Re: [oauth-ext-review] Request to register OAuth Authorization Server Metadata: claims_interaction_endpoint, uma_profiles_supported, permission_endpoint, resource_registration_endpoint

Mike Jones <Michael.Jones@microsoft.com> Wed, 28 June 2017 22:25 UTC

Return-Path: <Michael.Jones@microsoft.com>
X-Original-To: oauth-ext-review@ietfa.amsl.com
Delivered-To: oauth-ext-review@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D4E7B12EC86 for <oauth-ext-review@ietfa.amsl.com>; Wed, 28 Jun 2017 15:25:45 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.02
X-Spam-Level:
X-Spam-Status: No, score=-2.02 tagged_above=-999 required=5 tests=[AC_DIV_BONANZA=0.001, BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QuYlvLrdtL7X for <oauth-ext-review@ietfa.amsl.com>; Wed, 28 Jun 2017 15:25:35 -0700 (PDT)
Received: from NAM02-CY1-obe.outbound.protection.outlook.com (mail-cys01nam02on0122.outbound.protection.outlook.com [104.47.37.122]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0C0AA12EC7E for <oauth-ext-review@ietf.org>; Wed, 28 Jun 2017 15:25:34 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=FN+iTiyEHKQFTN3FiRbY+LmVPtgubLUDLKD+GXyzNKs=; b=I/atwnC/Cf6npFXKfDdKda2CJUaJH4N5vy4rXRXOleJQzkZPTuud7G5dG8W8uJIBo1R0x2mhCl3zjoAKClUFB9wrptvauUFc+c/hgm4c4p5qnp4PVYU89sCQtnqEOrbPzJ51e2Vjc7bqUlknTGl4EA2E7OW5+ZdwxmYbPjlCes4=
Received: from CY4PR21MB0504.namprd21.prod.outlook.com (10.172.122.14) by CY4PR21MB0167.namprd21.prod.outlook.com (10.173.192.149) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1240.1; Wed, 28 Jun 2017 22:25:33 +0000
Received: from CY4PR21MB0504.namprd21.prod.outlook.com ([10.172.122.14]) by CY4PR21MB0504.namprd21.prod.outlook.com ([10.172.122.14]) with mapi id 15.01.1240.001; Wed, 28 Jun 2017 22:25:33 +0000
From: Mike Jones <Michael.Jones@microsoft.com>
To: Eve Maler <eve.maler@forgerock.com>, "oauth-ext-review@ietf.org" <oauth-ext-review@ietf.org>
CC: Maciej Machulak <maciej.machulak@gmail.com>, Justin Richer <justin@bspk.io>
Thread-Topic: [oauth-ext-review] Request to register OAuth Authorization Server Metadata: claims_interaction_endpoint, uma_profiles_supported, permission_endpoint, resource_registration_endpoint
Thread-Index: AQHS5wboo3cbnQivBkmcdJFKRsk00KI66kqg
Date: Wed, 28 Jun 2017 22:25:33 +0000
Message-ID: <CY4PR21MB0504106E9DA09715B4400652F5DD0@CY4PR21MB0504.namprd21.prod.outlook.com>
References: <CAMPbGmguVObYrbV5urxQV=tVFg1srfo3G8m1sQqDF1r+1XXuUg@mail.gmail.com>
In-Reply-To: <CAMPbGmguVObYrbV5urxQV=tVFg1srfo3G8m1sQqDF1r+1XXuUg@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=True; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Ref=https://api.informationprotection.azure.com/api/72f988bf-86f1-41af-91ab-2d7cd011db47; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Owner=mbj@microsoft.com; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2017-06-28T15:25:31.3808227-07:00; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=General; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Application=Microsoft Azure Information Protection; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Extended_MSFT_Method=Automatic; Sensitivity=General
authentication-results: forgerock.com; dkim=none (message not signed) header.d=none;forgerock.com; dmarc=none action=none header.from=microsoft.com;
x-originating-ip: [2001:4898:80e8:4::36]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; CY4PR21MB0167; 7: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
x-ms-office365-filtering-correlation-id: 9a2bb032-62de-423b-bbdc-08d4be749774
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(300000500095)(300135000095)(300000501095)(300135300095)(22001)(300000502095)(300135100095)(2017030254075)(300000503095)(300135400095)(48565401081)(2017052603015)(201703131423075)(201703031133081)(201702281549075)(300000504095)(300135200095)(300000505095)(300135600095)(300000506095)(300135500095); SRVR:CY4PR21MB0167;
x-ms-traffictypediagnostic: CY4PR21MB0167:
x-microsoft-antispam-prvs: <CY4PR21MB01679DE67CE23EE5EA23D53FF5DD0@CY4PR21MB0167.namprd21.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(151999592597050)(158342451672863)(148322886591682)(26388249023172)(236129657087228)(48057245064654)(148574349560750)(21748063052155)(209349559609743)(92093043455673);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(100000700101)(100105000095)(100000701101)(100105300095)(100000702101)(100105100095)(61425038)(6040450)(601004)(2401047)(2017060910014)(5005006)(8121501046)(93006095)(93001095)(10201501046)(100000703101)(100105400095)(3002001)(6055026)(61426038)(61427038)(6041248)(20161123564025)(20161123562025)(20161123555025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123558100)(20161123560025)(6072148)(100000704101)(100105200095)(100000705101)(100105500095); SRVR:CY4PR21MB0167; BCL:0; PCL:0; RULEID:(100000800101)(100110000095)(100000801101)(100110300095)(100000802101)(100110100095)(100000803101)(100110400095)(100000804101)(100110200095)(100000805101)(100110500095); SRVR:CY4PR21MB0167;
x-forefront-prvs: 03524FBD26
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(39400400002)(39410400002)(39850400002)(39840400002)(39860400002)(39450400003)(377454003)(7736002)(50986999)(5660300001)(76176999)(54356999)(2950100002)(25786009)(230783001)(7696004)(2900100001)(74316002)(606006)(10290500003)(33656002)(8990500004)(86612001)(53546010)(86362001)(2906002)(5005710100001)(9686003)(54896002)(236005)(6306002)(55016002)(99286003)(54906002)(478600001)(8936002)(72206003)(53936002)(189998001)(2501003)(81166006)(77096006)(14454004)(6436002)(8676002)(229853002)(6506006)(19609705001)(102836003)(790700001)(6116002)(39060400002)(10090500001)(3280700002)(3660700001)(4326008)(38730400002)(6246003); DIR:OUT; SFP:1102; SCL:1; SRVR:CY4PR21MB0167; H:CY4PR21MB0504.namprd21.prod.outlook.com; FPR:; SPF:None; MLV:ovrnspm; PTR:InfoNoRecords; LANG:en;
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_CY4PR21MB0504106E9DA09715B4400652F5DD0CY4PR21MB0504namp_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 28 Jun 2017 22:25:33.1169 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CY4PR21MB0167
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth-ext-review/j293uoCTKaFBd3_I4SP6JvtKYwo>
Subject: Re: [oauth-ext-review] Request to register OAuth Authorization Server Metadata: claims_interaction_endpoint, uma_profiles_supported, permission_endpoint, resource_registration_endpoint
X-BeenThere: oauth-ext-review@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Review of proposed IANA registrations for OAuth." <oauth-ext-review.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth-ext-review>, <mailto:oauth-ext-review-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth-ext-review/>
List-Post: <mailto:oauth-ext-review@ietf.org>
List-Help: <mailto:oauth-ext-review-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth-ext-review>, <mailto:oauth-ext-review-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 28 Jun 2017 22:25:46 -0000

As I mentioned to you in person, Eve, this registry won’t exist until draft-ietf-oauth-discovery is an RFC.  Hopefully this will happen within a few months, at which point, your registration request can be considered.

                                                                Best wishes,
                                                                -- Mike

From: oauth-ext-review [mailto:oauth-ext-review-bounces@ietf.org] On Behalf Of Eve Maler
Sent: Friday, June 16, 2017 5:41 PM
To: oauth-ext-review@ietf.org
Cc: Maciej Machulak <maciej.machulak@gmail.com>; Justin Richer <justin@bspk.io>
Subject: [oauth-ext-review] Request to register OAuth Authorization Server Metadata: claims_interaction_endpoint, uma_profiles_supported, permission_endpoint, resource_registration_endpoint

As required by draft-ietf-oauth-discovery (currently at 06) Section 7, the authors of the specifications User-Managed Access (UMA) 2.0 Grant for OAuth 2.0 Authorization<https://docs.kantarainitiative.org/uma/wg/oauth-uma-grant-2.0-05.html> and Federated Authorization for User-Managed Access (UMA) 2.0<https://docs.kantarainitiative.org/uma/wg/oauth-uma-federated-authz-2.0-05.html> are requesting to register the following four items of OAuth Authorization Server Metadata:

  *   For the UMA Grant spec (metadata definitions appear in Section 2<https://docs.kantarainitiative.org/uma/wg/oauth-uma-grant-2.0-05.html#as-config>; IANA request appears in Section 7.2<https://docs.kantarainitiative.org/uma/wg/oauth-uma-grant-2.0-05.html#rfc.section.7.2>):

     *   claims_interaction_endpoint
     *   uma_profiles_supported

  *   For the UMA Federated Authorization spec (metadata definitions appear in Section 2<https://docs.kantarainitiative.org/uma/wg/oauth-uma-federated-authz-2.0-05.html#as-config>; IANA request appears in Section 9.1<https://docs.kantarainitiative.org/uma/wg/oauth-uma-federated-authz-2.0-05.html#rfc.section.9.1>):

     *   permission_endpoint
     *   resource_registration_endpoint
Thank you. We look forward to your response.

Eve Maler
ForgeRock Office of the CTO | VP Innovation & Emerging Technology
Cell +1 425.345.6756 | Skype: xmlgrrl | Twitter: @xmlgrrl