+1 From: OAuth [mailto:oauth-boun...@ietf.org] On Behalf Of William Denniss Sent: Wednesday, January 20, 2016 6:30 PM To: John Bradley <ve7...@ve7jtb.com>; Phil Hunt (IDM) <phil.h...@oracle.com> Cc: oauth@ietf.org Subject: Re: [OAUTH-WG] Call for Adoption: OAuth 2.0 Mix-Up Mitigation
+1 for adoption, this is important work. On Thu, Jan 21, 2016, 9:48 AM John Bradley <ve7...@ve7jtb.com<mailto:ve7...@ve7jtb.com>> wrote: +1 for adoption Mike and I are working on addressing the comments in a new draft for your reading pleasure shortly. John B. On Jan 20, 2016, at 10:26 PM, Phil Hunt (IDM) <phil.h...@oracle.com<mailto:phil.h...@oracle.com>> wrote: +1 for adoption +1 for Brian's comments Phil On Jan 20, 2016, at 14:42, Brian Campbell <bcampb...@pingidentity.com<mailto:bcampb...@pingidentity.com>> wrote: I conditionally accept this document as a starting point for work in the OAuth working group on the assumption that the considerable simplifications discussed and accepted at http://www.ietf.org/mail-archive/web/oauth/current/msg15351.html<https://na01.safelinks.protection.outlook.com/?url=http%3a%2f%2fwww.ietf.org%2fmail-archive%2fweb%2foauth%2fcurrent%2fmsg15351.html&data=01%7c01%7ctonynad%40microsoft.com%7c57b5111a35fc43e3276208d3220ac8b6%7c72f988bf86f141af91ab2d7cd011db47%7c1&sdata=sX563oe%2bghIV9OA6eZR2cYUMkZYzCI3asjExkNX6Xp0%3d> will be incorporated. This document is (should be) intended to provide a mitigation to a security problem. As such, it would be nice to see it progress a little faster than the typical WG document. The more quickly the document can progress and/or be perceived as stable, the better. On Tue, Jan 19, 2016 at 4:49 AM, Hannes Tschofenig <hannes.tschofe...@gmx.net<mailto:hannes.tschofe...@gmx.net>> wrote: Hi all, this is the call for adoption of OAuth 2.0 Mix-Up Mitigation, see https://tools.ietf.org/html/draft-jones-oauth-mix-up-mitigation-00<https://na01.safelinks.protection.outlook.com/?url=https%3a%2f%2ftools.ietf.org%2fhtml%2fdraft-jones-oauth-mix-up-mitigation-00&data=01%7c01%7ctonynad%40microsoft.com%7c57b5111a35fc43e3276208d3220ac8b6%7c72f988bf86f141af91ab2d7cd011db47%7c1&sdata=9Xrf3wL%2f7UfJ%2fdpWRT%2fCWSasgKTRcqsrSSMKLGwUtJ0%3d> Please let us know by Feb 9th whether you accept / object to the adoption of this document as a starting point for work in the OAuth working group. Note: This call is related to the announcement made on the list earlier this month, see http://www.ietf.org/mail-archive/web/oauth/current/msg15336.html<https://na01.safelinks.protection.outlook.com/?url=http%3a%2f%2fwww.ietf.org%2fmail-archive%2fweb%2foauth%2fcurrent%2fmsg15336.html&data=01%7c01%7ctonynad%40microsoft.com%7c57b5111a35fc43e3276208d3220ac8b6%7c72f988bf86f141af91ab2d7cd011db47%7c1&sdata=WPQQcD9G823Ab4osrjKwfqFlu5WxZGWzFvjQc3e4sF8%3d>. More time for analysis is provided due to the complexity of the topic. Ciao Hannes & Derek _______________________________________________ OAuth mailing list OAuth@ietf.org<mailto:OAuth@ietf.org> https://www.ietf.org/mailman/listinfo/oauth<https://na01.safelinks.protection.outlook.com/?url=https%3a%2f%2fwww.ietf.org%2fmailman%2flistinfo%2foauth&data=01%7c01%7ctonynad%40microsoft.com%7c57b5111a35fc43e3276208d3220ac8b6%7c72f988bf86f141af91ab2d7cd011db47%7c1&sdata=00hoXh2DlO9QyJrXMdarxQNiuSQIKaeL490qBrxCYFc%3d> _______________________________________________ OAuth mailing list OAuth@ietf.org<mailto:OAuth@ietf.org> https://www.ietf.org/mailman/listinfo/oauth<https://na01.safelinks.protection.outlook.com/?url=https%3a%2f%2fwww.ietf.org%2fmailman%2flistinfo%2foauth&data=01%7c01%7ctonynad%40microsoft.com%7c57b5111a35fc43e3276208d3220ac8b6%7c72f988bf86f141af91ab2d7cd011db47%7c1&sdata=00hoXh2DlO9QyJrXMdarxQNiuSQIKaeL490qBrxCYFc%3d> _______________________________________________ OAuth mailing list OAuth@ietf.org<mailto:OAuth@ietf.org> https://www.ietf.org/mailman/listinfo/oauth<https://na01.safelinks.protection.outlook.com/?url=https%3a%2f%2fwww.ietf.org%2fmailman%2flistinfo%2foauth&data=01%7c01%7ctonynad%40microsoft.com%7c57b5111a35fc43e3276208d3220ac8b6%7c72f988bf86f141af91ab2d7cd011db47%7c1&sdata=00hoXh2DlO9QyJrXMdarxQNiuSQIKaeL490qBrxCYFc%3d> _______________________________________________ OAuth mailing list OAuth@ietf.org<mailto:OAuth@ietf.org> https://www.ietf.org/mailman/listinfo/oauth<https://na01.safelinks.protection.outlook.com/?url=https%3a%2f%2fwww.ietf.org%2fmailman%2flistinfo%2foauth&data=01%7c01%7ctonynad%40microsoft.com%7c57b5111a35fc43e3276208d3220ac8b6%7c72f988bf86f141af91ab2d7cd011db47%7c1&sdata=00hoXh2DlO9QyJrXMdarxQNiuSQIKaeL490qBrxCYFc%3d>
_______________________________________________ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth