The IESG has received a request from the Web Authorization Protocol WG
(oauth) to consider the following document:
- 'The OAuth 2.0 Authorization Framework: JWT Secured Authorization
Request (JAR)'
as Proposed Standard
The IESG plans to make a decision in the next few weeks, and solicits
fi
Hi Nat,
Thanks for making the updates from my review and the SecDir review. I
already pulled this from this week's telechat. I can put it on the
next telechat, I just need to run IETF last call first.
I will request to start last call. Discussions on changes fromt he
SecDir review can continue
Hi OAuthers:
I have finally pushed -10 and -11 which hopefully resolved all the comments
provided by Jan 17.
Changes are as follows.
#20: KM1 -- some wording that is awkward in the TLS section.
Accepted the suggested edit.
#21: KM2 - the additional attacks against OAuth 2.0 should also ha
A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Web Authorization Protocol of the IETF.
Title : The OAuth 2.0 Authorization Framework: JWT Secured
Authorization Request (JAR)
Authors : Nat Sakimura
A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Web Authorization Protocol of the IETF.
Title : The OAuth 2.0 Authorization Framework: JWT Secured
Authorization Request (JAR)
Authors : Nat Sakimura