I agree we don't want to end up like other protocols that were too generic. :)
The use case I am arguing for is sending encrypted tokens. Higher levels of assurance require this and various people brought this up as a requirement when WRAP was presented at IIW 09B. -- Dick On 2010-07-10, at 11:06 AM, Eran Hammer-Lahav wrote: > We need to get this into a proper draft (which I understand is on Dirk's > list) and do a round of feedback before we promote this to a WG draft. I'm > happy to help with editorial work if needed. > > Given the wide range of use cases, I think we need to keep this work focused > on the use cases driving it, and not try to make it too generic. _______________________________________________ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth