[OAUTH-WG] Re: Updates to RFC 7523

2025-05-01 Thread Deb Cooley
-- Mike > > > > *From:* Watson Ladd > *Sent:* Thursday, April 24, 2025 3:08 PM > *To:* Deb Cooley > *Cc:* Brian Campbell ; IETF > oauth WG > *Subject:* [OAUTH-WG] Re: Updates to RFC 7523 > > > > > > > > > > On

[OAUTH-WG] Re: Last Call: (Selective Disclosure for JWTs (SD-JWT)) to Proposed Standard

2025-04-30 Thread Deb Cooley
occurs in this (very long) message chain. Deb Cooley Sec AD On Mon, Apr 14, 2025 at 1:21 PM Denis wrote: > The IESG has received a request from the Web Authorization Protocol WG > (oauth) to consider the following document: - 'Selective Disclosure for JWTs > (SD-JWT)' >

[OAUTH-WG] Re: Updates to RFC 7523

2025-04-24 Thread Deb Cooley
e, it will be sorted by next Thursday. And once the wg thinks it is ready to go, we can expedite on the IESG/RFC Editor end. Deb On Thu, Apr 24, 2025 at 7:51 AM Deb Cooley wrote: > I was at the OAUTH interim where this was discussed. I did feel like the > current course was more stra

[OAUTH-WG] Re: Updates to RFC 7523

2025-04-24 Thread Deb Cooley
I was at the OAUTH interim where this was discussed. I did feel like the current course was more straightforward for those implementing. [if this was discussed at 122, my memory fails me] As a caution, I have added this issue to the next IESG informal meeting. I will relay the result of that di

[OAUTH-WG] Re: Last Call: (Selective Disclosure for JWTs (SD-JWT)) to Proposed Standard

2025-04-23 Thread Deb Cooley
Is this message, sent to the oauth list, different than what is here: https://mailarchive.ietf.org/arch/msg/last-call/o9mStgXOwCEAZGcPlf-t_UrLmtU/ ??? Multiple comments, sent to multiple locations just makes it all confusing. I would prefer a single, concise list of comments, please. I will actio

[OAUTH-WG] Re: [IANA #1416059] expert review for draft-ietf-oauth-selective-disclosure-jwt (media-type-structured-suffix)

2025-04-08 Thread Deb Cooley
Alper, This is a different sort of review - expert reviewers on a particular IANA registry. There are many drafts in the oauth working group that would be happy for a review. Take a peek at the mailing list or at the data tracker, pick one and review away. Deb Cooley Sec AD On Tue, Apr 8

[OAUTH-WG] Re: [Technical Errata Reported] RFC7519 (8060)

2025-02-11 Thread Deb Cooley
e any special provisions for only ignoring header > parameters if they are specified as being ignored, but instead requires all > header parameters to be ignored if they are not understood, except if they > are critical. > > > > > > On Sat, Feb 8, 2025 at 4:37 AM Deb Coole

[OAUTH-WG] Re: [Technical Errata Reported] RFC7519 (8060)

2025-02-08 Thread Deb Cooley
Errata? Did I hear you say errata? I can push the buttons to properly dispatch this. I think this includes editing an errata and certainly includes adding notes to it. I need to know what edits and or comments you want made, and what outcome (reject, validate, hold for document update). Also h

[OAUTH-WG] draft-oauth-browser-based-apps

2025-01-16 Thread Deb Cooley
Here are the comments on my AD review of this draft. Most of them will be easy to fix, except for the normative references to changeable standards: General: There are more than a couple of Normative references that are pointing to 'living documents'. From my reading of the draft these include:

[OAUTH-WG] Re: SD-JWT linkability

2024-12-24 Thread Deb Cooley
At the risk of drawing oauth chairs ire and only because I happened to be reading this thread w/ chagrin. No one thinks that SD-JWT is a perfect answer to the problem. It isn't. Sadly the perfect solution doesn't exist. So as we make our way to better and better solutions, let us take this n

[OAUTH-WG] Re: Fwd: New Version Notification for draft-ietf-oauth-selective-disclosure-jwt-14.txt

2024-12-20 Thread Deb Cooley
the issues Deb, > > The document editors will take an action to incorporate the indicated > changes in the next draft. > > On Thu, Dec 12, 2024 at 6:58 AM Deb Cooley wrote: > >> +oauth working group and Paul: >> >> Denis, >> >> I have gone through ev

[OAUTH-WG] Re: Fwd: New Version Notification for draft-ietf-oauth-selective-disclosure-jwt-14.txt

2024-12-12 Thread Deb Cooley
are both my general comments, and then blow by blow responses to your 42 issues. Deb Cooley --- My general comments on the issues: 1. End-User comments: These are implementation choices. Holder is basically the front for all sorts of different

[OAUTH-WG] Re: Media Types conversation during the OAuth session last week

2024-11-14 Thread Deb Cooley
I want to add that I appreciate the authors' work to come to a resolution. It was not easy work. I look forward to when these drafts are passed to me (as Sec AD) for publication. Deb Cooley Sec AD On Thu, Nov 14, 2024 at 5:24 AM Brian Campbell wrote: > Oh, and in case you missed it, t

[OAUTH-WG] Re: IETF121 - OAuth WG Draft Agenda

2024-10-29 Thread Deb Cooley
TYVM, Deb On Mon, Oct 28, 2024 at 11:30 AM Rifaat Shekh-Yusef wrote: > Deb, > > Done. > > > All, > > I have shuffled the agenda, so please take a look and let us know if you > have any questions. > > Regards, > Rifaat & Hannes > > >

[OAUTH-WG] Re: IETF121 - OAuth WG Draft Agenda

2024-10-27 Thread Deb Cooley
Thanks for the consideration, Deb Cooley Sec AD On Tue, Oct 22, 2024 at 6:33 PM Rifaat Shekh-Yusef wrote: > All, > > The following is a draft agenda for the OAuth WG meeting in Dublin: > https://datatracker.ietf.org/doc/agenda-121-oauth/ > > Please, take a look and let us know