[OAUTH-WG] WGLC on "JSON Web Token (JWT) Profile for OAuth 2.0 Access Tokens"

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Mon, 23 March 2020 21:17 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BDF923A0E95 for <oauth@ietfa.amsl.com>; Mon, 23 Mar 2020 14:17:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=s5F0mwql; dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=s5F0mwql
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id oA780otczE5R for <oauth@ietfa.amsl.com>; Mon, 23 Mar 2020 14:17:47 -0700 (PDT)
Received: from EUR03-DB5-obe.outbound.protection.outlook.com (mail-eopbgr40046.outbound.protection.outlook.com [40.107.4.46]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F167A3A0E15 for <oauth@ietf.org>; Mon, 23 Mar 2020 14:17:46 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=I8Ai1AgTAsgRDHHeIRlOWouiWWxDspfXXMmag8sZFKI=; b=s5F0mwqlpNz51rMTsmLaCZTNlIg37E/P8iHk2mTccS64u2xH7WN1iiI9qDQTf8nmj1cyDuuCj7PEA2hTpENaO/JAag9txsfF7zOmCoq3k/V2oXlaNJw8kAoWS8SrGJbvzeNvbCFsQri1iD8ACczm7L0m8hhwLZzHc3uZlOJuOhg=
Received: from VI1PR04CA0050.eurprd04.prod.outlook.com (2603:10a6:802:2::21) by AM6PR08MB4738.eurprd08.prod.outlook.com (2603:10a6:20b:cf::10) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2835.18; Mon, 23 Mar 2020 21:17:43 +0000
Received: from VE1EUR03FT033.eop-EUR03.prod.protection.outlook.com (2603:10a6:802:2:cafe::a7) by VI1PR04CA0050.outlook.office365.com (2603:10a6:802:2::21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2835.18 via Frontend Transport; Mon, 23 Mar 2020 21:17:43 +0000
Authentication-Results: spf=pass (sender IP is 63.35.35.123) smtp.mailfrom=arm.com; ietf.org; dkim=pass (signature was verified) header.d=armh.onmicrosoft.com;ietf.org; dmarc=bestguesspass action=none header.from=arm.com;
Received-SPF: Pass (protection.outlook.com: domain of arm.com designates 63.35.35.123 as permitted sender) receiver=protection.outlook.com; client-ip=63.35.35.123; helo=64aa7808-outbound-1.mta.getcheckrecipient.com;
Received: from 64aa7808-outbound-1.mta.getcheckrecipient.com (63.35.35.123) by VE1EUR03FT033.mail.protection.outlook.com (10.152.18.147) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2814.13 via Frontend Transport; Mon, 23 Mar 2020 21:17:43 +0000
Received: ("Tessian outbound aed43bac6b97:v48"); Mon, 23 Mar 2020 21:17:43 +0000
X-CR-MTA-TID: 64aa7808
Received: from 17189cb8e83b.1 by 64aa7808-outbound-1.mta.getcheckrecipient.com id D949DA3D-14D2-41DC-A139-847F65D2CCDF.1; Mon, 23 Mar 2020 21:17:38 +0000
Received: from EUR01-DB5-obe.outbound.protection.outlook.com by 64aa7808-outbound-1.mta.getcheckrecipient.com with ESMTPS id 17189cb8e83b.1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384); Mon, 23 Mar 2020 21:17:38 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=aQib4qgvkKXiyalGJ3iiIe6h4D09ZOAosn0J5oeHZniVWsJacTouyVVmX4aNEESM0EohcZqv/4e5pY03KO905Q0nvy5J5uWaRosP3Mzbw5GOt8YWp89eTLUqRai58C2HpLOa2+Zzz9zaSm7CvgEVMkDRyjOtf3ZF79K8iaeA6MyRmOPFsRetoWBjznU97JU1ktFtyr5YCWmBWR3Ga0OfZ+ZLpgVefj5e+TRaOTmYW9ZUYyUdeki7miYYcK8NbglZ0gffPs2n7B+G7ZbOUMgZd0kShTh6YOm6gtKpdyio7vgWZQG7N+4wfsubamIskfBwltVBJQ3PQc09Xmyq9DanfA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=I8Ai1AgTAsgRDHHeIRlOWouiWWxDspfXXMmag8sZFKI=; b=PHjFC4Qe5lpKei/2r+9vddiPpB/JG9qgAaJVl2W3EHjmC2ao6GlcsyqlYrMxBEpqXNxf8RD+ND0WAY1bO4yDYrZ5l8IIp7d4Xdiz8lEIHDVJxm5koCapRkvShRzfoAOFkYC0IZlq2UcGlpkJ80WRSdGR/w8qRexv8YL+kHur5lSwpWg/HIxxTCfr3Rz0ts+tITh/iEGg2TPFs+GtWwwYlGBCXjQggyG+cNf2JHO7ErMJpv3VnTQ/3jCMpza+H0Hqe+L9i+I3D7V/Zx+IhTMgy5h+LzSkxnd0faJHqDN/jXughlIqooohpyiIV2OtEUoH/LRvPQ+lceBl27T4sX8fpw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=I8Ai1AgTAsgRDHHeIRlOWouiWWxDspfXXMmag8sZFKI=; b=s5F0mwqlpNz51rMTsmLaCZTNlIg37E/P8iHk2mTccS64u2xH7WN1iiI9qDQTf8nmj1cyDuuCj7PEA2hTpENaO/JAag9txsfF7zOmCoq3k/V2oXlaNJw8kAoWS8SrGJbvzeNvbCFsQri1iD8ACczm7L0m8hhwLZzHc3uZlOJuOhg=
Received: from AM0PR08MB3716.eurprd08.prod.outlook.com (20.178.23.205) by AM0PR08MB3106.eurprd08.prod.outlook.com (52.134.92.11) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2835.18; Mon, 23 Mar 2020 21:17:36 +0000
Received: from AM0PR08MB3716.eurprd08.prod.outlook.com ([fe80::2159:870b:25df:e612]) by AM0PR08MB3716.eurprd08.prod.outlook.com ([fe80::2159:870b:25df:e612%5]) with mapi id 15.20.2835.021; Mon, 23 Mar 2020 21:17:36 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: oauth <oauth@ietf.org>
Thread-Topic: WGLC on "JSON Web Token (JWT) Profile for OAuth 2.0 Access Tokens"
Thread-Index: AdYBWCr2leQdkb8yTTietiBUObuaNA==
Date: Mon, 23 Mar 2020 21:17:36 +0000
Message-ID: <AM0PR08MB37160B8A021052198699CD17FAF00@AM0PR08MB3716.eurprd08.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ts-tracking-id: ff647ddb-f6d3-499e-a1c2-c2ab16ed08db.0
x-checkrecipientchecked: true
Authentication-Results-Original: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
x-originating-ip: [213.162.72.204]
x-ms-publictraffictype: Email
X-MS-Office365-Filtering-HT: Tenant
X-MS-Office365-Filtering-Correlation-Id: f79ea57e-ca26-4bf8-d086-08d7cf6fa048
x-ms-traffictypediagnostic: AM0PR08MB3106:|AM6PR08MB4738:
X-Microsoft-Antispam-PRVS: <AM6PR08MB47386E4E405FB767C0233574FAF00@AM6PR08MB4738.eurprd08.prod.outlook.com>
x-checkrecipientrouted: true
nodisclaimer: true
x-ms-oob-tlc-oobclassifiers: OLM:6108;OLM:8882;
x-forefront-prvs: 0351D213B3
X-Forefront-Antispam-Report-Untrusted: SFV:NSPM; SFS:(10009020)(4636009)(396003)(376002)(136003)(366004)(346002)(39860400002)(5660300002)(966005)(6916009)(8936002)(316002)(2906002)(478600001)(66946007)(52536014)(6506007)(66446008)(64756008)(66556008)(66476007)(76116006)(7696005)(71200400001)(33656002)(26005)(186003)(55016002)(8676002)(86362001)(9686003)(4744005)(81156014)(81166006); DIR:OUT; SFP:1101; SCL:1; SRVR:AM0PR08MB3106; H:AM0PR08MB3716.eurprd08.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords;
received-spf: None (protection.outlook.com: arm.com does not designate permitted sender hosts)
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam-Untrusted: BCL:0;
X-Microsoft-Antispam-Message-Info-Original: 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
x-ms-exchange-antispam-messagedata: 8GnbuScbm9G/HLCUfF+bgMFV+5eT+4fezZ4KHdA5Pxh47nZRaD3xmlbUbo0hz5Ln+sd06SIEpU2gOZOVYvGcaUJfvoIh1y+ytUHLzVfPkYnLuMsrqdTK/m1ITVGeBhLlZrbyYmdshBD30tLVih1/bA==
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_AM0PR08MB37160B8A021052198699CD17FAF00AM0PR08MB3716eurp_"
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM0PR08MB3106
Original-Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
X-EOPAttributedMessage: 0
X-MS-Exchange-Transport-CrossTenantHeadersStripped: VE1EUR03FT033.eop-EUR03.prod.protection.outlook.com
X-Forefront-Antispam-Report: CIP:63.35.35.123; IPV:CAL; SCL:-1; CTRY:IE; EFV:NLI; SFV:NSPM; SFS:(10009020)(4636009)(346002)(39860400002)(396003)(136003)(376002)(46966005)(336012)(70586007)(70206006)(6506007)(8676002)(86362001)(8936002)(47076004)(81156014)(81166006)(2906002)(6916009)(9686003)(55016002)(33656002)(966005)(52536014)(7696005)(316002)(36906005)(26826003)(186003)(26005)(478600001)(5660300002)(356004); DIR:OUT; SFP:1101; SCL:1; SRVR:AM6PR08MB4738; H:64aa7808-outbound-1.mta.getcheckrecipient.com; FPR:; SPF:Pass; LANG:en; PTR:ec2-63-35-35-123.eu-west-1.compute.amazonaws.com;
X-MS-Office365-Filtering-Correlation-Id-Prvs: f1f1612d-f6d1-4e70-531f-08d7cf6f9c5b
X-Forefront-PRVS: 0351D213B3
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 23 Mar 2020 21:17:43.2319 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: f79ea57e-ca26-4bf8-d086-08d7cf6fa048
X-MS-Exchange-CrossTenant-Id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=f34e5979-57d9-4aaa-ad4d-b122a662184d; Ip=[63.35.35.123]; Helo=[64aa7808-outbound-1.mta.getcheckrecipient.com]
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM6PR08MB4738
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/4ff2vN1itzkepnmn1qpov8B-8OE>
Subject: [OAUTH-WG] WGLC on "JSON Web Token (JWT) Profile for OAuth 2.0 Access Tokens"
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth/>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 23 Mar 2020 21:17:50 -0000

Hi all,
this is a working group last call for "JSON Web Token (JWT) Profile for OAuth 2.0 Access Tokens".

Here is the document:
https://tools.ietf.org/html/draft-ietf-oauth-access-token-jwt-04

Please send you comments to the OAuth mailing list by April 6, 2020.

Ciao
Hannes & Rifaat
IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.