Re: [OAUTH-WG] Quick question about error response for "response_type=unknown"

William Mills <wmills@yahoo-inc.com> Mon, 20 February 2012 16:58 UTC

Return-Path: <wmills@yahoo-inc.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2070B21F87BE for <oauth@ietfa.amsl.com>; Mon, 20 Feb 2012 08:58:13 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -16.205
X-Spam-Level:
X-Spam-Status: No, score=-16.205 tagged_above=-999 required=5 tests=[AWL=-1.021, BAYES_40=-0.185, HTML_MESSAGE=0.001, USER_IN_DEF_WHITELIST=-15]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4dJavOVG7ppM for <oauth@ietfa.amsl.com>; Mon, 20 Feb 2012 08:58:09 -0800 (PST)
Received: from nm10-vm0.bullet.mail.sp2.yahoo.com (nm10-vm0.bullet.mail.sp2.yahoo.com [98.139.91.198]) by ietfa.amsl.com (Postfix) with SMTP id 63A1F21F87C4 for <oauth@ietf.org>; Mon, 20 Feb 2012 08:58:09 -0800 (PST)
Received: from [98.139.91.69] by nm10.bullet.mail.sp2.yahoo.com with NNFMP; 20 Feb 2012 16:58:09 -0000
Received: from [98.139.91.31] by tm9.bullet.mail.sp2.yahoo.com with NNFMP; 20 Feb 2012 16:57:09 -0000
Received: from [127.0.0.1] by omp1031.mail.sp2.yahoo.com with NNFMP; 20 Feb 2012 16:57:09 -0000
X-Yahoo-Newman-Property: ymail-3
X-Yahoo-Newman-Id: 253351.92165.bm@omp1031.mail.sp2.yahoo.com
Received: (qmail 28207 invoked by uid 60001); 20 Feb 2012 16:57:08 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo-inc.com; s=ginc1024; t=1329757028; bh=T0AJZYXfqrDtuvwVYv6NuKQgkP7qgLdGQiU3ypiryao=; h=X-YMail-OSG:Received:X-RocketYMMF:X-Mailer:References:Message-ID:Date:From:Reply-To:Subject:To:In-Reply-To:MIME-Version:Content-Type; b=lj28Fh/f6fbzxtlX7otTc0WXYlJYaNjo/jh6TzjVSHOHjkE4HdHlLEEJeQ+yKAvlvOERVuL7/2lPf7OfouSEqz0YakqDAMi2EecsQMmb51if4T/tt5MxjuUY5y+CFJw/l0Xy1p+Ai72P9Y13TTiP3NOpYMWd6HgfJ8/ruJDhi3Y=
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=ginc1024; d=yahoo-inc.com; h=X-YMail-OSG:Received:X-RocketYMMF:X-Mailer:References:Message-ID:Date:From:Reply-To:Subject:To:In-Reply-To:MIME-Version:Content-Type; b=rWpOYnziU2HF+bETpx8wiCk9nONXgd/xW8mtWxBNdKob3/zDfC2gfpNwK4gR/7uzy8/JqYriSS9b7PxPVK6nKlOg1RXSMlGgdT79wl8hluekNn580ADScnKzMWOuhM8r4p7mlOFwuZLHttBceOVkj8A4nnJVJnVXmyJT1vI/Hww=;
X-YMail-OSG: HwuNcJIVM1nBAFLlqOnHK3nINdzLXLJo2ZMNz_1O1QBV55Y OmxKnz4tqTDKYA.vzLLj7J7dHIIipah1CdxT4oE.P2mhw2izLH2Zuedgpbj9 4Za2LN3RGHnuklkmL.z.ENvTNZxvG5qEQhGfDbnu7GvXX1EwQVJSHTlYJE_i lYPUPUJuhbVGcP6t8iFeurHzE3ppa5V_IT5K.QylepmYDXBnyZ9.HeJ6HIvn 1WbwLmYuzlNrqztjakY.0DvJvZe1ig9NN_iqfxuz2My8tTzD9Ry.SNTyqGWE ZYM2lr4g4qruudX88xUXEV7SbWZ00RXfQpbM6pAyOzgMGstArS0Q_qAUT8oZ J9RTnFQMzR3GUc4FM27D4GekdzpISUy5qfMVbu3VWIsIpjINmN2tLeoitSIQ Yl04th4NS5nzRNg9q1u5dfg2tSP4-
Received: from [99.31.212.42] by web31808.mail.mud.yahoo.com via HTTP; Mon, 20 Feb 2012 08:57:07 PST
X-RocketYMMF: william_john_mills
X-Mailer: YahooMailWebService/0.8.117.340031
References: <58932B8B-2DDE-41D6-A91B-5036CC762C00@matake.jp>
Message-ID: <1329757027.28055.YahooMailNeo@web31808.mail.mud.yahoo.com>
Date: Mon, 20 Feb 2012 08:57:07 -0800
From: William Mills <wmills@yahoo-inc.com>
To: nov matake <nov@matake.jp>, oauth WG <oauth@ietf.org>
In-Reply-To: <58932B8B-2DDE-41D6-A91B-5036CC762C00@matake.jp>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="258328648-122015295-1329757027=:28055"
Subject: Re: [OAUTH-WG] Quick question about error response for "response_type=unknown"
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
Reply-To: William Mills <wmills@yahoo-inc.com>
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/oauth>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 20 Feb 2012 16:58:13 -0000

Respond with an error in protocol.  Thta won't include a redirect, and the client has to know what to do.



________________________________
 From: nov matake <nov@matake.jp>
To: oauth WG <oauth@ietf.org> 
Sent: Monday, February 20, 2012 6:11 AM
Subject: [OAUTH-WG] Quick question about error response for "response_type=unknown"
 
Hi OAuthers,

My apologies if you already discussed this.

When OAuth server received unknown response_type, how should the server handle the error?

1. Show the error to the user without redirecting back to the client
2. Redirect back to the client including the error in query
3. Redirect back to the client including the error in fragment

Since choosing 2 or 3 is impossible in this case, 1 seems reasonable for me.


--
nov
_______________________________________________
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth