[OAUTH-WG] Indirect Access Grant Flow vs. User Agent Profile

Phil Hunt <phil.hunt@oracle.com> Wed, 06 October 2010 21:34 UTC

Return-Path: <phil.hunt@oracle.com>
X-Original-To: oauth@core3.amsl.com
Delivered-To: oauth@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 9105D3A71E2 for <oauth@core3.amsl.com>; Wed, 6 Oct 2010 14:34:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level:
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[AWL=0.000, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wsf2KHKVOr34 for <oauth@core3.amsl.com>; Wed, 6 Oct 2010 14:34:36 -0700 (PDT)
Received: from rcsinet10.oracle.com (rcsinet10.oracle.com [148.87.113.121]) by core3.amsl.com (Postfix) with ESMTP id 9B2F73A6EBF for <oauth@ietf.org>; Wed, 6 Oct 2010 14:34:36 -0700 (PDT)
Received: from acsinet15.oracle.com (acsinet15.oracle.com [141.146.126.227]) by rcsinet10.oracle.com (Switch-3.4.2/Switch-3.4.2) with ESMTP id o96LZZNs006364 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=OK) for <oauth@ietf.org>; Wed, 6 Oct 2010 21:35:36 GMT
Received: from acsmt353.oracle.com (acsmt353.oracle.com [141.146.40.153]) by acsinet15.oracle.com (Switch-3.4.2/Switch-3.4.1) with ESMTP id o96HoCnY029593 for <oauth@ietf.org>; Wed, 6 Oct 2010 21:35:35 GMT
Received: from abhmt010.oracle.com by acsmt355.oracle.com with ESMTP id 660624111286400850; Wed, 06 Oct 2010 14:34:10 -0700
Received: from [192.168.1.17] (/24.85.246.71) by default (Oracle Beehive Gateway v4.0) with ESMTP ; Wed, 06 Oct 2010 14:34:10 -0700
From: Phil Hunt <phil.hunt@oracle.com>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
Date: Wed, 06 Oct 2010 14:34:08 -0700
Message-Id: <3FE44C47-9D12-4F05-85F3-0FFAF53BCAEC@oracle.com>
To: oauth@ietf.org
Mime-Version: 1.0 (Apple Message framework v1081)
X-Mailer: Apple Mail (2.1081)
Subject: [OAUTH-WG] Indirect Access Grant Flow vs. User Agent Profile
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/oauth>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 06 Oct 2010 21:34:37 -0000

I'm just re-reading section one, and the overview in section 1.3 seems to have some inconsistencies/duplication with section 1.4 (profiles).

Specifically, on page 9 in draft 10, figure 3 shows an apparent profile. I assume this is just talking about a variation of the abstract profile. The paragraph before suggests this is the same "profile" as in section 1.4.2. Yet there are inconsistencies.

It is not clear to me what the text on page 9 is attempting to say that is different from section 1.4.2.  Or for that matter why figures 2 and 3 exist if there is another section on profiles.

Would it be better to cut out everything beyond the basic abstract profile description and leave out figures 2 and 3 in section 1.3.  Or do figures 2 and 3 need more text make clear distinct separate "flows" that are used by profiles in section 1.4?

Phil
phil.hunt@oracle.com