Re: [OAUTH-WG] draft-ietf-oauth-revocation

William Mills <wmills_92105@yahoo.com> Sun, 03 February 2013 15:25 UTC

Return-Path: <wmills_92105@yahoo.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EAF4A21F84E0 for <oauth@ietfa.amsl.com>; Sun, 3 Feb 2013 07:25:55 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.731
X-Spam-Level:
X-Spam-Status: No, score=-1.731 tagged_above=-999 required=5 tests=[AWL=0.867, BAYES_00=-2.599, HTML_MESSAGE=0.001]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mPaV++O8gaRt for <oauth@ietfa.amsl.com>; Sun, 3 Feb 2013 07:25:55 -0800 (PST)
Received: from nm22-vm0.bullet.mail.ne1.yahoo.com (nm22-vm0.bullet.mail.ne1.yahoo.com [98.138.91.60]) by ietfa.amsl.com (Postfix) with ESMTP id 3520021F84DA for <oauth@ietf.org>; Sun, 3 Feb 2013 07:25:55 -0800 (PST)
Received: from [98.138.90.48] by nm22.bullet.mail.ne1.yahoo.com with NNFMP; 03 Feb 2013 15:25:54 -0000
Received: from [98.138.89.197] by tm1.bullet.mail.ne1.yahoo.com with NNFMP; 03 Feb 2013 15:25:54 -0000
Received: from [127.0.0.1] by omp1055.mail.ne1.yahoo.com with NNFMP; 03 Feb 2013 15:25:54 -0000
X-Yahoo-Newman-Property: ymail-3
X-Yahoo-Newman-Id: 646410.39635.bm@omp1055.mail.ne1.yahoo.com
Received: (qmail 37050 invoked by uid 60001); 3 Feb 2013 15:25:54 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo.com; s=s1024; t=1359905154; bh=yaIUdR6s5bx7M6guYhoR1li1edgxycUnTzXANu5Qzlw=; h=X-YMail-OSG:Received:X-Rocket-MIMEInfo:X-Mailer:References:Message-ID:Date:From:Reply-To:Subject:To:In-Reply-To:MIME-Version:Content-Type; b=o6yVSsmfRUbgpibRnmlYF2mjrGpzVXAqe8f0Ise3giCo2onU4SPgp7RKJ5dGZ1ejsdiluX85Gd+0F/WZ/UnrNA1kMctRKYwieKXCyfmrjOni3ZBUGFEnkWRirjTMEc1O+h5DNedIOTnaZ3OqFjZLoHZv4T8PM52wa0ic3EprIFY=
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=s1024; d=yahoo.com; h=X-YMail-OSG:Received:X-Rocket-MIMEInfo:X-Mailer:References:Message-ID:Date:From:Reply-To:Subject:To:In-Reply-To:MIME-Version:Content-Type; b=v9irZv4OALYNo0e6b7RXBXulMVQsfXqjx97MG14nTP2zJHEg2yPwMduJV+oIMDHFLl29O9loFUwGKvPCxz1A8mHlne5OnBWrzAFdCW6OAliKqaLwcOD/FSd30rZ9btcVtuWSDRFcCp/56R8K7RfrBc+KUWGTp3HAEyNmhfLYHtg=;
X-YMail-OSG: l6rIua4VM1l6mOLObD2WDUj1UTf3bQjAbEAu6VEQXvSE2SS gmaYsI2wuosQSIDFbvLLyIMuck255hfOp6HWMxK7YETT942TO8tettfjQUav BtVNQsy6VtWK6ICSkFPybSKLMrfk729Wf8QF8a4zB5c_mxyoXjyL5R0GEzOs LuXrZm7pDPWXOMEMs2QWzVBvS1gA8Xfu0w.GofFEpQHbLBbDVqF2IjRI3u95 WY3EDBzzqqzq7NPj2hkA17rISEPlXXSJ4ud0QSV24euZvrSJ.O_Oipf1swsH ZOXXfmsCZqem2Ckuk3.Oxj7APBsz.Tu8VQ6bl._WmV1uaxTR2ff9M0bEQy_y LUhTTmp3DGDaFT.oBtsFVdwk89Yj_EB3DLZGSPcFcSIQ5D.IKu.W2nIPPv4j zEGWIX5eaUc6n8VXVhiO7bwhO46uRyeFibu_SiIGZ37v5Tq7LIM.0rr7AAgO C9hXFH0wxdXjipXLYmXDaNWKsrPiDBWEncCeLv1fNtvWMztPnZSS7C2lRWia oCLylPr1E62WvJ2.eC4o-
Received: from [99.31.212.42] by web31812.mail.mud.yahoo.com via HTTP; Sun, 03 Feb 2013 07:25:53 PST
X-Rocket-MIMEInfo: 001.001, V2h5IGRvIHdlIG5lZWQgaW52YWxpZF90b2tlbiBhcyBhbiBlcnJvciBjb2RlIGF0IGFsbD8gwqBUbyBtZSBpdCBvbmx5IGludHJvZHVjZXMgYSB3YXkgdG8gZ2V0IGluZm9ybWF0aW9uIGFib3V0IHRva2Vucy4gwqBJbnZhbGlkIHBhcmFtZXRlciBJIGNhbiBzZWUgYXMgYSB1c2UgY2FzZSwgYnV0IGlmIHRoZSB0b2tlbiBpcyBpbnZhbGlkIGp1c3QgcmV0dXJuIDIwMC9PSyBiZWNhdXNlIHRoZXJlIGlzIG5vdGhpbmcgdG8gZG8uCgotYmlsbAoKCl9fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fCiBGcm8BMAEBAQE-
X-Mailer: YahooMailWebService/0.8.132.503
References: <510E5FB5.10803@lodderstedt.net>
Message-ID: <1359905153.80009.YahooMailNeo@web31812.mail.mud.yahoo.com>
Date: Sun, 3 Feb 2013 07:25:53 -0800 (PST)
From: William Mills <wmills_92105@yahoo.com>
To: Torsten Lodderstedt <torsten@lodderstedt.net>, OAuth WG <oauth@ietf.org>
In-Reply-To: <510E5FB5.10803@lodderstedt.net>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="1458549034-1106129283-1359905153=:80009"
Subject: Re: [OAUTH-WG] draft-ietf-oauth-revocation
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
Reply-To: William Mills <wmills_92105@yahoo.com>
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/oauth>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 03 Feb 2013 15:25:56 -0000

Why do we need invalid_token as an error code at all?  To me it only introduces a way to get information about tokens.  Invalid parameter I can see as a use case, but if the token is invalid just return 200/OK because there is nothing to do.

-bill


________________________________
 From: Torsten Lodderstedt <torsten@lodderstedt.net>
To: OAuth WG <oauth@ietf.org> 
Sent: Sunday, February 3, 2013 5:01 AM
Subject: [OAUTH-WG] draft-ietf-oauth-revocation
 
Hi all,

before I publish a new revision of the draft, I would like to sort out the following issues and would like to ask you for your feedback.

- Authorization vs. access grant vs. authorization grant: I propose to use "authorization grant".
- invalid_token error code: I propose to use the new error code "invalid_parameter" (as suggested by Peter and George). I don't see the need to register it (see http://www.ietf.org/mail-archive/web/oauth/current/msg10604.html) but would like to get your advice.
- Donald F. Coffin raised the need for a token_type parameter to the revocation request. Shall we re-consider this topic?

best regards,
Torsten.
_______________________________________________
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth