[OAUTH-WG] Last Call: (The OAuth 2.0 Authorization Framework: JWT Secured Authorization Request (JAR)) to Proposed Standard

2017-01-30 Thread The IESG
The IESG has received a request from the Web Authorization Protocol WG (oauth) to consider the following document: - 'The OAuth 2.0 Authorization Framework: JWT Secured Authorization Request (JAR)' as Proposed Standard The IESG plans to make a decision in the next few weeks, and solicits fi

Re: [OAUTH-WG] New Version Notification for draft-ietf-oauth-jwsreq-11.txt

2017-01-30 Thread Kathleen Moriarty
Hi Nat, Thanks for making the updates from my review and the SecDir review. I already pulled this from this week's telechat. I can put it on the next telechat, I just need to run IETF last call first. I will request to start last call. Discussions on changes fromt he SecDir review can continue

Re: [OAUTH-WG] New Version Notification for draft-ietf-oauth-jwsreq-11.txt

2017-01-30 Thread Nat Sakimura
Hi OAuthers: I have finally pushed -10 and -11 which hopefully resolved all the comments provided by Jan 17. Changes are as follows. #20: KM1 -- some wording that is awkward in the TLS section. Accepted the suggested edit. #21: KM2 - the additional attacks against OAuth 2.0 should also ha

[OAUTH-WG] I-D Action: draft-ietf-oauth-jwsreq-11.txt

2017-01-30 Thread internet-drafts
A New Internet-Draft is available from the on-line Internet-Drafts directories. This draft is a work item of the Web Authorization Protocol of the IETF. Title : The OAuth 2.0 Authorization Framework: JWT Secured Authorization Request (JAR) Authors : Nat Sakimura

[OAUTH-WG] I-D Action: draft-ietf-oauth-jwsreq-10.txt

2017-01-30 Thread internet-drafts
A New Internet-Draft is available from the on-line Internet-Drafts directories. This draft is a work item of the Web Authorization Protocol of the IETF. Title : The OAuth 2.0 Authorization Framework: JWT Secured Authorization Request (JAR) Authors : Nat Sakimura