Re: [OAUTH-WG] Generalizing draft-ietf-oauth-jwt-introspection-response-01

2018-11-06 Thread Justin P Richer
Since I brought this up initially, I want to re-voice my support for a general mechanism. I think it makes sense to have something that all of the OAuth JSON-spouting endpoints (introspection, token, revocation, registration, discovery) can use to universally put out signed and/or encrypted JWTs

Re: [OAUTH-WG] Generalizing draft-ietf-oauth-jwt-introspection-response-01

2018-11-04 Thread Mike Jones
To: oauth Subject: [OAUTH-WG] Generalizing draft-ietf-oauth-jwt-introspection-response-01 Hi all, as mentioned during the presentation this morning, I would like to get a feeling what the working groups thinks about generalizing draft-ietf-oauth-jwt-introspection-response-01 to a mechanism

[OAUTH-WG] Generalizing draft-ietf-oauth-jwt-introspection-response-01

2018-11-04 Thread Torsten Lodderstedt
Hi all, as mentioned during the presentation this morning, I would like to get a feeling what the working groups thinks about generalizing draft-ietf-oauth-jwt-introspection-response-01 to a mechanism supporting requesting and providing JWT responses from the different OAuth endpoints, such a