This is going to get fun as we deal with various types of identities.  There 
was a suggestion at IIW that the workable way to do this for e-mail is via MX 
records.  What do we do for other types of IDs?




>________________________________
> From: Hannes Tschofenig <hannes.tschofe...@gmx.net>
>To: "oauth@ietf.org WG" <oauth@ietf.org>; kit...@ietf.org 
>Sent: Wednesday, May 9, 2012 10:50 AM
>Subject: [kitten] OAuth Discovery and what the relying party needs to know
> 
>Hi guys, 
>
>at the last IIW we had a discussion about SASL-OAuth and what the SASL server 
>needs to know for discovery. 
>The discovery discussions around WebFinger go in the same directions. 
>
>So, I have been wondering whether we have made an informed decision about how 
>the discovery procedure is actually supposed to look like. 
>
>In my view, the relying party (the client) only needs to know who the identity 
>provider (the AS/RS) is. 
>
>Any other views? 
>
>Ciao
>Hannes
>
>PS: Please let me know if I should provide more background about the issue. 
>
>_______________________________________________
>Kitten mailing list
>kit...@ietf.org
>https://www.ietf.org/mailman/listinfo/kitten
>
>
>
_______________________________________________
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth

Reply via email to