[OAUTH-WG] OAuth 2.0 Pushed Authorization Requests: Shepherd Write-Up

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Wed, 24 March 2021 20:04 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 815BE3A34D4 for <oauth@ietfa.amsl.com>; Wed, 24 Mar 2021 13:04:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=UU0ohPRO; dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=UU0ohPRO
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id VK3RR9GSoWZ5 for <oauth@ietfa.amsl.com>; Wed, 24 Mar 2021 13:04:13 -0700 (PDT)
Received: from EUR03-DB5-obe.outbound.protection.outlook.com (mail-eopbgr40052.outbound.protection.outlook.com [40.107.4.52]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E4EB73A34D0 for <oauth@ietf.org>; Wed, 24 Mar 2021 13:04:12 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=rfAtmF8LB7yegg+R1vIdc3GDrY9gic9p08/A4R5MSTE=; b=UU0ohPROTnGp9HC+1LLD4raUoLSAZjt/0CldfaKofUaF/tH3cS6Mm/q86uMnu9WrGirCxUzhOwNCB/Do8U2I+II1Gep6odpafDR5DT0PLskQJUHQct8vyeVDeGT75+0/0O31rbSqBu7a+wXUX8sSNXa2mECr2HD8Wb9N3TW50DU=
Received: from MR2P264CA0184.FRAP264.PROD.OUTLOOK.COM (2603:10a6:501::23) by VI1PR08MB4365.eurprd08.prod.outlook.com (2603:10a6:803:fb::18) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3955.18; Wed, 24 Mar 2021 20:04:09 +0000
Received: from VE1EUR03FT048.eop-EUR03.prod.protection.outlook.com (2603:10a6:501:0:cafe::b7) by MR2P264CA0184.outlook.office365.com (2603:10a6:501::23) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3955.25 via Frontend Transport; Wed, 24 Mar 2021 20:04:09 +0000
X-MS-Exchange-Authentication-Results: spf=pass (sender IP is 63.35.35.123) smtp.mailfrom=arm.com; ietf.org; dkim=pass (signature was verified) header.d=armh.onmicrosoft.com;ietf.org; dmarc=pass action=none header.from=arm.com;
Received-SPF: Pass (protection.outlook.com: domain of arm.com designates 63.35.35.123 as permitted sender) receiver=protection.outlook.com; client-ip=63.35.35.123; helo=64aa7808-outbound-1.mta.getcheckrecipient.com;
Received: from 64aa7808-outbound-1.mta.getcheckrecipient.com (63.35.35.123) by VE1EUR03FT048.mail.protection.outlook.com (10.152.19.8) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3977.25 via Frontend Transport; Wed, 24 Mar 2021 20:04:09 +0000
Received: ("Tessian outbound 1b6dfb84c254:v89"); Wed, 24 Mar 2021 20:04:09 +0000
X-CR-MTA-TID: 64aa7808
Received: from 1c1f81a9c01f.1 by 64aa7808-outbound-1.mta.getcheckrecipient.com id 39214EE8-0110-4BEB-8059-BD64456598A4.1; Wed, 24 Mar 2021 20:04:03 +0000
Received: from EUR01-VE1-obe.outbound.protection.outlook.com by 64aa7808-outbound-1.mta.getcheckrecipient.com with ESMTPS id 1c1f81a9c01f.1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384); Wed, 24 Mar 2021 20:04:03 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Uc7PCkkVX7F7kl75wBvJKLmBkOxdnKG4oE4izt6WmeWG7yNuKXRlvaYR+XaOHMaNfWJgU17Li0p2IdWRSWrvpazflerOFvEqqx3lkqun0uepQCPNclNbSO1ptpPlpgSsMdwg6clmp0drJCd+AgspZ0774LpyEaaxfWpeEX3lOTvsvBudeM1MtK2GMNjQ4rnGRoMqexhtrCcnplEEWbWc1BsQsdOspH4rGRehn4MvMg31/2mxebeToo0k0pA+yHa2IseTIaJ5DGWogrTwwO0YwoPg3wWUxMkZd35BXpoA6lWglN7frmyupjIo5aI/ccHTBRCTV/N26Xy75cqomOYp9g==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=rfAtmF8LB7yegg+R1vIdc3GDrY9gic9p08/A4R5MSTE=; b=DJs2TKEGMvxIwd7zsSab7jEJjeZtHy1ArPcOnBo4JFE/RbQj6UmyxX9ydOgxFMkiZYneSABcrPS7O0p2dtLfOcOTFYVepPHMmV08DfuNLLnghjEn1zG8qNd/wcM6XaWs/XvbfdKZjTaIwpRGlmFpWOTu8A1u+iLfhgSqYcED1HRxODpQLPpdyfpwBedOsHcQROaQPp3s6IRl2VqsphbeC5sf2Cc7CaWeFhjz3o8/jAd9pupmA4M8k3RFejXy8/Mmbik4QBcnjgwbKpnegnaiThjim7VYk8E6beEnJcWIFkwpszc9Mi5llwHxQ+ijihjdPNGkxlDbqeWRRjj14OAOaQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=rfAtmF8LB7yegg+R1vIdc3GDrY9gic9p08/A4R5MSTE=; b=UU0ohPROTnGp9HC+1LLD4raUoLSAZjt/0CldfaKofUaF/tH3cS6Mm/q86uMnu9WrGirCxUzhOwNCB/Do8U2I+II1Gep6odpafDR5DT0PLskQJUHQct8vyeVDeGT75+0/0O31rbSqBu7a+wXUX8sSNXa2mECr2HD8Wb9N3TW50DU=
Received: from VI1PR08MB2639.eurprd08.prod.outlook.com (2603:10a6:802:25::13) by VI1PR08MB2814.eurprd08.prod.outlook.com (2603:10a6:802:1f::29) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3955.18; Wed, 24 Mar 2021 20:04:01 +0000
Received: from VI1PR08MB2639.eurprd08.prod.outlook.com ([fe80::99ef:85aa:3465:475e]) by VI1PR08MB2639.eurprd08.prod.outlook.com ([fe80::99ef:85aa:3465:475e%7]) with mapi id 15.20.3977.025; Wed, 24 Mar 2021 20:04:01 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: "oauth@ietf.org" <oauth@ietf.org>
Thread-Topic: OAuth 2.0 Pushed Authorization Requests: Shepherd Write-Up
Thread-Index: Adcg6LcoawIVzhuzR2OfWwwvMfDNPg==
Date: Wed, 24 Mar 2021 20:04:00 +0000
Message-ID: <VI1PR08MB2639469BF9DCC0CBD4E57714FA639@VI1PR08MB2639.eurprd08.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ts-tracking-id: 7B25CE802503904FAF20ECD412EC0B51.0
x-checkrecipientchecked: true
Authentication-Results-Original: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=arm.com;
x-originating-ip: [195.149.223.198]
x-ms-publictraffictype: Email
X-MS-Office365-Filtering-HT: Tenant
X-MS-Office365-Filtering-Correlation-Id: 0f0e204f-78f6-4b75-0cbc-08d8eefffcc0
x-ms-traffictypediagnostic: VI1PR08MB2814:|VI1PR08MB4365:
X-Microsoft-Antispam-PRVS: <VI1PR08MB436576EF09ECE5F083DF9EC8FA639@VI1PR08MB4365.eurprd08.prod.outlook.com>
x-checkrecipientrouted: true
nodisclaimer: true
x-ms-oob-tlc-oobclassifiers: OLM:4303;OLM:9508;
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam-Untrusted: BCL:0;
X-Microsoft-Antispam-Message-Info-Original: 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
X-Forefront-Antispam-Report-Untrusted: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:VI1PR08MB2639.eurprd08.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(366004)(396003)(346002)(136003)(39860400002)(376002)(9686003)(2906002)(55016002)(52536014)(316002)(6506007)(66946007)(76116006)(38100700001)(6916009)(33656002)(86362001)(7696005)(8676002)(26005)(64756008)(478600001)(8936002)(66476007)(71200400001)(4744005)(5660300002)(83380400001)(186003)(66446008)(966005)(166002)(66556008); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: =?us-ascii?Q?U1PB6d6VudstZJaRUwfmYV1JdBVDDWrXF5TAoPiY5pUGSX1gLVt4aaTsque5?= =?us-ascii?Q?t+4wO7WCtpi8aE5Kr+OW6pQjyF5EbAY3hNj7DJrgDn6bjAa0xb2WBuo85qkq?= =?us-ascii?Q?PrkGyaFQTb3mNfnPNk3GeUdDp/DSQY7Vgexs0DhB52JpwA4aBFrheXh5b0oN?= =?us-ascii?Q?/IRzQ5VRkUbqIIfKNNp642F2kFPZDqFEgZjZVYO1jPntF7QCk5o+MNxYSbHl?= =?us-ascii?Q?CSaDJvGgA5TD87TxMKZjrHZdmt7Hx1v2CVREmpVvFQn1fZAgIA1go3Xd3RSp?= =?us-ascii?Q?fM5/sEXZcEj9JiKaqQAnDwW22NV4v4Nl+VYgyFOH4OVUUL1t+uUilUSvYv5L?= =?us-ascii?Q?lKPhq56VFlVoxDrUpqgqZdkluVRN/yz8O4LBOF1xWjGUAinYo6VYJokzCOvj?= =?us-ascii?Q?A9rgJtYtRD/sHPk5XRgx+Qv3ujTNf2Mf6RnmyaFYp5VLmWVGzRPT18jQ5X9G?= =?us-ascii?Q?0WIONMQOyRJQn/cVP2Tw2gCP/7Cxs6Zqi4GIefWBdth/E9rfuImMrtUoVnQH?= =?us-ascii?Q?5ldrDG8VbfSO6SjHEsVRp0rfG1GdzNS3uFVLHIIj7O+z84kV9y6XSQ9K8SDv?= =?us-ascii?Q?NSjazqvZP9ZrXTsTMBUEctTEathepydvqh94tMWmtvrGHp2XVjwZnJiS476V?= =?us-ascii?Q?esfpn+5+kNlBAzy1aqOu5LtpPbFtKj/fxBqnq6F8eYbLYZijvnbBDRA9pmxf?= =?us-ascii?Q?DtOWJDgsAjUO31K8yNYpA0MUjvAJv8NxLmAejEJ04+S8pdqmzwn11Ak90PWu?= =?us-ascii?Q?b5326ZEkaoWWapK0wqDwyXHYH9b2ak+WGxtnyGP8CORdjIDMCOfruW6S48rC?= =?us-ascii?Q?Qlc/IjRRNIdaUT4kndb3WgIYk8zFT1WEMnN7BZBSXH5C9xngaXATSDgZVyse?= =?us-ascii?Q?mEG/K/927JBuitrTIoRpu9TJ/OQ/bPWIrrVoJU8h/P2nCc0aZbW+KptVkWKw?= =?us-ascii?Q?xQ0RO2rd91YHQuDZ79ZweWEMeHGp0TG7+suDnv+O3btk4mhrFG793iOtnFhv?= =?us-ascii?Q?LwfgXBieoNE1qnRpqh227QCtetLgd6/uBLY9l2SO0RMtIQZl/Qu7YYL02gqJ?= =?us-ascii?Q?SMC/NSOv7uA6ni1BsIW1GCJxwidBjO0vcDmcTu06KT4I+m8Pb8LzL52YqQDB?= =?us-ascii?Q?KTsTWJuItRKLLL7pBLFp5r8wYRbgaEBoDTvIOcpzc0V430sNwmdTKdAt6QXR?= =?us-ascii?Q?QhSSPKQ7WbgWXtjm/c2mXbFzwbD+IIcv9y1yMdR5g8asCHKqbdr3FLh0x/Xu?= =?us-ascii?Q?Kyk770CFaHMXGko/boYxAe17CMkjTuKTaEKIPRFs7AE9E/DsUNtXLbT+6cbe?= =?us-ascii?Q?IWDnZj1yOK/kyg6o/nt5ZdJx?=
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_VI1PR08MB2639469BF9DCC0CBD4E57714FA639VI1PR08MB2639eurp_"
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR08MB2814
Original-Authentication-Results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=arm.com;
X-EOPAttributedMessage: 0
X-MS-Exchange-Transport-CrossTenantHeadersStripped: VE1EUR03FT048.eop-EUR03.prod.protection.outlook.com
X-MS-Office365-Filtering-Correlation-Id-Prvs: 2ec86bdb-27ae-47a1-438c-08d8eefff794
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:63.35.35.123; CTRY:IE; LANG:en; SCL:1; SRV:; IPV:CAL; SFV:NSPM; H:64aa7808-outbound-1.mta.getcheckrecipient.com; PTR:ec2-63-35-35-123.eu-west-1.compute.amazonaws.com; CAT:NONE; SFS:(4636009)(396003)(376002)(136003)(346002)(39860400002)(36840700001)(46966006)(70586007)(166002)(52536014)(2906002)(83380400001)(5660300002)(33656002)(47076005)(356005)(70206006)(478600001)(9686003)(86362001)(81166007)(8676002)(55016002)(8936002)(82740400003)(316002)(6916009)(336012)(6506007)(7696005)(36860700001)(186003)(82310400003)(966005)(26005); DIR:OUT; SFP:1101;
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 24 Mar 2021 20:04:09.6172 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: 0f0e204f-78f6-4b75-0cbc-08d8eefffcc0
X-MS-Exchange-CrossTenant-Id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=f34e5979-57d9-4aaa-ad4d-b122a662184d; Ip=[63.35.35.123]; Helo=[64aa7808-outbound-1.mta.getcheckrecipient.com]
X-MS-Exchange-CrossTenant-AuthSource: VE1EUR03FT048.eop-EUR03.prod.protection.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Anonymous
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR08MB4365
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/UWHECQ8pPHiGxTBlKO7G9wwKV38>
Subject: [OAUTH-WG] OAuth 2.0 Pushed Authorization Requests: Shepherd Write-Up
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth/>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 24 Mar 2021 20:04:15 -0000

FYI: If you want to track my shepherd write-up for the "OAuth 2.0 Pushed Authorization Requests" specification then you can find it here:
https://github.com/hannestschofenig/tschofenig-ids/blob/master/shepherd-writeups/Writeup_OAuth_PAR.txt

Ciao
Hannes

IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.