[OAUTH-WG] (no subject)

2017-04-21 Thread Та Ч Классно
___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

Re: [OAUTH-WG] re comments on MTLS (was Re: Call for Adoption: Mutual TLS Profiles for OAuth Clients)

2017-04-21 Thread John Bradley
I agree with Brian. Trying to do anything with PKIX opens up cans of worms. One of the reasons we have resisted to this point. However there are server to server use cases that legitimately need this. I agree that in general DN is a mess, I suspect that telling people to directly use the DER

[OAUTH-WG] re comments on MTLS (was Re: Call for Adoption: Mutual TLS Profiles for OAuth Clients)

2017-04-21 Thread Brian Campbell
Thanks, James, for the adoption support as well as the review and comments. I've tried to respond to the comments inline below. On Thu, Apr 20, 2017 at 11:33 PM, Manger, James < james.h.man...@team.telstra.com> wrote: > I support adoption of draft-campbell-oauth-mtls. > > Now some comments on the

Re: [OAUTH-WG] Call for Adoption: Mutual TLS Profiles for OAuth Clients

2017-04-21 Thread Nat Sakimura
+1 for adoption On Apr 21, 2017 9:32 PM, "Dave Tonge" wrote: > I support adoption of draft-campbell-oauth-mtls > > As previously mentioned this spec will be very useful for Europe where > there is legislation requiring the use of certificate-based authentication > and many financial groups and i

Re: [OAUTH-WG] Call for Adoption: Mutual TLS Profiles for OAuth Clients

2017-04-21 Thread Dave Tonge
I support adoption of draft-campbell-oauth-mtls As previously mentioned this spec will be very useful for Europe where there is legislation requiring the use of certificate-based authentication and many financial groups and institutions are considering OAuth2. The UK Open Banking Implementation E