[OAUTH-WG] Secdir last call review of draft-ietf-oauth-security-topics-26

2024-04-28 Thread Michael Jones via Datatracker
Reviewer: Michael Jones Review result: Has Issues Comments on substantive issues with the specification: In 4.15. Client Impersonating Resource Owner, the sentence “If the resource server cannot properly distinguish between access tokens issued to clients and access tokens issued to end-users, th

Re: [OAUTH-WG] OAuth Digest, Vol 186, Issue 40

2024-04-28 Thread Konstantin Korsakov
Я в отпуске до 13 мая. По срочным вопросам - звоните или пишите в Телеграм. ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

Re: [OAUTH-WG] OAuth Digest, Vol 186, Issue 39

2024-04-28 Thread Konstantin Korsakov
Я в отпуске до 13 мая. По срочным вопросам - звоните или пишите в Телеграм. ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

[OAUTH-WG] Weekly github digest (OAuth Activity Summary)

2024-04-28 Thread Repository Activity Summary Bot
Events without label "editorial" Issues -- * oauth-wg/oauth-identity-chaining (+0/-2/💬3) 3 issues received 3 new comments: - #86 Add sender constraining mechanisms (1 by bc-pi) https://github.com/oauth-wg/oauth-identity-chaining/issues/86 - #84 How does the AS know it should generat