[OAUTH-WG] Gorry Fairhurst's No Record on draft-ietf-oauth-identity-chaining-12: (with COMMENT)
Gorry Fairhurst via Datatracker <noreply@ietf.org> Mon, 25 May 2026 14:47 UTC
Return-Path: <noreply@ietf.org>
X-Original-To: oauth@ietf.org
Delivered-To: oauth@mail2.ietf.org
Received: from [10.244.11.174] (unknown [4.156.85.76]) by mail2.ietf.org (Postfix) with ESMTP id 3A1F3F4AE4B0; Mon, 25 May 2026 07:47:11 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1779720431; bh=yktkaczScwFHPIbi669ig5KMNVVcQKXmpPtwZRKwNY4=; h=From:To:Cc:Subject:Reply-To:Date; b=OKiVhZC4dV+uuI7XjIU36Lo/28Mw/vIi0284JGXBq8VR/Hha6nO0Sni6lg167XuB4 Uc4TSRX0bupvPRIrt1pfjnDjv28sfjOSJXG8lCcNODFQLQfVl7JBA1iOYmyQBwBVq9 h9InGDgItZPbLq6cKiS8QcxHbR8/J6xXN6FhfmLg=
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Gorry Fairhurst via Datatracker <noreply@ietf.org>
To: The IESG <iesg@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 12.65.2
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <177972043114.733675.6252937748313937283@dt-datatracker-5b4c8598b5-4ztf9>
Date: Mon, 25 May 2026 07:47:11 -0700
Message-ID-Hash: IWA3AHP3D6WHLZAZTAB35PYZ4J6DTFXN
X-Message-ID-Hash: IWA3AHP3D6WHLZAZTAB35PYZ4J6DTFXN
X-MailFrom: noreply@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-oauth.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: draft-ietf-oauth-identity-chaining@ietf.org, oauth-chairs@ietf.org, oauth@ietf.org
X-Mailman-Version: 3.3.9rc6
Reply-To: Gorry Fairhurst <gorry@erg.abdn.ac.uk>
Subject: [OAUTH-WG] Gorry Fairhurst's No Record on draft-ietf-oauth-identity-chaining-12: (with COMMENT)
List-Id: OAUTH WG <oauth.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/leTERgiWpk_WJSOVH7wX8SOPiHs>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Owner: <mailto:oauth-owner@ietf.org>
List-Post: <mailto:oauth@ietf.org>
List-Subscribe: <mailto:oauth-join@ietf.org>
List-Unsubscribe: <mailto:oauth-leave@ietf.org>
Gorry Fairhurst has entered the following ballot position for draft-ietf-oauth-identity-chaining-12: No Record When responding, please keep the subject line intact and reply to all email addresses included in the To and CC lines. (Feel free to cut this introductory paragraph, however.) Please refer to https://www.ietf.org/about/groups/iesg/statements/handling-ballot-positions/ for more information about how to handle DISCUSS and COMMENT positions. The document, along with other ballot positions, can be found here: https://datatracker.ietf.org/doc/draft-ietf-oauth-identity-chaining/ ---------------------------------------------------------------------- COMMENT: ---------------------------------------------------------------------- Thank you for the work that has been put into this document. I do not see any transport-protocol related concerns. However, I would have found it helpful to have read a more informative abstract. I would expect this to explain that request information needs to be preserved when a request crosses one or more trust domains, known as "chaining", and to mention the combination of OAuth 2.0 Token Exchange and the JWT Profile for OAuth 2.0 Client Authentication and Authorization Grants. Please consider adding one or two more lines of text. Gorry
- [OAUTH-WG] Gorry Fairhurst's No Record on draft-i… Gorry Fairhurst via Datatracker