<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; color: rgb(0, 0, 0); font-size: 14px; font-family: Calibri, sans-serif;">
<div>I agree to only allow the access_token in the header or as POST body parameter. The access_token should not become visible to anybody when being in front of a browser.</div>
<div><br>
</div>
<div>Sascha</div>
<div><br>
</div>
<span id="OLK_SRC_BODY_SECTION">
<div style="font-family:Calibri; font-size:11pt; text-align:left; color:black; BORDER-BOTTOM: medium none; BORDER-LEFT: medium none; PADDING-BOTTOM: 0in; PADDING-LEFT: 0in; PADDING-RIGHT: 0in; BORDER-TOP: #b5c4df 1pt solid; BORDER-RIGHT: medium none; PADDING-TOP: 3pt">
<span style="font-weight:bold">From: </span>Openid-specs-fapi <<a href="mailto:openid-specs-fapi-bounces@lists.openid.net">openid-specs-fapi-bounces@lists.openid.net</a>> on behalf of John Bradley via Openid-specs-fapi <<a href="mailto:openid-specs-fapi@lists.openid.net">openid-specs-fapi@lists.openid.net</a>><br>
<span style="font-weight:bold">Reply-To: </span>John Bradley <<a href="mailto:jbradley@pingidentity.com">jbradley@pingidentity.com</a>>, Financial API Working Group List <<a href="mailto:openid-specs-fapi@lists.openid.net">openid-specs-fapi@lists.openid.net</a>><br>
<span style="font-weight:bold">Date: </span>Monday, August 22, 2016 at 2:40 PM<br>
<span style="font-weight:bold">To: </span>Suhas Chatekar <<a href="mailto:suhas.chatekar@gmail.com">suhas.chatekar@gmail.com</a>><br>
<span style="font-weight:bold">Cc: </span>Financial API Working Group List <<a href="mailto:openid-specs-fapi@lists.openid.net">openid-specs-fapi@lists.openid.net</a>><br>
<span style="font-weight:bold">Subject: </span>Re: [Openid-specs-fapi] Proposal to use DDA specification in FAPI<br>
</div>
<div><br>
</div>
<div>
<div>
<div dir="ltr">Yes RFC 6750 recommends sending the AT in the header. It however also allows some backwarrds compatibility modes such as passing it as a query parameter.
<div><br>
</div>
<div>Mostly this is used by lazy developers these days. I think Nat and I are recommending only allowing the header option, and by doing that using GET is not such an issue.</div>
<div><br>
</div>
<div>John B.</div>
</div>
<div class="gmail_extra"><br>
<div class="gmail_quote">On Mon, Aug 22, 2016 at 1:31 PM, Suhas Chatekar <span dir="ltr">
<<a href="mailto:suhas.chatekar@gmail.com" target="_blank">suhas.chatekar@gmail.com</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<p dir="ltr">I am new to the group so apologies if I am duplicating something that is sent earlier to the group.
</p>
<p dir="ltr">There is a IETF standard on how to send access token in HTTP headers as bearer tokens -
<a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__tools.ietf.org_html_rfc6750&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=-PlgNtYyTH-wVrRKa4NYpirnUOA2u7vdVsQdTQg2XeU&e=" target="_blank">
https://tools.ietf.org/html/<wbr>rfc6750</a></p>
<p dir="ltr">May be we can just adopt this standard?</p>
<span class="HOEnZb"><font color="#888888">
<p dir="ltr">Suhas</p>
</font></span>
<div class="HOEnZb">
<div class="h5"><br>
<div class="gmail_quote">
<div dir="ltr">On Mon, 22 Aug 2016, 16:23 Nat Sakimura via Openid-specs-fapi, <<a href="mailto:openid-specs-fapi@lists.openid.net" target="_blank">openid-specs-fapi@lists.<wbr>openid.net</a>> wrote:<br>
</div>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<div dir="auto">
<div>We can certainly constrain that it has to be sent in the header. <br>
<br>
Sent from iPad</div>
<div><br>
2016/08/22 23:48、John Bradley via Openid-specs-fapi <<a href="mailto:openid-specs-fapi@lists.openid.net" target="_blank">openid-specs-fapi@lists.<wbr>openid.net</a>> のメッセージ:<br>
<br>
</div>
</div>
<div dir="auto">
<blockquote type="cite">
<div>
<p dir="ltr">It is a debate that we keep having, mostly around backwards compatibility and people wanting to send the acess token as a paramater rather than in a headder.
</p>
<p dir="ltr">If we prohibit sending the AT as a query paramater, I am more than happy with GET for read only.
</p>
<p dir="ltr">John B. </p>
<div class="gmail_extra"><br>
<div class="gmail_quote">On Aug 22, 2016 10:59 AM, "Luis SAIZ GIMENO via Openid-specs-fapi" <<a href="mailto:openid-specs-fapi@lists.openid.net" target="_blank">openid-specs-fapi@lists.<wbr>openid.net</a>> wrote:<br type="attribution">
<blockquote style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<div dir="ltr">Hi,
<div><br>
</div>
<div>Maybe it's not a subject for this list but it sounds odd to me the use of POST for "get" info. In order to be more consistent with REST APIs and to avoid mistakes in authorization rules/scopes I think it should be used GET for read-only operations and
POST(PUT/DELETE) for write operations ("transfer" scope)</div>
<div><br>
</div>
<div>The use of GET vs POST for security reasons dates from the early HTTP RFC when TLS was uncommon (HTTP predates TLS). Nowadays and even more in a financial scenario, all transfers must be done under TLS and so no sensitive info can be leaked in proxies.
Web servers has access to the full info regardless GET/POST, it's a server-side responsibility to configure web servers audit logs for not logging sensitive information</div>
<div><br>
</div>
<div>Recommendations of W3C:</div>
<div><br>
</div>
<div><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__www.w3.org_2001_tag_doc_whenToUseGet.html&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=mRUcmZ-pW0zyv3xocmascLFuQEO2Aq2J_vTZFz0gQ1k&e=" target="_blank">https://www.w3.org/2001/tag/<wbr>doc/whenToUseGet.html</a><br>
</div>
<div><br>
</div>
<div><br>
</div>
<div>BTW, HEART WG explicitly refers to RESTful APIs but FAPI don't. Should we consider and discuss about it?</div>
<div><br>
</div>
<div><br>
</div>
<div>Best,</div>
<div><br>
</div>
<div>Luis</div>
<div><br>
</div>
<div>-------</div>
<div>"Crypto can't create trust It merely automates the trust that already exists for other reasons" -- John Gilmore </div>
<div class="gmail_extra"><br>
<div class="gmail_quote">2016-06-09 2:34 GMT+02:00 Saxena, Anoop <span dir="ltr">
<<a href="mailto:Anoop_Saxena@intuit.com" target="_blank">Anoop_Saxena@intuit.com</a>></span>:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<div lang="EN-US" link="#0563C1" vlink="#954F72">
<div>
<p class="MsoNormal">Hello All,<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">FS-ISAC working group ratified a solution that will replace credential based aggregation of data via screen scraping bank website with OAUTH 2.x & DDA (durable data API).<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">Recommendation for Open Id FAPI working group to use Durable Data API as base which defines various entities definition (such as Account, transactions etc.. ).
<u></u><u></u></p>
<p class="MsoNormal">These entities are returned under the scope of OAUTH token.<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">Note: See attachment for detail DDA Specification.<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal"><u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal"><span style="font-size: 10pt; font-family: Arial, sans-serif; color: rgb(54, 94, 191);">Thanks,<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-size: 7.5pt; font-family: Verdana, sans-serif; color: rgb(54, 94, 191);"><u></u> <u></u></span></p>
<p class="MsoNormal"><span style="font-size: 10pt; font-family: Verdana, sans-serif; color: rgb(54, 94, 191);">Anoop Saxena<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-size: 10pt; font-family: Verdana, sans-serif; color: rgb(54, 94, 191);">Architect<br>
</span><b><span style="font-size: 10pt; font-family: Arial, sans-serif; color: rgb(101, 160, 220);">Intuit |</span></b><b><span style="font-size: 10pt; font-family: Arial, sans-serif; color: rgb(146, 146, 146);"> simplify the business of life</span></b><b><sup><span style="font-size: 10pt; font-family: Arial, sans-serif; color: gray;">tm</span></sup></b><br>
<br>
<span style="font-size: 10pt; font-family: Verdana, sans-serif; color: rgb(54, 94, 191);"><u></u><u></u></span></p>
<p class="MsoNormal"><u></u> <u></u></p>
</div>
</div>
<br>
______________________________<wbr>_________________<br>
Openid-specs-fapi mailing list<br>
<a href="mailto:Openid-specs-fapi@lists.openid.net" target="_blank">Openid-specs-fapi@lists.<wbr>openid.net</a><br>
<a href="https://urldefense.proofpoint.com/v2/url?u=http-3A__lists.openid.net_mailman_listinfo_openid-2Dspecs-2Dfapi&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=OxU88Yoaza6iwupZJpdBGJKWpEHSD3z07lNohEjq8lk&e=" rel="noreferrer" target="_blank">http://lists.openid.net/<wbr>mailman/listinfo/openid-specs-<wbr>fapi</a><br>
<br>
</blockquote>
</div>
<br>
<br clear="all">
<div><br>
</div>
-- <br>
<div data-smartmail="gmail_signature">
<div dir="ltr">
<div>
<div dir="ltr">
<div>
<div dir="ltr">
<div>
<div dir="ltr">
<div>
<div dir="ltr">
<div align="left">
<p style="MARGIN:0cm 0cm 0pt" align="left"><b><span style="FONT-FAMILY:Arial;COLOR:#094fa4;FONT-SIZE:10pt">BBVA</span></b></p>
<p style="MARGIN:0cm 0cm 0pt"><b><span style="FONT-FAMILY:Arial;COLOR:#009ee5;FONT-SIZE:10pt">Luis Saiz Gimeno</span></b></p>
<p style="line-height:150%;margin:0cm 0cm 0pt"><span style="color:rgb(9,79,164);font-family:Arial;font-size:10pt;line-height:150%"><b>Innovation in Security</b></span></p>
<p style="line-height:150%;margin:0cm 0cm 0pt"><span style="color:rgb(9,79,164);font-family:Arial;font-size:10pt;line-height:150%">Móvil
<a href="tel:%2B34%C2%A0609703264" value="+34609703264" target="_blank">+34 609703264</a> - Tel.
<a href="tel:%2B34%C2%A0918073152" value="+34918073152" target="_blank">+34 918073152</a> - </span><a href="mailto:luis.saiz@bbva.com" style="font-family:Arial;font-size:10pt;line-height:150%" target="_blank">luis.saiz@bbva.com</a><br>
</p>
<p style="margin:0cm 0cm 0pt"><font size="2"><span style="font-family:Arial;color:rgb(9,79,164);font-size:10pt;line-height:150%" lang="NO-BOK"></span></font><strong style="font-family:Arial"><font color="#009ee5" style="font-size:10pt;line-height:150%">Engineering
- Architecture & Global Deployment </font></strong><span style="font-family:Arial;font-size:10pt;line-height:150%;color:rgb(9,79,164)">– Monforte de Lemos, s/n, 28029</span></p>
<p style="margin:0cm 0cm 0pt"><font color="#094fa4" face="Arial" size="1"><span style="line-height:20px">Maps:
<a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__www.google.es_maps_place_Av.-2Bde-2BMonforte-2Bde-2BLemos-2C-2B28-2C-2B28029-2BMadrid_&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=vaitlrZb8eJhUuiVyBxeBIECO3PSzeOPTKrdGGdLFvU&e=" target="_blank">
https://www.google.es/maps/<wbr>place/Av.+de+Monforte+de+<wbr>Lemos,+28,+28029+Madrid/</a></span></font><br>
</p>
<p style="margin:0cm 0cm 0pt"><span style="font-family:Arial;color:rgb(134,200,45);font-size:7pt">Antes de imprimir este mensaje, por favor comprueba que es necesario hacerlo.
</span><span lang="EN-GB" style="font-family:Arial;color:rgb(134,200,45);font-size:7pt">Before you print this message please consider if it is really necessary.</span></p>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<br>
<p style="background:white"><span style="font-size: 7pt; font-family: Arial, sans-serif; color: rgb(117, 128, 135);">"Este mensaje está dirigido de manera exclusiva a su destinatario y puede contener información privada y confidencial. No lo reenvíe, copie
o distribuya a terceros que no deban conocer su contenido. En caso de haberlo recibido por error, rogamos lo notifique al remitente y proceda a su borrado, así como al de cualquier documento que pudiera adjuntarse.</span></p>
<p style="background:white"><span style="font-size: 7pt; font-family: Arial, sans-serif; color: rgb(117, 128, 135);"> </span><span style="color: rgb(117, 128, 135); font-family: Arial, sans-serif; font-size: 7pt;">Por favor tenga en cuenta que los correos enviados
vía Internet no permiten garantizar la confidencialidad de los mensajes ni su transmisión de forma íntegra.</span></p>
<p style="background:white"><span style="font-size: 7pt; font-family: Arial, sans-serif; color: rgb(117, 128, 135);"> </span><span style="color: rgb(117, 128, 135); font-family: Arial, sans-serif; font-size: 7pt;">Las opiniones expresadas en el presente correo
pertenecen únicamente al remitente y no representan necesariamente la opinión del Grupo BBVA."</span></p>
<p style="background:white"><span style="font-size: 7pt; font-family: Arial, sans-serif; color: rgb(117, 128, 135);"> </span><span style="color: rgb(117, 128, 135); font-family: Arial, sans-serif; font-size: 7pt;">"This message is intended exclusively for the
adressee and may contain privileged and confidential information. Please, do not disseminate, copy or distribute it to third parties who should not receive it. In case you have received it by mistake, please inform the sender and delete the message and attachments
from your system.</span></p>
<p style="background:white"><span lang="EN-GB" style="font-size: 7pt; font-family: Arial, sans-serif; color: rgb(117, 128, 135);"> </span><span style="color: rgb(117, 128, 135); font-family: Arial, sans-serif; font-size: 7pt;">Please keep in mind that e-mails
sent by Internet do not allow to guarantee neither the confidentiality or the integrity of the messages sent."</span></p>
<br>
______________________________<wbr>_________________<br>
Openid-specs-fapi mailing list<br>
<a href="mailto:Openid-specs-fapi@lists.openid.net" target="_blank">Openid-specs-fapi@lists.<wbr>openid.net</a><br>
<a href="https://urldefense.proofpoint.com/v2/url?u=http-3A__lists.openid.net_mailman_listinfo_openid-2Dspecs-2Dfapi&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=OxU88Yoaza6iwupZJpdBGJKWpEHSD3z07lNohEjq8lk&e=" rel="noreferrer" target="_blank">http://lists.openid.net/<wbr>mailman/listinfo/openid-specs-<wbr>fapi</a><br>
<br>
</blockquote>
</div>
<br>
</div>
</div>
</blockquote>
<blockquote type="cite">
<div><span>______________________________<wbr>_________________</span><br>
<span>Openid-specs-fapi mailing list</span><br>
<span><a href="mailto:Openid-specs-fapi@lists.openid.net" target="_blank">Openid-specs-fapi@lists.<wbr>openid.net</a></span><br>
<span><a href="https://urldefense.proofpoint.com/v2/url?u=http-3A__lists.openid.net_mailman_listinfo_openid-2Dspecs-2Dfapi&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=OxU88Yoaza6iwupZJpdBGJKWpEHSD3z07lNohEjq8lk&e=" target="_blank">http://lists.openid.net/<wbr>mailman/listinfo/openid-specs-<wbr>fapi</a></span><br>
</div>
</blockquote>
</div>
______________________________<wbr>_________________<br>
Openid-specs-fapi mailing list<br>
<a href="mailto:Openid-specs-fapi@lists.openid.net" target="_blank">Openid-specs-fapi@lists.<wbr>openid.net</a><br>
<a href="https://urldefense.proofpoint.com/v2/url?u=http-3A__lists.openid.net_mailman_listinfo_openid-2Dspecs-2Dfapi&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=OxU88Yoaza6iwupZJpdBGJKWpEHSD3z07lNohEjq8lk&e=" rel="noreferrer" target="_blank">http://lists.openid.net/<wbr>mailman/listinfo/openid-specs-<wbr>fapi</a><br>
</blockquote>
</div>
</div>
</div>
</blockquote>
</div>
<br>
<br clear="all">
<div><br>
</div>
-- <br>
<div class="gmail_signature" data-smartmail="gmail_signature">
<div style="padding:0px;margin:0">
<table style="border-collapse:collapse;padding:0;margin:0">
<tbody>
<tr>
<td style="width:113px"><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__www.pingidentity.com&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=kX9YMc9bHJieQZvW5XXfNlv9-HSUsg16tyweuW60-R8&e=" target="_blank"></a><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__www.pingidentity.com&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=kX9YMc9bHJieQZvW5XXfNlv9-HSUsg16tyweuW60-R8&e=" target="_blank"><img alt="Ping Identity" src="https://www.pingidentity.com/content/dam/pic/images/misc/signature/ping-logo.png"></a></td>
<td>
<table>
<tbody>
<tr>
<td style="vertical-align:top"><span style="color: rgb(230, 29, 60); display: inline-block; margin-bottom: 3px; font-family: arial, helvetica, sans-serif; font-weight: bold; font-size: 14px;">John Bradley</span><br>
<span style="color: rgb(0, 0, 0); display: inline-block; margin-bottom: 2px; font-family: arial, helvetica, sans-serif; font-weight: normal; font-size: 14px;">Sr Technical Architect</span><br>
<span style="font-family: arial, helvetica, sans-serif; font-size: 14px; display: inline-block; margin-bottom: 3px;"><a href="mailto:jbradley@pingidentity.com" target="_blank">jbradley@pingidentity.com</a></span><br>
<span style="color: rgb(0, 0, 0); display: inline-block; margin-bottom: 2px; font-family: arial, helvetica, sans-serif; font-weight: normal; font-size: 14px;">w:
</span><br>
<span style="color: rgb(0, 0, 0); display: inline-block; margin-bottom: 2px; font-family: arial, helvetica, sans-serif; font-weight: normal; font-size: 14px;">c: +1 202.630.5272</span></td>
</tr>
</tbody>
</table>
</td>
</tr>
<tr>
<td colspan="2">
<table style="border-collapse:collapse;border:none;margin:8px 0 0 0;width:100%">
<tbody>
<tr style="height:40px;border-top:1px solid #d3d3d3;border-bottom:1px solid #d3d3d3">
<td style="font-family:arial,helvetica,sans-serif;font-size:14px;font-weight:bold;color:#40474b">
Connect with us: </td>
<td style="padding:4px 0 0 20px"><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__www.glassdoor.com_Overview_Working-2Dat-2DPing-2DIdentity-2DEI-5FIE380907.11-2C24.htm&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=PD9315f6kW9bfb6_G2q9q-uA8VPfuAqLr_aS-UVKOOI&e=" style="text-decoration:none;margin-right:16px" title="Ping on Glassdoor" target="_blank"><img src="https://www.pingidentity.com/content/dam/pic/images/misc/signature/social-glassdoor.png" style="border:none;margin:0" alt="Glassdoor logo"></a><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__www.linkedin.com_company_21870&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=KJihPz8jzRH6HwzxvoqQxAJE9Nfmde3zXO_tHw_1PQ8&e=" style="text-decoration:none;margin-right:16px" title="Ping on LinkedIn" target="_blank"><img src="https://www.pingidentity.com/content/dam/pic/images/misc/signature/social-linkedin.png" style="border:none;margin:0" alt="LinkedIn logo"></a><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__twitter.com_pingidentity&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=Ke6hIQ9k9koR9epgEE6JFTBmZot_aaT4jYOioGSF3QY&e=" style="text-decoration:none;margin-right:16px" title="Ping on Twitter" target="_blank"><img src="https://www.pingidentity.com/content/dam/pic/images/misc/signature/social-twitter.png" style="border:none;margin:0" alt="twitter logo"></a><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__www.facebook.com_pingidentitypage&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=33aG4dKuS2A33uDgS3q_kW1lD1WdC4Hj_0mr362_MZQ&e=" style="text-decoration:none;margin-right:16px" title="Ping on Facebook" target="_blank"><img src="https://www.pingidentity.com/content/dam/pic/images/misc/signature/social-facebook.png" style="border:none;margin:0" alt="facebook logo"></a><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__www.youtube.com_user_PingIdentityTV&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=-gVTCHbgO66E2c03WWWG4asrAKbkFfZ40-6rW02GW4A&e=" style="text-decoration:none;margin-right:16px" title="Ping on Youtube" target="_blank"><img src="https://www.pingidentity.com/content/dam/pic/images/misc/signature/social-youtube.png" style="border:none;margin:0 0 3px 0" alt="youtube logo"></a><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__plus.google.com_u_0_114266977739397708540&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=A8-cUg_bVSaGE0-g7uzk3A3M3GfWQdB1kLUFy1WDf-c&e=" style="text-decoration:none;margin-right:16px" title="Ping on Google+" target="_blank"><img src="https://www.pingidentity.com/content/dam/pic/images/misc/signature/social-googleplus.png" style="border:none;margin:0" alt="Google+ logo"></a><a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__www.pingidentity.com_en_blog.html&d=DQMFaQ&c=_hRq4mqlUmqpqlyQ5hkoDXIVh6I6pxfkkNxQuL0p-Z0&r=BjnOFeRZMwPBZLm00SguJm4i4lt0O13oAeF-9EZheL8&m=mM1GN701RJiAVHfv8G1aDzNyvi-IsAr4cOBvyYfL7uU&s=oYyJ-X5rpFfML9k3daNkZ1VMFzTViMp1ValAjajeA6o&e=" style="text-decoration:none;margin-right:16px" title="Ping Blog" target="_blank"><img src="https://www.pingidentity.com/content/dam/pic/images/misc/signature/social-blog.png" style="border:none;margin:0" alt="Blog logo"></a></td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
</div>
</div>
</span>
</body>
</html>