[OAUTH-WG] Re: I-D Action: draft-ietf-oauth-browser-based-apps-20.txt

2024-12-18 Thread Aaron Parecki
Hi all, the authors have published a new draft of the Browser-Based Apps BCP addressing Rifaat's comments from the shepherd writeup. Notes on the individual points are below, copied from Philippe's PR for these changes on GitHub. Section 6.1.1 “This response to the browser will also trigger the re

[OAUTH-WG] I-D Action: draft-ietf-oauth-browser-based-apps-20.txt

2024-12-18 Thread internet-drafts
Internet-Draft draft-ietf-oauth-browser-based-apps-20.txt is now available. It is a work item of the Web Authorization Protocol (OAUTH) WG of the IETF. Title: OAuth 2.0 for Browser-Based Applications Authors: Aaron Parecki David Waite Philippe De Ryck Name:dr

[OAUTH-WG] Canceled Webex meeting: OAuth WG Virtual Office Hours

2024-12-18 Thread Rifaat Shekh-Yusef
BEGIN:VCALENDAR PRODID:-//Microsoft Corporation//Outlook 10.0 MIMEDIR//EN VERSION:2.0 METHOD:CANCEL BEGIN:VTIMEZONE TZID:America/New_York LAST-MODIFIED:20221105T024526Z TZURL:https://www.tzurl.org/zoneinfo-outlook/America/New_York X-LIC-LOCATION:America/New_York BEGIN:DAYLIGHT TZNAME:EDT TZOFFSETFR

[OAUTH-WG] Re: SD-JWT linkability

2024-12-18 Thread Denis
Carsten wrote:  (...) it is impractical for a wallet to make this kind of judgement for each issued credential. Carsten is correct : a wallet /which is an application /cannot make any kind of judgement. However a human-being, i.e., an End-user that has the control over an Holder (applic