Re: [OAUTH-WG] draft-parecki-oauth-browser-based-apps-00

2018-12-02 Thread Rob Otto
> OAuth mailing listOAuth@ietf.orghttps://www.ietf.org/mailman/listinfo/oauth > > ___ > OAuth mailing list > OAuth@ietf.org > https://www.ietf.org/mailman/listinfo/oauth > > ___ > OAu

Re: [OAUTH-WG] draft-bertocci-oauth-access-token-jwt-00

2019-03-26 Thread Rob Otto
t;>>- The presentation was followed up by 1.5 hours of unconference >>>>>discussion, which was incredibly valuable to get tight-loop feedback >>>>> and >>>>>incorporate new ideas. John Bradley, Brian Campbell Vladimir Dzhuvinov, >

Re: [OAUTH-WG] MTLS and Native apps Best practices

2019-05-03 Thread Rob Otto
___ > OAuth mailing list > OAuth@ietf.org > https://www.ietf.org/mailman/listinfo/oauth > > ___ > OAuth mailing list > OAuth@ietf.org > https://www.ietf.org/mailman/listinfo/oauth > -- <https://www.ping

Re: [OAUTH-WG] Question regarding RFC 8628

2019-11-18 Thread Rob Otto
dissemination or disclosure, either whole or partial, is prohibited. > Since the internet cannot guarantee the integrity of this message which > may not be reliable, STET shall not be liable for the message if modified, > changed or falsified. > Do not print this message unless it is necessary, please

Re: [OAUTH-WG] review draft-ietf-oauth-security-topics-13 [3/3]

2019-11-19 Thread Rob Otto
> "Token binding is >> > promising as a secure and convenient mechanism (due to its browser >> > integration). As a challenge, it requires broad browser support >> > and use with native apps is still under discussion.” >> > >> &

Re: [OAUTH-WG] New Version Notification for draft-fett-oauth-dpop-03.txt

2019-11-21 Thread Rob Otto
t > OAuth@ietf.org > https://www.ietf.org/mailman/listinfo/oauth > > > ___ > OAuth mailing list > OAuth@ietf.org > https://www.ietf.org/mailman/listinfo/oauth > -- <https://www.pingidentity.com>[image: Ping Identity] &

Re: [OAUTH-WG] New Version Notification for draft-fett-oauth-dpop-03.txt

2019-11-22 Thread Rob Otto
Hi Torsten - thanks for the reply. Responses in line. Grüsse Rob On Fri, 22 Nov 2019 at 07:59, Torsten Lodderstedt wrote: > Hi Rob, > > > On 22. Nov 2019, at 15:52, Rob Otto 40pingidentity@dmarc.ietf.org> wrote: > > > > Hi everyone > > > > I'

Re: [OAUTH-WG] Meeting Minutes

2019-12-16 Thread Rob Otto
t; If you have received this communication in error, please notify the sender > immediately by e-mail and delete the message and any file attachments from > your computer. Thank you.*___ > OAuth mailing list > OAuth@ietf.org > https://www.ietf.org/mailman/l

Re: [OAUTH-WG] Call for Adoption: OAuth 2.0 Rich Authorization Requests

2020-01-06 Thread Rob Otto
his >>> document as a working group document by Jan 20th. >>> >>> >>> >>> Regards, >>> >>> Rifaat & Hannes >>> >>> >>> >>> >>> >>> _______ >>> >>> OAuth mailing l

Re: [OAUTH-WG] Call for Adoption: DPoP

2020-03-17 Thread Rob Otto
I support adoption Thank you Rob Otto On Tue, 17 Mar 2020 at 12:21, Rifaat Shekh-Yusef wrote: > All, > > As per the conclusion of the PoP interim meeting, this is a call for > adoption for the *OAuth 2.0 Demonstration of Proof-of-Possession at the > Application Layer (DPoP)* do

Re: [OAUTH-WG] JWT Secured Authorization Request (JAR) vs OIDC request object

2020-03-17 Thread Rob Otto
OAuth mailing list >> > > OAuth@ietf.org >> > > https://www.ietf.org/mailman/listinfo/oauth >> <https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww..ietf.org%2Fmailman%2Flistinfo%2Foauth&data=02%7C01%7CMichael.Jones%40microsoft.com%7C35a13327b6124e2

Re: [OAUTH-WG] Direct Grant missing in draft-parecki-oauth-v2-1

2020-04-09 Thread Rob Otto
_ > OAuth mailing list > OAuth@ietf.org > https://www.ietf.org/mailman/listinfo/oauth > -- <https://www.pingidentity.com>[image: Ping Identity] <https://www.pingidentity.com> Rob Otto EMEA Field CTO/Solutions Architect roberto...@pingidentity.com c: +44 (0) 7

Re: [OAUTH-WG] Followup on draft-ietf-oauth-token-exchange-12.txt

2018-05-17 Thread Rob Otto
t;> > >> > >> CONFIDENTIALITY NOTICE: This email may contain confidential and > privileged > >> material for the sole use of the intended recipient(s). Any review, use, > >> distribution or disclosure by others is strictly prohibited.. If you > have > &

Re: [OAUTH-WG] Call for adoption of "JWT Response for OAuth Token Introspection"

2018-07-20 Thread Rob Otto
> *CONFIDENTIALITY NOTICE: This email may contain confidential and > privileged material for the sole use of the intended recipient(s). Any > review, use, distribution or disclosure by others is strictly prohibited... > If you have received this communication in error, please notify