Re: [OAUTH-WG] Dynamic Client Registration in trusted federation

2018-06-12 Thread Dave Tonge
Hi Matt To add to George's point I think software statements solve your issue. For an example of how they are being used by UK OpenBanking please look here: https://bitbucket.org/openid/obuk/src/4630771db004da59992fb201641f5c4ff2c881f1/uk-openbanking-registration-profile.md?at=master&fileviewer=fi

Re: [OAUTH-WG] updated Distributed OAuth ID

2018-06-12 Thread Jared Hanson
Thanks Dick, Nat and Brian for your work on this ID. I have a couple improvements I would like to discuss: I would suggest replacing the "oauth_server_metadata_uri" link relation with "oauth2-isser", and dropping the ".well-known" suffix from the value. For example: Link:

[OAUTH-WG] updated Distributed OAuth ID

2018-06-12 Thread Dick Hardt
Hey OAuth WG I have worked with Nat and Brian to merge our concepts and those are captured in the updated draft. https://datatracker.ietf.org/doc/draft-hardt-oauth-distributed/ We are hopeful the WG will adopt this draft as a WG document. Any comments and feedback are welcome! /Dick __

[OAUTH-WG] Opsdir last call review of draft-ietf-oauth-device-flow-10

2018-06-12 Thread Qin Wu
Reviewer: Qin Wu Review result: Ready I have reviewed this document as part of the Operational directorate¡¯s ongoing effort to review all IETF documents being processed by the IESG. These comments were written with the intent of improving the operational aspects of the IETF drafts. Comments that