Re: [OAUTH-WG] Protocol Action: 'OAuth 2.0 Token Revocation' to Proposed Standard (draft-ietf-oauth-revocation-11.txt)

Hannes Tschofenig <hannes.tschofenig@gmx.net> Mon, 22 July 2013 09:19 UTC

Return-Path: <hannes.tschofenig@gmx.net>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B826A21F8717 for <oauth@ietfa.amsl.com>; Mon, 22 Jul 2013 02:19:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.593
X-Spam-Level:
X-Spam-Status: No, score=-102.593 tagged_above=-999 required=5 tests=[AWL=0.006, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0Qf477KmXLnD for <oauth@ietfa.amsl.com>; Mon, 22 Jul 2013 02:19:33 -0700 (PDT)
Received: from mout.gmx.net (mout.gmx.net [212.227.17.22]) by ietfa.amsl.com (Postfix) with ESMTP id 4B84B21E8099 for <oauth@ietf.org>; Mon, 22 Jul 2013 02:11:31 -0700 (PDT)
Received: from [172.16.254.104] ([80.92.116.207]) by mail.gmx.com (mrgmx001) with ESMTPSA (Nemesis) id 0LqylH-1UX4CQ1MPr-00efc0 for <oauth@ietf.org>; Mon, 22 Jul 2013 11:03:21 +0200
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Apple Message framework v1085)
From: Hannes Tschofenig <hannes.tschofenig@gmx.net>
In-Reply-To: <20130720024322.16346.87648.idtracker@ietfa.amsl.com>
Date: Mon, 22 Jul 2013 11:03:20 +0200
Content-Transfer-Encoding: quoted-printable
Message-Id: <0695B0C0-3D95-4CBE-836C-2BCF4E560439@gmx.net>
References: <20130720024322.16346.87648.idtracker@ietfa.amsl.com>
To: oauth mailing list <oauth@ietf.org>
X-Pgp-Agent: GPGMail 1.4.1
X-Mailer: Apple Mail (2.1085)
X-Provags-ID: V03:K0:3E4oNjxwIN1TLZE7pDkh7X3kyJ0vnyI5ujfpaSZVRDiMchS5p1a t48PpAXinBT3hXq9IonZ+Hr7I4TXC+0eKeRO095n/gI9mUK/s9vp1yGpqH2TCwiL7yelhQp j8d71P8k5pu568+6IB4feSrK1TB/cxGAXiVNX2jsHM8UMx+hk854Zde7nL40Tx6lG8nJP10 0nTxDVZ+pyLt+woALpaMQ==
Subject: Re: [OAUTH-WG] Protocol Action: 'OAuth 2.0 Token Revocation' to Proposed Standard (draft-ietf-oauth-revocation-11.txt)
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/oauth>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 22 Jul 2013 09:19:41 -0000

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

A big "Thank you" goes to Torsten for working hard to get the document through the IETF process. 

On Jul 20, 2013, at 4:43 AM, The IESG wrote:

> The IESG has approved the following document:
> - 'OAuth 2.0 Token Revocation'
>  (draft-ietf-oauth-revocation-11.txt) as Proposed Standard
> 
> This document is the product of the Web Authorization Protocol Working
> Group.
> 
> The IESG contact persons are Stephen Farrell and Sean Turner.
> 
> A URL of this Internet Draft is:
> http://datatracker.ietf.org/doc/draft-ietf-oauth-revocation/
> 
> 
> 
> 
> Technical Summary
> 
>   The OAuth Token Revocation specification proposes an additional 
>   endpoint for OAuth authorization servers, which allows clients to 
>   notify the authorization server that a previously obtained refresh 
>   or access token is no longer needed. This allows the authorization 
>   server to cleanup security credentials. A revocation request will 
>   invalidate the actual token and, if applicable, other tokens based 
>   on the same authorization grant.
> 
> Working Group Summary
> 
>   The document experienced no particular problems in the working 
>   group. 
> 
> Document Quality
> 
>   The document has been deployed by four companies, namely 
>   by Salesforce, Google, Deutsche Telekom, and MITRE. The 
>   working group reviewed and discussed the document extensively. 
> 
>   There was a comment from the appsdir review that was not
>   accepted. The reviewer (mnot) suggested a discovery 
>   mechanism was needed, but the wg are working on 
>   generic oauth discovery and not just for revocation and
>   so decided not to make that change.
> 
> Personnel
> 
>   Hannes Tschofenig is the document shepherd. 
>   The responsible area director is Stephen Farrell. 
> 
> _______________________________________________
> OAuth mailing list
> OAuth@ietf.org
> https://www.ietf.org/mailman/listinfo/oauth

-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.19 (Darwin)
Comment: GPGTools - http://gpgtools.org

iQEcBAEBCgAGBQJR7PVYAAoJEGhJURNOOiAtdHYIAJJhjU7za0KNyzSNOcI9UO15
chXuB3M+KFetMtrviZO4WcIRwN63gpVu9naUnxwZjcfN1aVjCWwwyUOMe+IsA13F
vJQPk8yKFwJGkE6Jas3OLD4ZLFgtUBJmbX+e1MYjGnh/ROrzyeZ3PrQ5yZuBJZjs
78vmwheim6SgMgZ0B6yk9bvPfmRMsxzztmeMuDrDVdIIQGjfBPUJwM9uYFZFLyUL
65FJc8vJVeyxGetNMrfu15E2WiyCu5KaFVy2e7VOLYf2FdAGe24N7wyEp6y4JORk
FOXLMMnDt5U41vfyFhf3ZU7qjh/7P/6c5ey71XeRRBvJBnuIMms6G4izugIC98M=
=lEWn
-----END PGP SIGNATURE-----