[OAUTH-WG] Gorry Fairhurst's No Record on draft-ietf-oauth-identity-chaining-12: (with COMMENT)

Gorry Fairhurst via Datatracker <noreply@ietf.org> Mon, 25 May 2026 14:47 UTC

Return-Path: <noreply@ietf.org>
X-Original-To: oauth@ietf.org
Delivered-To: oauth@mail2.ietf.org
Received: from [10.244.11.174] (unknown [4.156.85.76]) by mail2.ietf.org (Postfix) with ESMTP id 3A1F3F4AE4B0; Mon, 25 May 2026 07:47:11 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1779720431; bh=yktkaczScwFHPIbi669ig5KMNVVcQKXmpPtwZRKwNY4=; h=From:To:Cc:Subject:Reply-To:Date; b=OKiVhZC4dV+uuI7XjIU36Lo/28Mw/vIi0284JGXBq8VR/Hha6nO0Sni6lg167XuB4 Uc4TSRX0bupvPRIrt1pfjnDjv28sfjOSJXG8lCcNODFQLQfVl7JBA1iOYmyQBwBVq9 h9InGDgItZPbLq6cKiS8QcxHbR8/J6xXN6FhfmLg=
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Gorry Fairhurst via Datatracker <noreply@ietf.org>
To: The IESG <iesg@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 12.65.2
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <177972043114.733675.6252937748313937283@dt-datatracker-5b4c8598b5-4ztf9>
Date: Mon, 25 May 2026 07:47:11 -0700
Message-ID-Hash: IWA3AHP3D6WHLZAZTAB35PYZ4J6DTFXN
X-Message-ID-Hash: IWA3AHP3D6WHLZAZTAB35PYZ4J6DTFXN
X-MailFrom: noreply@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-oauth.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: draft-ietf-oauth-identity-chaining@ietf.org, oauth-chairs@ietf.org, oauth@ietf.org
X-Mailman-Version: 3.3.9rc6
Reply-To: Gorry Fairhurst <gorry@erg.abdn.ac.uk>
Subject: [OAUTH-WG] Gorry Fairhurst's No Record on draft-ietf-oauth-identity-chaining-12: (with COMMENT)
List-Id: OAUTH WG <oauth.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/leTERgiWpk_WJSOVH7wX8SOPiHs>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Owner: <mailto:oauth-owner@ietf.org>
List-Post: <mailto:oauth@ietf.org>
List-Subscribe: <mailto:oauth-join@ietf.org>
List-Unsubscribe: <mailto:oauth-leave@ietf.org>

Gorry Fairhurst has entered the following ballot position for
draft-ietf-oauth-identity-chaining-12: No Record

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to https://www.ietf.org/about/groups/iesg/statements/handling-ballot-positions/ 
for more information about how to handle DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-oauth-identity-chaining/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

Thank you for the work that has been put into this document. I do not see any
transport-protocol related concerns.

However, I would have found it helpful to have read a more informative abstract.

I would  expect this to explain that request information needs to be preserved
when a request crosses one or more trust domains, known as "chaining", and to
mention the combination of OAuth 2.0 Token Exchange and the JWT Profile for
OAuth 2.0 Client Authentication and Authorization Grants. Please consider
adding one or two more lines of text.

Gorry