[GNAP] client definition

Tom Jones <thomasclinganjones@gmail.com> Sun, 13 December 2020 18:04 UTC

Return-Path: <thomasclinganjones@gmail.com>
X-Original-To: txauth@ietfa.amsl.com
Delivered-To: txauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5D7FC3A08AF for <txauth@ietfa.amsl.com>; Sun, 13 Dec 2020 10:04:08 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.197
X-Spam-Level:
X-Spam-Status: No, score=-0.197 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_FONT_FACE_BAD=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Ob1HwU__V9ki for <txauth@ietfa.amsl.com>; Sun, 13 Dec 2020 10:04:07 -0800 (PST)
Received: from mail-oo1-xc2a.google.com (mail-oo1-xc2a.google.com [IPv6:2607:f8b0:4864:20::c2a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 299D73A08B0 for <txauth@ietf.org>; Sun, 13 Dec 2020 10:04:07 -0800 (PST)
Received: by mail-oo1-xc2a.google.com with SMTP id i18so3435667ooh.5 for <txauth@ietf.org>; Sun, 13 Dec 2020 10:04:07 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:from:date:message-id:subject:to; bh=d2sXQyalr7rezSsZ7XaiZMvuG0J50JLN6r1QWSGkIFQ=; b=NNQPi15rUs6nVCSBeW1AnmIzT9/4kK7ToMF4EnO+3cz9tTiHcwsgd0HGJLHRzLDwJk /TpCRh3WKYGvgy5on5XeBZoF+NBg1ChujLBIMz6K79m+YJ7cCyqiFVkm1D2/e26/ZtmE LCbAD6Bqzbx/oqkOm+0q4lbvj0gWTNQ5/3yFhpaQ9zdLkgtsSdn4jKxDrh/PCKwoWIWN WeRoIGyHA3I4v405dy/oB+d/T8ixF5+2pmrYkrCppxSqW40wVj4YYxoDuk6b2EYQ4eXS 4VlzIZSTnCrw1WwOQP8Q3I/tXlQOA/1rWFYwtTIiIMKuPeutbXr7Eie2nkWBB8RlfFW+ 7nUw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:from:date:message-id:subject:to; bh=d2sXQyalr7rezSsZ7XaiZMvuG0J50JLN6r1QWSGkIFQ=; b=XpDqTT5WosJ1oynuNJzuYC+OH0zNus1ptFzt8FCOp4WQ9NfDp4oXHVSqfYqjV0BdLu 4e4SUiQR3rs675525ebX600oXxwO8/DjGnCUhDJkwkYzpbCkdFfu3cotQrz/Jgfis2BR TTDXNkBaZB7kaT+6lwPM3kR/iMrQXUHABA8ICTNX0cEVLuZ/5canpvcU0Ir6eKGVynjp /1LGRWwlh9HkjtuXWpqYz/FI7O/RBKd0A+9OAKESsfO6u/lkK3dVrMnFiMDv5omlKOVE ph96ou9eT0qfloZlWNrJbp0zxXst5U9BE2MsW665EZAv/WvrcVP3zLYj6/OGJwXCadbP VcWw==
X-Gm-Message-State: AOAM531ODBZKo6NOJR6MyPtmDIELK6IgsBjMdirdxIoJrmJCP5qRq5kU uDiZzt3jgBdSULNXhGHikCGLWcNMYJFl8575JzaxVMx0IXulAA==
X-Google-Smtp-Source: ABdhPJzgsU15Of3BifyNGpS3MeRXjh4MnJ8DffTVHaAd9tXMISkQgsQoaOiWHZLejnxcF5us/YBpPG+3hELrOX86480=
X-Received: by 2002:a4a:a3cb:: with SMTP id t11mr16761976ool.30.1607882645842; Sun, 13 Dec 2020 10:04:05 -0800 (PST)
MIME-Version: 1.0
From: Tom Jones <thomasclinganjones@gmail.com>
Date: Sun, 13 Dec 2020 10:03:54 -0800
Message-ID: <CAK2Cwb6f1TVraaAJh9bLkkRDVeooVFJExYsZizkGy61dXRERWA@mail.gmail.com>
To: txauth gnap <txauth@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000f22d8505b65c59c8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/txauth/psCEU0HD0vYTfn58LQbOsuidFyU>
Subject: [GNAP] client definition
X-BeenThere: txauth@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: GNAP <txauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/txauth>, <mailto:txauth-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/txauth/>
List-Post: <mailto:txauth@ietf.org>
List-Help: <mailto:txauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/txauth>, <mailto:txauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 13 Dec 2020 18:04:08 -0000

This definition is highly use case specific. It leaves out the possibility
of (eg) a self-issued identifier where the RP displays a request to the
user on a web page, the user clicks the button and the result is that a
wallet on the user's device acting as the AS sends an access token to the
RP (which is typically the client in an OAUTH sense.) The underlined part
is often incorrect.

Client

   - Definition: application *used by an end-user* to interact with an AS
   or a RS

suggestion: Client, an application that desires to get access privileges
from a user to resources on an RS, possibly by way of an AS.

Peace ..tom