Re: [OAUTH-WG] Meeting Minutes

Steinar Noem <steinar@udelt.no> Tue, 17 December 2019 07:53 UTC

Return-Path: <steinar@udelt.no>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 06303120970 for <oauth@ietfa.amsl.com>; Mon, 16 Dec 2019 23:53:35 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.896
X-Spam-Level:
X-Spam-Status: No, score=-1.896 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=udelt-no.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xQOUQSuWZ8Tq for <oauth@ietfa.amsl.com>; Mon, 16 Dec 2019 23:53:33 -0800 (PST)
Received: from mail-ot1-x330.google.com (mail-ot1-x330.google.com [IPv6:2607:f8b0:4864:20::330]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CBF0912097D for <oauth@ietf.org>; Mon, 16 Dec 2019 23:53:32 -0800 (PST)
Received: by mail-ot1-x330.google.com with SMTP id h20so12665253otn.5 for <oauth@ietf.org>; Mon, 16 Dec 2019 23:53:32 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=udelt-no.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=kBNvrtFEQnk02V6Xc4ocRcN8Yn4MUUfyNhwUrcgGc2w=; b=HpkckcKzhrS9rmvXsciejtdOuHHvqGF2eFIeTH87OJIxoNlCxYsDmlNC+yIZ+tdaVQ RktmQO8rYbaTejHQh1rfMvZHN3xvNiPxZ40LIE3pbeWKCPi8NdB6cRr46zQJtHN3uXcI +aZQ+wkI8jxNzCpyMwZC3SDDX3rCig1m369ftW6LbHqQNtgSQs2PJl6no6yDzegOC6bg w4rDdILFDib1qM7sErgwlVxsAye84SueCzfxHMMzeUmRjqqSMBAvDVv5iiq8gyEzZxbP z/Mo4bHHxgopQMmG88MXIIKY9SV68e1k1hEnGAflYXsE86q3Ixso2TNAoBysYhUN3JM2 KHKw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=kBNvrtFEQnk02V6Xc4ocRcN8Yn4MUUfyNhwUrcgGc2w=; b=JJBNNyra7XgU6zB/Tmq4q7kwvswq1Z4mZAMC3z/+qSLAcsBD35Nc5ZV1SkRTX7cMCS KLjIeByRaudUwxSAmz5M52UuLgq4j3e1m54cAKHII39krDPDqd8g5ylSyYxZlNlbHDv6 7OV/YMlys4RYk2sdZS2vUl5+VYdXZmn5bBM3+1cKOoOGCMWB7bpHrPyiaVzhqhdC+9NC QUEZYHry9U2qxejAFmVe9CA3METYwxgbJnJriOXuO0cABfNobPWhXfPGznka+n8heoqq euaHuP/DsSMlQsE6X2ncTUbkYcBg0gbyLwMtDymQsBsE4AzYatyzOsj/NL0XYyEHGEAV 8YpA==
X-Gm-Message-State: APjAAAUCp/ByJURNOpI+wpBCj/bKKQAmCVN0MZ9NPuEpebdT50KldKeu qIzHaFK3P2v9iGCOaM5n6NvfVA5Snj6RB4/a4phuBQ==
X-Google-Smtp-Source: APXvYqxLz4fOcywagf13cSrzbHeH9NhAwl5AY+QZwiufu8AcsRSd+wUjq4A8iJdb98WiVo58VXrwYIGMYLaOjQ2vK5c=
X-Received: by 2002:a9d:7394:: with SMTP id j20mr36908150otk.273.1576569211379; Mon, 16 Dec 2019 23:53:31 -0800 (PST)
MIME-Version: 1.0
References: <VI1PR08MB53603D167B53065E04A6C621FA420@VI1PR08MB5360.eurprd08.prod.outlook.com> <CA+k3eCSLmj6M=qeDJPTEDBpD5T5rC55wqGiTeuB7u8KzMsJZ-g@mail.gmail.com> <4FD03604-C0A3-4A0A-9598-8ECD8137581F@mit.edu> <B0F399FA-250A-4648-B347-40E07DBBC95F@amazon.com> <CABh6VRH9uCiRBEhnTbm30W6N4NdCZmmJ1e2QJuOoe-ZGyOGiHg@mail.gmail.com> <CAO7Ng+vsJGuv8t4Zj4ME88xGr=yBgCu5VQvbAZRjAbzvgSDiQw@mail.gmail.com>
In-Reply-To: <CAO7Ng+vsJGuv8t4Zj4ME88xGr=yBgCu5VQvbAZRjAbzvgSDiQw@mail.gmail.com>
From: Steinar Noem <steinar@udelt.no>
Date: Tue, 17 Dec 2019 08:53:20 +0100
Message-ID: <CAHsNOKdx3t3Tb8xsSftUscv7__qwvopfAQ4TwDSH1U=Q7d8ZRw@mail.gmail.com>
To: Dominick Baier <dbaier@leastprivilege.com>
Cc: Rob Otto <robotto=40pingidentity.com@dmarc.ietf.org>, "Richard Backman, Annabelle" <richanna=40amazon.com@dmarc.ietf.org>, Brian Campbell <bcampbell=40pingidentity.com@dmarc.ietf.org>, "oauth@ietf.org" <oauth@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000cef4e00599e19f6f"
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/QPzB8htB0WXjEkv4NQRVtqf1qnU>
Subject: Re: [OAUTH-WG] Meeting Minutes
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth/>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 17 Dec 2019 07:53:35 -0000

I'd also like to see adoption for both PAR and RAR. We will actually start
to use the "authorization_details" parameter early next year.

tir. 17. des. 2019 kl. 08:43 skrev Dominick Baier <dbaier@leastprivilege.com
>:

> I’d support adoption of both PAR and RAR.
>
> ———
> Dominick Baier
>
> On 16. December 2019 at 23:02:58, Rob Otto (
> robotto=40pingidentity.com@dmarc.ietf.org) wrote:
>
> I’d support adoption of both PAR and RAR.
>
> On Mon, 16 Dec 2019 at 21:57, Richard Backman, Annabelle <richanna=
> 40amazon.com@dmarc.ietf.org> wrote:
>
>> +1 for a call for adoption on PAR.
>>
>>
>>
>> I’d also like to see one for RAR; while there are questions that need to
>> be resolved, there seems to be strong interest in this work and adoption
>> means we can have those discussions within the WG where they belong.
>>
>>
>>
>> –
>>
>> Annabelle Richard Backman
>>
>> AWS Identity
>>
>>
>>
>>
>>
>> *From:* OAuth <oauth-bounces@ietf.org> on behalf of Justin Richer <
>> jricher@mit.edu>
>> *Date:* Monday, December 16, 2019 at 12:36 PM
>> *To:* Brian Campbell <bcampbell=40pingidentity.com@dmarc.ietf.org>
>> *Cc:* "oauth@ietf.org" <oauth@ietf.org>
>> *Subject:* Re: [OAUTH-WG] Meeting Minutes
>>
>>
>>
>> +1 to this. My take away was that PAR was pretty clear for adoption right
>> now, RAR had interest but more question/debate.
>>
>>
>>
>> FWIW I’m in favor of both of them.
>>
>>
>>
>>  — Justin
>>
>>
>>
>> On Dec 16, 2019, at 11:26 AM, Brian Campbell <
>> bcampbell=40pingidentity.com@dmarc.ietf.org> wrote:
>>
>>
>>
>> With respect to the Pushed Authorization Requests (PAR) draft the minutes
>> do capture an individual comment that it's a "no brainer to adopt this
>> work" but as I recall there was also a hum to gauge the room's interest in
>> adoption, which was largely in favor of such. Of course, one hum in
>> Singapore isn't the final word but, following from that, I was
>> hoping/expecting to see a call for adoption go out to the mailing list?
>>
>>
>>
>> On Tue, Dec 3, 2019 at 1:26 AM Hannes Tschofenig <
>> Hannes.Tschofenig@arm.com> wrote:
>>
>> Here are the meeting minutes from the Singapore IETF meeting:
>>
>> https://datatracker.ietf.org/meeting/106/materials/minutes-106-oauth-03
>>
>>
>>
>> Tony was our scribe. Thanks!
>>
>>
>>
>>
>>
>> IMPORTANT NOTICE: The contents of this email and any attachments are
>> confidential and may also be privileged. If you are not the intended
>> recipient, please notify the sender immediately and do not disclose the
>> contents to any other person, use it for any purpose, or store or copy the
>> information in any medium. Thank you.
>>
>> _______________________________________________
>> OAuth mailing list
>> OAuth@ietf.org
>> https://www.ietf.org/mailman/listinfo/oauth
>>
>>
>> * CONFIDENTIALITY NOTICE: This email may contain confidential and
>> privileged material for the sole use of the intended recipient(s). Any
>> review, use, distribution or disclosure by others is strictly prohibited..
>> If you have received this communication in error, please notify the sender
>> immediately by e-mail and delete the message and any file attachments from
>> your computer. Thank you.*_______________________________________________
>> OAuth mailing list
>> OAuth@ietf.org
>> https://www.ietf.org/mailman/listinfo/oauth
>>
>>
>> _______________________________________________
>> OAuth mailing list
>> OAuth@ietf.org
>> https://www.ietf.org/mailman/listinfo/oauth
>>
> --
> Rob Otto
> EMEA Field CTO - Ping Identity
> +44 777 135 6092
>
> * CONFIDENTIALITY NOTICE: This email may contain confidential and
> privileged material for the sole use of the intended recipient(s). Any
> review, use, distribution or disclosure by others is strictly prohibited..
> If you have received this communication in error, please notify the sender
> immediately by e-mail and delete the message and any file attachments from
> your computer. Thank you.*
> _______________________________________________
> OAuth mailing list
> OAuth@ietf.org
> https://www.ietf.org/mailman/listinfo/oauth
>
> _______________________________________________
> OAuth mailing list
> OAuth@ietf.org
> https://www.ietf.org/mailman/listinfo/oauth
>


-- 
Vennlig hilsen

Steinar Noem
Partner Udelt AS
Systemutvikler

| steinar@udelt.no | hei@udelt.no  | +47 955 21 620 | www.udelt.no |