Re: [OAUTH-WG] OAuth 1.0a

William Mills <wmills_92105@yahoo.com> Tue, 14 August 2012 19:54 UTC

Return-Path: <wmills_92105@yahoo.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EDA0A21E8099 for <oauth@ietfa.amsl.com>; Tue, 14 Aug 2012 12:54:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.307
X-Spam-Level:
X-Spam-Status: No, score=-2.307 tagged_above=-999 required=5 tests=[AWL=-0.309, BAYES_00=-2.599, HTML_MESSAGE=0.001, J_CHICKENPOX_31=0.6]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id n2vt4OTyWrwg for <oauth@ietfa.amsl.com>; Tue, 14 Aug 2012 12:54:30 -0700 (PDT)
Received: from nm12.bullet.mail.ac4.yahoo.com (nm12.bullet.mail.ac4.yahoo.com [98.139.52.209]) by ietfa.amsl.com (Postfix) with ESMTP id E216A21E8086 for <oauth@ietf.org>; Tue, 14 Aug 2012 12:54:29 -0700 (PDT)
Received: from [98.139.52.192] by nm12.bullet.mail.ac4.yahoo.com with NNFMP; 14 Aug 2012 19:54:25 -0000
Received: from [98.139.52.167] by tm5.bullet.mail.ac4.yahoo.com with NNFMP; 14 Aug 2012 19:54:25 -0000
Received: from [127.0.0.1] by omp1050.mail.ac4.yahoo.com with NNFMP; 14 Aug 2012 19:54:25 -0000
X-Yahoo-Newman-Property: ymail-3
X-Yahoo-Newman-Id: 195693.3612.bm@omp1050.mail.ac4.yahoo.com
Received: (qmail 30453 invoked by uid 60001); 14 Aug 2012 19:54:24 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo.com; s=s1024; t=1344974064; bh=RUhFhUwzueTM9pr18uT+7sWUv7Ao4wasxYI1bNHiAjA=; h=X-YMail-OSG:Received:X-Mailer:References:Message-ID:Date:From:Reply-To:Subject:To:Cc:In-Reply-To:MIME-Version:Content-Type; b=fmIwf9bQaziDSRKJRlHTH1e8DPl0VnAgJuPEBi/BYOs8bLUGdwg/aWJdMctt3VU82b8eJmLjbQiXDoxQi/1FYU5awNQEFHjWOFlpemPWzJt1nooD7qEgNVp+xmpAabBF27S2J4j/Eqe3zzVFlAQI8MeWjxXEpSivIwTDKaojBFw=
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=s1024; d=yahoo.com; h=X-YMail-OSG:Received:X-Mailer:References:Message-ID:Date:From:Reply-To:Subject:To:Cc:In-Reply-To:MIME-Version:Content-Type; b=KaKCpToTBf5JgjLGhUKehTrDCXgzzaHQS1xd+oBvOLt5z7VI/SpSpB1pzj1baPiQNoZB0DSdwf2IGH9+7tDOXnLldqW0Q5shNfbe9rVn7j6bL0OI1KKX7rqmXak+BnUGqPhrfpckjLnGNsJMwIGSZnw+felTXeVN3QQ6VmZEjVY=;
X-YMail-OSG: tKRShNYVM1na27AVEj0gJYsDI.HblH_vIOpY7c70SibvYR3 4ATtPW8Yu8qtE4t8iVt9Y1hHBslgSfGiUDeUZxC50XBCYOYdDIqM8B.YXu2T FxQSPs625jp55bMAy2kzp2.2dt6zCLZ8IHn4zVMspon3e1QVL88YkV16iOjR ari0NTwZim9ciebjdtyacC.YGejfsMxOkQWP2Btv8e4rb.Yc1HoeErQoPM8R B3uXnFh2azTCY0NmgNnzO7_Ned2SGJYcQZrGpf5VsJqLxQMz8KtN_0cjboxe whXHcm9i5c4VRilKqHZvdCY96AOIoQgRtXn7JJdHtbFhe0fnt3.W4guxXSSj Op5NrvLERdIs5StpHiE04iT4VxMimUL8QLbpRyVSM6mIkMPKw1CMM_6_InoO HovBTI5SVJ3H.XRDrzlTjIuZ9G9hNhA_RHjbOUwYhsVn.SyK_1LB8KkQR2KB rojFRuDNM6KuN4bQJLop7w8sukhdAthGX98SvYWaLBkOPDu8.wOaRA7aKYjc uQ5U-
Received: from [209.131.62.113] by web31805.mail.mud.yahoo.com via HTTP; Tue, 14 Aug 2012 12:54:24 PDT
X-Mailer: YahooMailWebService/0.8.121.416
References: <1344972117.60342.YahooMailNeo@web31802.mail.mud.yahoo.com> <4E1F6AAD24975D4BA5B168042967394366777A7F@TK5EX14MBXC283.redmond.corp.microsoft.com> <1344973056.51964.YahooMailNeo@web31812.mail.mud.yahoo.com> <502AAA2D.1050404@lodderstedt.net> <4E1F6AAD24975D4BA5B168042967394366777BBC@TK5EX14MBXC283.redmond.corp.microsoft.com>
Message-ID: <1344974064.6561.YahooMailNeo@web31805.mail.mud.yahoo.com>
Date: Tue, 14 Aug 2012 12:54:24 -0700
From: William Mills <wmills_92105@yahoo.com>
To: Mike Jones <Michael.Jones@microsoft.com>, Torsten Lodderstedt <torsten@lodderstedt.net>
In-Reply-To: <4E1F6AAD24975D4BA5B168042967394366777BBC@TK5EX14MBXC283.redmond.corp.microsoft.com>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="-551393103-349442844-1344974064=:6561"
Cc: O Auth WG <oauth@ietf.org>
Subject: Re: [OAUTH-WG] OAuth 1.0a
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
Reply-To: William Mills <wmills_92105@yahoo.com>
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/oauth>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 14 Aug 2012 19:54:31 -0000

Yeah, I still need 1.0a to work which I was hoping to replace with MAC.


________________________________
 From: Mike Jones <Michael.Jones@microsoft.com>
To: William Mills <wmills_92105@yahoo.com>; Torsten Lodderstedt <torsten@lodderstedt.net> 
Cc: O Auth WG <oauth@ietf.org> 
Sent: Tuesday, August 14, 2012 12:44 PM
Subject: RE: [OAUTH-WG] OAuth 1.0a
 

 
Agreed.  Use Bearer now.  If you have requirements that Bearer *can’t* meet, please use them as input to the working group’s future work.
 
                                                                -- Mike
 
From:Torsten Lodderstedt [mailto:torsten@lodderstedt.net] 
Sent: Tuesday, August 14, 2012 12:43 PM
To: William Mills
Cc: Mike Jones; O Auth WG
Subject: Re: [OAUTH-WG] OAuth 1.0a
 
Hi Bill,

do you need to specify this aspect of your SASL profile now? Why don't you wait for the group to complete the work on signing/HoK? 

You could also contribute your use cases to drive the discussion.

best regards,
Torsten.
Am 14.08.2012 21:37, schrieb William Mills:
It's for the OAUTH SASL spec.  I've been writing it with the idea that OAuth 1.0a would work (since I think we'll have extant 1.0a typ[e tokens we want to allow for IMAP), but several folks were saying when this all started that 1.0a was dead and I should not refer to it.
> 
>I want to make sure the SASL mechanism is build to properly handle signed auth schemes and not just bearer (cookie) type.  
> 
>-bill
> 
>
>________________________________
> 
>From:Mike Jones <Michael.Jones@microsoft.com>
>To: William Mills <wmills_92105@yahoo.com>; O Auth WG <oauth@ietf.org> 
>Sent: Tuesday, August 14, 2012 12:28 PM
>Subject: RE: [OAUTH-WG] OAuth 1.0a
> 
>What problem are you trying to solve?
> 
>From:oauth-bounces@ietf.org [mailto:oauth-bounces@ietf.org] On Behalf Of William Mills
>Sent: Tuesday, August 14, 2012 12:22 PM
>To: O Auth WG
>Subject: [OAUTH-WG] OAuth 1.0a
> 
>What's the general opinion on 1.0a?  Am I stepping in something if I refer to it in another draft?  I want to reference an auth scheme that uses signing and now MAC is apparently going back to the drawing board, so I'm thinking about using 1.0a.
> 
>Thanks,
> 
>-bill
> 
>
>
>
>
>_______________________________________________
>OAuth mailing list
>OAuth@ietf.org
>https://www.ietf.org/mailman/listinfo/oauth