I'll take this as –20 last call comment. From: Brian Campbell <bcampb...@pingidentity.com<mailto:bcampb...@pingidentity.com>> Date: Wed, 27 Jul 2011 15:17:48 -0700 To: Eran Hammer-lahav <e...@hueniverse.com<mailto:e...@hueniverse.com>> Cc: Torsten Lodderstedt <tors...@lodderstedt.net<mailto:tors...@lodderstedt.net>>, oauth <oauth@ietf.org<mailto:oauth@ietf.org>> Subject: Re: [OAUTH-WG] treatment of client_id for authentication and identification
I think that would be helpful, thanks. On Wed, Jul 27, 2011 at 12:43 PM, Eran Hammer-Lahav <e...@hueniverse.com<mailto:e...@hueniverse.com>> wrote: If you want, we can tweak section 2.4.1 to make client_secret optional if the secret is the empty string. That will give you exactly what you want without making the document any more confusing. EHL
_______________________________________________ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth