[OAUTH-WG] IETF 107 Virtual OAuth Sessions

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Thu, 26 March 2020 20:03 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 536973A0E1A for <oauth@ietfa.amsl.com>; Thu, 26 Mar 2020 13:03:16 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.362
X-Spam-Level:
X-Spam-Status: No, score=-3.362 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=-1.463, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=LsElnoHD; dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=LsElnoHD
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1ZLLK2Ct_O4Y for <oauth@ietfa.amsl.com>; Thu, 26 Mar 2020 13:03:13 -0700 (PDT)
Received: from EUR04-HE1-obe.outbound.protection.outlook.com (mail-eopbgr70047.outbound.protection.outlook.com [40.107.7.47]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 40D273A0CE5 for <oauth@ietf.org>; Thu, 26 Mar 2020 13:03:12 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=0JX3CIO2Ln4F+HXdt7EJSDrQHjUpSHs1bp6sK2Hr8RM=; b=LsElnoHDAltVhkxQHY2QFIz19Iq/siCyIkOTJJVLlgFb8iqidMoadISRiorUQFYkXrfYvPkO3RF2eee1cJa64FbLDFEm1NBvAd1V/SnHlnAsFhaXPhRzPshYV3ZtEdEMRyZAbib+M7rIy2BWI2giKbcZ4Bji6Tsac/7yPOrE6xo=
Received: from AM0PR05CA0087.eurprd05.prod.outlook.com (2603:10a6:208:136::27) by AM0PR08MB5476.eurprd08.prod.outlook.com (2603:10a6:208:18d::18) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2835.18; Thu, 26 Mar 2020 20:03:09 +0000
Received: from AM5EUR03FT017.eop-EUR03.prod.protection.outlook.com (2603:10a6:208:136:cafe::11) by AM0PR05CA0087.outlook.office365.com (2603:10a6:208:136::27) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2835.20 via Frontend Transport; Thu, 26 Mar 2020 20:03:09 +0000
Authentication-Results: spf=pass (sender IP is 63.35.35.123) smtp.mailfrom=arm.com; ietf.org; dkim=pass (signature was verified) header.d=armh.onmicrosoft.com;ietf.org; dmarc=bestguesspass action=none header.from=arm.com;
Received-SPF: Pass (protection.outlook.com: domain of arm.com designates 63.35.35.123 as permitted sender) receiver=protection.outlook.com; client-ip=63.35.35.123; helo=64aa7808-outbound-1.mta.getcheckrecipient.com;
Received: from 64aa7808-outbound-1.mta.getcheckrecipient.com (63.35.35.123) by AM5EUR03FT017.mail.protection.outlook.com (10.152.16.89) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2856.17 via Frontend Transport; Thu, 26 Mar 2020 20:03:09 +0000
Received: ("Tessian outbound d6b3ed9fc62a:v48"); Thu, 26 Mar 2020 20:03:09 +0000
X-CR-MTA-TID: 64aa7808
Received: from becd9ac9eda4.1 by 64aa7808-outbound-1.mta.getcheckrecipient.com id D81B5A33-DA30-437B-A19B-21830073F929.1; Thu, 26 Mar 2020 20:03:04 +0000
Received: from EUR05-DB8-obe.outbound.protection.outlook.com by 64aa7808-outbound-1.mta.getcheckrecipient.com with ESMTPS id becd9ac9eda4.1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384); Thu, 26 Mar 2020 20:03:04 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=PWzw9Z6n4xAiesgsF88CDPA/G4OTqJWB2lz9JafasKQqRiZHkcAHQ+CPBaHRUwET3in1UsrSYhb4Z/6Sxf3KtfdWY4jECG8g9oiMjqfpTOesJRQQKh/6VH+SgsddfRu8E/D4lxVpzyFLUaKj7JeXHBlVjKwTDAVMDyVMqO3QeHjEUIs+OLqsIy6aOYzM8y8I+h4k2UdSHetkLTh66srn8HiVf/twGN+BMjx84qXPZcCzfkgXlKd+YsdutHOwD8Anf7gpXaL1rkiN0Qp9pnDJOAL6Izyjx1QTAiOU+qc84Qh7G+jpOPb7ETYY+cm3YJkknuFzOKuXBKwMqUAUrzt8ag==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=0JX3CIO2Ln4F+HXdt7EJSDrQHjUpSHs1bp6sK2Hr8RM=; b=FuEnyxnnkxa/2ILif8SDlTR1Q7XHgO3q+pzrOrCfHsItD0FIc4m8TOzpwJ2B1t2BK25KGO7KuNum6JKKpTamqEUob3wdWN5AzQtet/IbWt0Y0H9zMtrH138fvC3qNXyWat6mqcMohGjzAnand1ik/tyTOmcPaiEpJLeCZhpazbIYD+qdz8trhfTEdu38kJjR9LZf66HN/OLuMHugR1EEnvMWgjOZ8MnrDKOmJ/qzIUFjclH5s3s+NmFQkZMoeI2QLPLk+1ZKidhR2jF+cPWjsrJrwza5XbQzL9oDo9zElFY/A3P/PTGt2nQTR35gnmAU2qYZllK+p/MH+uZSg9IPZA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=0JX3CIO2Ln4F+HXdt7EJSDrQHjUpSHs1bp6sK2Hr8RM=; b=LsElnoHDAltVhkxQHY2QFIz19Iq/siCyIkOTJJVLlgFb8iqidMoadISRiorUQFYkXrfYvPkO3RF2eee1cJa64FbLDFEm1NBvAd1V/SnHlnAsFhaXPhRzPshYV3ZtEdEMRyZAbib+M7rIy2BWI2giKbcZ4Bji6Tsac/7yPOrE6xo=
Received: from AM0PR08MB3716.eurprd08.prod.outlook.com (20.178.23.205) by AM0PR08MB3348.eurprd08.prod.outlook.com (52.134.125.140) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2835.18; Thu, 26 Mar 2020 20:03:03 +0000
Received: from AM0PR08MB3716.eurprd08.prod.outlook.com ([fe80::2159:870b:25df:e612]) by AM0PR08MB3716.eurprd08.prod.outlook.com ([fe80::2159:870b:25df:e612%5]) with mapi id 15.20.2835.025; Thu, 26 Mar 2020 20:03:03 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: oauth <oauth@ietf.org>
Thread-Topic: IETF 107 Virtual OAuth Sessions
Thread-Index: AdYDqVY0ryFGETkZTfKlBHAmJqdcqg==
Date: Thu, 26 Mar 2020 20:03:03 +0000
Message-ID: <AM0PR08MB37165FE346B62BBF1277D930FACF0@AM0PR08MB3716.eurprd08.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ts-tracking-id: e9cabc86-9912-4634-9790-70a1697a324b.0
x-checkrecipientchecked: true
Authentication-Results-Original: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
x-originating-ip: [213.162.72.174]
x-ms-publictraffictype: Email
X-MS-Office365-Filtering-HT: Tenant
X-MS-Office365-Filtering-Correlation-Id: 86b52eb1-37f0-4bbb-6888-08d7d1c0b518
x-ms-traffictypediagnostic: AM0PR08MB3348:|AM0PR08MB5476:
X-Microsoft-Antispam-PRVS: <AM0PR08MB54764496C237BEFE41FC406FFACF0@AM0PR08MB5476.eurprd08.prod.outlook.com>
x-checkrecipientrouted: true
nodisclaimer: true
x-ms-oob-tlc-oobclassifiers: OLM:7691;OLM:9508;
x-forefront-prvs: 0354B4BED2
X-Forefront-Antispam-Report-Untrusted: SFV:NSPM; SFS:(10009020)(4636009)(136003)(39860400002)(366004)(376002)(396003)(346002)(478600001)(316002)(4744005)(7696005)(76116006)(5660300002)(66946007)(52536014)(66476007)(66556008)(64756008)(6506007)(66446008)(8936002)(66574012)(81166006)(26005)(81156014)(186003)(55016002)(8676002)(2906002)(86362001)(6916009)(33656002)(9686003)(71200400001); DIR:OUT; SFP:1101; SCL:1; SRVR:AM0PR08MB3348; H:AM0PR08MB3716.eurprd08.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords;
received-spf: None (protection.outlook.com: arm.com does not designate permitted sender hosts)
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam-Untrusted: BCL:0;
X-Microsoft-Antispam-Message-Info-Original: pHL1/JRpdD3un/VQi3+aXHkLcKslMhD53uSA9f4TzNLaJN61fsx3EuwBFIX/5Mih7VioBVjGeqTDuU3IaOIE3xMSPlBbjx+YdlMoXgY6I7JRbVxovWDsWFsClJrYKS1ny6iaXlTCn4xNZwm/zJDAVzUFoR4T06jib6qTUd6R81criu22sCriSuqLsYbLSpolveUBotiY9dkO90qTUBXBGW0BhfTIs7lqxp/WsWREtAUIdsoIULawHSIiwRkWiB+7I9Hdj8MxKk7anDuf5obqngW6wGvv86vE2UFbXbJXB2b36GbOA7EOmls3Jjip1OqmAIvItqoPWJx8uRn4wwOl5BkZYzbPpN6qoNF6UzSu5Ko32XMPNGig031vGzsybkm9Zi/4Nz5SXOcLep/yIX25WNbLq+iPfNdfIx8cYRFbI8UEV6ugBtVxKvo5N6mOXyL6
x-ms-exchange-antispam-messagedata: zf0mAKOJodGcWN4rHs1OtqvppvkHye4+AT1RruSs4iOEbBumIx460Uo0+6L2pG6ELbQ9rpgSCI+1prHju1buvznVpMKOZZWatE7RHTQeqa9n2aWTliFPk6eNo5mqLO0cIs4/GoKDHndmIjFJwl06ww==
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_AM0PR08MB37165FE346B62BBF1277D930FACF0AM0PR08MB3716eurp_"
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM0PR08MB3348
Original-Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
X-EOPAttributedMessage: 0
X-MS-Exchange-Transport-CrossTenantHeadersStripped: AM5EUR03FT017.eop-EUR03.prod.protection.outlook.com
X-Forefront-Antispam-Report: CIP:63.35.35.123; IPV:CAL; SCL:-1; CTRY:IE; EFV:NLI; SFV:NSPM; SFS:(10009020)(4636009)(396003)(136003)(39860400002)(346002)(376002)(46966005)(81166006)(82740400003)(5660300002)(478600001)(52536014)(81156014)(55016002)(86362001)(33656002)(26826003)(8936002)(66574012)(9686003)(8676002)(356004)(6506007)(2906002)(6916009)(70206006)(70586007)(316002)(186003)(26005)(7696005)(47076004)(36906005)(336012); DIR:OUT; SFP:1101; SCL:1; SRVR:AM0PR08MB5476; H:64aa7808-outbound-1.mta.getcheckrecipient.com; FPR:; SPF:Pass; LANG:en; PTR:ec2-63-35-35-123.eu-west-1.compute.amazonaws.com;
X-MS-Office365-Filtering-Correlation-Id-Prvs: 978544d7-c677-4bc6-7bda-08d7d1c0b171
X-Forefront-PRVS: 0354B4BED2
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: YRZUxlVJVqkvDRfYpLWLgMSQVlpdzYnvLHWBrZsC2A1jqEZOWtFfevrP0g1Py/v3kJGdI6P9VJNh2nAeAJ/VXpyBf6e5XJnK8Q4U3vGhR9fYD8/teZeDOaWRKBrioD3ceuytU/0mbqgKKYclo19BqvdQuXBNt4uFesjz2+IScXkuDI1JvPYzkYkE6xREAhQ4QTHYYK3sUQwfGo68/PWOjTtBNnzaKQWO+jAuLiE5Xii5j54bEIDjew6h7gvltcM4AVP44V1wcUS/KbzSFO12TZVOgDGHhusW/d6zqClUnI2iyCYsO84EU3wqNHSJFcKlicvbnSyj70hiV9oSSgIEdjKgAsHHsGzmg9k1UKe6Gxjk7YkHVzeENmwy7qM0Fn8W0yTqZiVZBVDYB/CS9idvVPyjFwK4VUz2jgIDy6sNml3iXw+UDxcNFfxHa+GgRkF+JAtedJDSiZ/6HUrE2t1yXw9LMKNth1N0ysk3QpplgaUpryhVMi3NrwmVnuzEqemwflPZkJM15O8K7B3FQQKWPQ==
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 26 Mar 2020 20:03:09.7835 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: 86b52eb1-37f0-4bbb-6888-08d7d1c0b518
X-MS-Exchange-CrossTenant-Id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=f34e5979-57d9-4aaa-ad4d-b122a662184d; Ip=[63.35.35.123]; Helo=[64aa7808-outbound-1.mta.getcheckrecipient.com]
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM0PR08MB5476
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/NPjgmUXQuJnjeqJKtsC55dErc_k>
Subject: [OAUTH-WG] IETF 107 Virtual OAuth Sessions
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth/>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 26 Mar 2020 20:03:34 -0000

Hi all,

Rifaat and I had a chat about the virtual interim meetings.
We decided to schedule 6 one-hour-long sessions with 2 topics per session.

Here is the list of topics we want to discuss:

1) OAuth Security Topics + Browser-Based Apps

2) JSON Web Token (JWT) Profile for OAuth 2.0 Access Tokens + Nested JWT

3) PAR + RAR

4) OAuth 2.1 + JWT Response for OAuth Token Introspection

5) DPoP + OAuth 2.0 Incremental Authorization

6) Client Intermediary Metadata + Reciprocal OAuth

We were thinking about using our Monday, 12:00 EDT, office hour timeslot.
Proposed starting date is April 6th.

Would this be acceptable?

Ciao
Hannes & Rifaat
IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.