Hi all,

a new (significantly enhanced) revision of draft-lodderstedt-oauth-rar was just 
published. Here is the list of changes:

        • Reworked examples to illustrate privacy preserving use of 
authorization_details
        • Added text on audience restriction
        • Added description of relationship between scope and 
authorization_details
        • Added text on token request & response and authorization_details
        • Added text on how authorization details are conveyed to RSs by JWTs 
or token endpoint response
        • Added description of relationship between claims and 
authorization_details
        • Added more example from different sectors
        • Clarified string comparison to be byte-exact without collation

Thanks a lot for all contributions and the review feedback so far. I will 
present this draft in Singapore and would appreciate if the WG would consider 
this draft for adoption. 

best regards,
Torsten. 

> Begin forwarded message:
> 
> From: [email protected]
> Subject: New Version Notification for draft-lodderstedt-oauth-rar-03.txt
> Date: 4. November 2019 at 17:43:01 CET
> To: "Justin Richer" <[email protected]>, "Torsten Lodderstedt" 
> <[email protected]>, "Brian Campbell" <[email protected]>
> 
> 
> A new version of I-D, draft-lodderstedt-oauth-rar-03.txt
> has been successfully submitted by Torsten Lodderstedt and posted to the
> IETF repository.
> 
> Name:         draft-lodderstedt-oauth-rar
> Revision:     03
> Title:                OAuth 2.0 Rich Authorization Requests
> Document date:        2019-11-03
> Group:                Individual Submission
> Pages:                30
> URL:            
> https://www.ietf.org/internet-drafts/draft-lodderstedt-oauth-rar-03.txt
> Status:         https://datatracker.ietf.org/doc/draft-lodderstedt-oauth-rar/
> Htmlized:       https://tools.ietf.org/html/draft-lodderstedt-oauth-rar-03
> Htmlized:       
> https://datatracker.ietf.org/doc/html/draft-lodderstedt-oauth-rar
> Diff:           
> https://www.ietf.org/rfcdiff?url2=draft-lodderstedt-oauth-rar-03
> 
> Abstract:
>   This document specifies a new parameter "authorization_details" that
>   is used to carry fine grained authorization data in the OAuth
>   authorization request.
> 
> 
> 
> 
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org.
> 
> The IETF Secretariat
> 

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
OAuth mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/oauth

Reply via email to