Hi!

Thanks for the -08 version of draft-ietf-oauth-par and the associated 
discussion in response to the IESG review. 

Can you please spin a quick editorial revision to catch Murray's comments and 
respond to his question on Section 7.3.  See 
https://datatracker.ietf.org/doc/draft-ietf-oauth-par/ballot/#murray-kucherawy. 
 These same comments are annotated below:

(Comment #1) Section 7.2:

* "An attacker could try register ..." -- s/try/try to/

[Roman] Typo still stands.

(Comment #2) In Section 7.3, I think that SHOULD ought to be a MUST.  Is there 
a good reason not to do what it says?

[Roman] Please explain why MUST doesn't make sense.

(Comment #3) The field names in Section 10.2 don't match the field names in the 
registry.

[Roman] s/Metadata Name/Client Metadata Name/

[Roman] s/Metadata Description/Client Metadata Description/

Regards,
Roman

_______________________________________________
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth

Reply via email to