Return-Path: <torsten@lodderstedt.net>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix)
 with ESMTP id BC8DB11E80C7 for <oauth@ietfa.amsl.com>;
 Fri,  1 Jul 2011 18:35:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.148
X-Spam-Level: 
X-Spam-Status: No, score=-2.148 tagged_above=-999 required=5 tests=[AWL=0.100,
 BAYES_00=-2.599, HELO_EQ_DE=0.35, HTML_MESSAGE=0.001]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com
 [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FocdnLdABaZf for
 <oauth@ietfa.amsl.com>; Fri,  1 Jul 2011 18:35:05 -0700 (PDT)
Received: from smtprelay02.ispgateway.de (smtprelay02.ispgateway.de
 [80.67.18.14]) by ietfa.amsl.com (Postfix) with ESMTP id DB1E811E8099 for
 <oauth@ietf.org>; Fri,  1 Jul 2011 18:35:04 -0700 (PDT)
Received: from [79.253.51.135] (helo=[192.168.71.31]) by
 smtprelay02.ispgateway.de with esmtpsa (TLSv1:RC4-MD5:128) (Exim 4.68)
 (envelope-from <torsten@lodderstedt.net>) id 1Qcp6o-0004pD-SE;
 Sat, 02 Jul 2011 03:34:58 +0200
References: <4E0E39EA.7040809@lodderstedt.net>
 <4E0E41C9.3090608@alcatel-lucent.com>
User-Agent: K-9 Mail for Android
In-Reply-To: <4E0E41C9.3090608@alcatel-lucent.com>
MIME-Version: 1.0
Content-Type: multipart/alternative;
 boundary="----RU4KKPIDFKWNKXQFH47HIICXSD3MJ6"
From: Torsten Lodderstedt <torsten@lodderstedt.net>
Date: Sat, 02 Jul 2011 03:34:54 +0200
To: igor.faynberg@alcatel-lucent.com,oauth@ietf.org
Message-ID: <86a5198d-702c-4850-832b-f6c317bbf6de@email.android.com>
X-Df-Sender: torsten@lodderstedt-online.de
Subject: Re: [OAUTH-WG] Deutsche Telekom launched OAuth 2.0 support
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>,
 <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/oauth>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>,
 <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 02 Jul 2011 01:35:05 -0000

------RU4KKPIDFKWNKXQFH47HIICXSD3MJ6
Content-Type: text/plain;
 charset=UTF-8
Content-Transfer-Encoding: 8bit

Hi Igor,

if this information is of broader interest - why not. Let's talk about this in Quebec.

regards,
Torsten.



Igor Faynberg <igor.faynberg@alcatel-lucent.com> schrieb:

Torsten,

With many thanks for the note, I think it would be great if you 
documented the implementation report in an Informational RFC. In 
particular, the SIM-based authentication part is of particular interest 
here--we had this discussion on this list recently-- as it naturally 
extends the use of the Internet protocols in the telecom environment.

I also think that such an implementation report would influence 
positively the OAuth profiling work that is taking place in ITU-T, OMA 
and other places.

Igor

On 7/1/2011 5:19 PM, Torsten Lodderstedt wrote:
> Hi all,
>
> I would like to announce that we recently launched OAuth 2.0 support 
> in our Security Token Service. It will be used in upcoming consumer 
> products (e.g. Smartphone apps).
>
> The current implementation supports draft 10 (but is also inline with 
> the latest text on native apps). It has the following additional 
> features:
> - Issuance of multiple tokens for different services in single 
> authorization process (Bulk User Authorization)
> - Token revocation 
> (http://datatracker.ietf.org/doc/draft-lodderstedt-oauth-revocation/)
> - custom grant types for token exchange and SIM card authentication
> - Token replacement
> - Parameter to explicitely request refresh token for "Resource Owner 
> Password Credentials" grant type
>
> regards,
> Torsten.
>_____________________________________________

> OAuth mailing list
> OAuth@ietf.org
> https://www.ietf.org/mailman/listinfo/oauth
_____________________________________________

OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth


------RU4KKPIDFKWNKXQFH47HIICXSD3MJ6
Content-Type: text/html;
 charset=utf-8
Content-Transfer-Encoding: 8bit

<html><head></head><body>Hi Igor,<br>
<br>
if this information is of broader interest - why not. Let&#39;s talk about this in Quebec.<br>
<br>
regards,<br>
Torsten.<br><br><div class="gmail_quote"><br>
<br>
Igor Faynberg &lt;igor.faynberg@alcatel-lucent.com&gt; schrieb:<blockquote class="gmail_quote" style="margin: 0pt 0pt 0pt 0.8ex; border-left: 1px solid rgb(204, 204, 204); padding-left: 1ex;">
<pre style="white-space: pre-wrap; word-wrap:break-word; font-family: sans-serif">Torsten,<br /><br />With many thanks for the note, I think it would be great if you <br />documented the implementation report in an Informational RFC.  In <br />particular, the SIM-based authentication part is of particular interest <br />here--we had this discussion on this list recently-- as it naturally <br />extends the use of the Internet protocols in the telecom environment.<br /><br />I also think that such an implementation report would influence <br />positively  the OAuth profiling work that is taking  place in ITU-T, OMA <br />and other places.<br /><br />Igor<br /><br />On 7/1/2011 5:19 PM, Torsten Lodderstedt wrote:<br />&gt; Hi all,<br />&gt;<br />&gt; I would like to announce that we recently launched OAuth 2.0 support <br />&gt; in our Security Token Service. It will be used in upcoming consumer <br />&gt; products (e.g. Smartphone apps).<br />&gt;<br />&gt; The current implemen
 tation
supports draft 10 (but is also inline with <br />&gt; the latest text on native apps). It has the following additional <br />&gt; features:<br />&gt; - Issuance of multiple tokens for different services in single <br />&gt; authorization process (Bulk User Authorization)<br />&gt; - Token revocation <br />&gt; (<a href="http://datatracker.ietf.org/doc/draft-lodderstedt-oauth-revocation">http://datatracker.ietf.org/doc/draft-lodderstedt-oauth-revocation</a>/)<br />&gt; - custom grant types for token exchange and SIM card authentication<br />&gt; - Token replacement<br />&gt; - Parameter to explicitely request refresh token for "Resource Owner <br />&gt; Password Credentials" grant type<br />&gt;<br />&gt; regards,<br />&gt; Torsten.<br />&gt;<hr /><br />&gt; OAuth mailing list<br />&gt; OAuth@ietf.org<br />&gt; <a href="https://www.ietf.org/mailman/listinfo/oauth">https://www.ietf.org/mailman/listinfo/oauth</a><br /><hr /><br />OAuth mailing list<br />OAuth@ietf.org<br /><a
href="https://www.ietf.org/mailman/listinfo/oauth">https://www.ietf.org/mailman/listinfo/oauth</a><br /></pre></blockquote></div></body></html>
------RU4KKPIDFKWNKXQFH47HIICXSD3MJ6--

