seconds:
> shall issue pushed authorization requests `request_uri` with `expires_in` values of between 5 and 600 seconds.
The table should be corrected.
Responsible: Joseph Heenan
More information about the Openid-specs-fapi
mailing list