
what about discovery?

"Recommendations of commonly used Scope values" sounds to weak from my point of view. I would rather suggest to work towards a clear definition of scope syntax and semantics, including resource server identification.

Please note, I submitted a I-D on token revocation (https://datatracker.ietf.org/doc/draft-lodderstedt-oauth-revocation/) I would like to become a WG item.


Am 12.09.2010 02:15, schrieb Hannes Tschofenig:
I forgot an item already, namely 'identity management using OAuth' in the style of OpenID Connect.

At IIW we also had a chat about an implementers guide and interoperability tests. The idea of the implementers guide is create a living document that captures implementation experience with different programming languages and development frameworks. It was also expected that implementers will bundle different profiles and different extensions in their implementation and it would be useful to describe their experience.

In any case, I think both items are important.


On 11.09.2010 19:59, Hannes Tschofenig wrote:
Hi all,

at the Washington Internet Identity Workshop we had the chance to chat
about OAuth. Given the progress on the main specification we should
discuss WG re-chartering.

The following items had been proposed at the meeting:

* Messaging Signing
Example: http://www.ietf.org/mail-archive/web/oauth/current/msg04250.html

* User Experience Extensions
Example: http://datatracker.ietf.org/doc/draft-recordon-oauth-v2-ux/

* Artifact Binding
Example: http://datatracker.ietf.org/doc/draft-sakimura-oauth-requrl/

* SAML for OAuth
Example: http://datatracker.ietf.org/doc/draft-campbell-oauth-saml/

* Recommendations of commonly used Scope values
No draft available (to my knowledge)

* Dynamic Client Registration
Example: http://www.ietf.org/id/draft-oauth-dyn-reg-v1-00.txt

I am interested to hear
a) what items are important for you; we cannot work on everything at the
same time.
b) what items are you willing to co-author (requires a hard time
c) what items are you willing to review
d) whether we should consider other items?

Btw, to have your work considered you have to submit an IETF draft.
Please use the Web tool to upload it:
Also use the following filename convention:
draft-[author last name]-oauth-[some short name]-[version#].txt

OAuth mailing list

OAuth mailing list

OAuth mailing list

Reply via email to