Hi! Thanks for the -08 version of draft-ietf-oauth-par and the associated discussion in response to the IESG review.
Can you please spin a quick editorial revision to catch Murray's comments and respond to his question on Section 7.3. See https://datatracker.ietf.org/doc/draft-ietf-oauth-par/ballot/#murray-kucherawy. These same comments are annotated below: (Comment #1) Section 7.2: * "An attacker could try register ..." -- s/try/try to/ [Roman] Typo still stands. (Comment #2) In Section 7.3, I think that SHOULD ought to be a MUST. Is there a good reason not to do what it says? [Roman] Please explain why MUST doesn't make sense. (Comment #3) The field names in Section 10.2 don't match the field names in the registry. [Roman] s/Metadata Name/Client Metadata Name/ [Roman] s/Metadata Description/Client Metadata Description/ Regards, Roman _______________________________________________ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth