[OAUTH-WG] Draft -02 submitted

Eran Hammer-Lahav <eran@hueniverse.com> Thu, 06 May 2010 19:58 UTC

Return-Path: <eran@hueniverse.com>
X-Original-To: oauth@core3.amsl.com
Delivered-To: oauth@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id D8C263A6A40 for <oauth@core3.amsl.com>; Thu, 6 May 2010 12:58:14 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.211
X-Spam-Level:
X-Spam-Status: No, score=-1.211 tagged_above=-999 required=5 tests=[AWL=-1.212, BAYES_50=0.001]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JlxSWhD6lDbZ for <oauth@core3.amsl.com>; Thu, 6 May 2010 12:58:14 -0700 (PDT)
Received: from p3plex1out02.prod.phx3.secureserver.net (p3plex1out02.prod.phx3.secureserver.net [72.167.180.18]) by core3.amsl.com (Postfix) with SMTP id A23B53A6966 for <oauth@ietf.org>; Thu, 6 May 2010 12:58:13 -0700 (PDT)
Received: (qmail 24418 invoked from network); 6 May 2010 19:57:51 -0000
Received: from unknown (HELO smtp.ex1.secureserver.net) (72.167.180.19) by p3plex1out02.prod.phx3.secureserver.net with SMTP; 6 May 2010 19:57:51 -0000
Received: from P3PW5EX1MB01.EX1.SECURESERVER.NET ([10.6.135.20]) by P3PW5EX1HT001.EX1.SECURESERVER.NET ([72.167.180.19]) with mapi; Thu, 6 May 2010 12:57:47 -0700
From: Eran Hammer-Lahav <eran@hueniverse.com>
To: "OAuth WG (oauth@ietf.org)" <oauth@ietf.org>
Date: Thu, 06 May 2010 12:58:02 -0700
Thread-Topic: Draft -02 submitted
Thread-Index: AcrtVm8dDss0q/URRkesVLZx9ubDEg==
Message-ID: <90C41DD21FB7C64BB94121FBBC2E723439323D1277@P3PW5EX1MB01.EX1.SECURESERVER.NET>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Subject: [OAUTH-WG] Draft -02 submitted
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/oauth>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 06 May 2010 19:58:14 -0000

The new draft should show up shortly. The changes are:

- Scope parameter (space-delimited for now)
- JSON response format for tokens
- Removed URI query restriction on redirection URI when using 'state'

I am thinking of moving all the flows up section up (no more splitting them into three categories in the sections). This will make the document less nested, but also will solve the issue of the assertion flow not always being an autonomous flow, etc. Let me know if you have strong objections as I am likely to submit a -03 tomorrow with just that change (to make diffs easier limit major format changes to their own drafts).

EHL