Events without label "editorial"
Issues
------
* oauth-wg/oauth-transaction-tokens (+0/-0/💬2)
1 issues received 2 new comments:
- #351 Using RFC 9396's authorization_details as a claim and for
request_context (2 by ashayraut, embesozzi)
https://github.com/oauth-wg/oauth-transaction-tokens/issues/351
* oauth-wg/draft-ietf-oauth-attestation-based-client-auth (+0/-9/💬10)
8 issues received 10 new comments:
- #172 DPoP key binding via cnf.jkt in RFC7523 client assertions as an
alternative (1 by paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/172 [pending-close]
- #170 Client metadata ? (1 by paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/170 [discuss] [ready-for-pr]
- #168 Integrity protecting HTTP requests using DPoP and Client Attestations (3 by Ocramius, paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/168 [pending-close] [out-of-scope]
- #159 The Client Attestation PoP JWT should be able to support a data origin authentication service (1 by paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/159 [pending-close]
- #155 The privacy considerations in section 11 from RFC 9334 should be endorsed (1 by paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/155 [pending-close]
- #153 Should this document be applicable both to Authorization Servers and Resource Servers ? (1 by paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/153 [pending-close]
- #123 Similar proposal in AT Protocol: DPoP-bound private_key_jwt client authentication (1 by paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/123 [pending-close]
- #61 IETF 118 : Should this mechanism be used in parallel with Client Authentication /with Dynamic Client Registration (1 by paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/61 [pending-close]
9 issues closed:
- Should this document be applicable both to Authorization Servers and Resource Servers ? https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/153 [pending-close]
- IETF 118 : Should this mechanism be used in parallel with Client Authentication /with Dynamic Client Registration https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/61 [pending-close]
- The privacy considerations in section 11 from RFC 9334 should be endorsed https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/155 [pending-close]
- The Client Attestation PoP JWT should be able to support a data origin authentication service https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/159 [pending-close]
- Integrity protecting HTTP requests using DPoP and Client Attestations https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/168 [pending-close] [out-of-scope]
- Similar proposal in AT Protocol: DPoP-bound private_key_jwt client authentication https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/123 [pending-close]
- DPoP key binding via cnf.jkt in RFC7523 client assertions as an alternative https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/172 [pending-close]
- mention that the attester key could be obtained from client's jwks? https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/182 [ready-for-pr]
- Trust https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/3 [has-pr]
* oauth-wg/oauth-identity-assertion-authz-grant (+0/-0/💬1)
1 issues received 1 new comments:
- #83 Interoperability gap: JIT provisioning and identity claim negotiation (1
by mcguinness)
https://github.com/oauth-wg/oauth-identity-assertion-authz-grant/issues/83 [ietf-126]
* oauth-wg/draft-ietf-oauth-client-id-metadata-document (+0/-0/💬1)
1 issues received 1 new comments:
- #78 Can AS optionally provide `iss` when fetching client_id? (1 by ciamshrek)
https://github.com/oauth-wg/draft-ietf-oauth-client-id-metadata-document/issues/78
Pull requests
-------------
* oauth-wg/oauth-identity-chaining (+1/-0/💬0)
1 pull requests submitted:
- (by bc-pi)
* oauth-wg/draft-ietf-oauth-attestation-based-client-auth (+0/-0/💬1)
1 pull requests received 1 new comments:
- #189 3 trust (1 by paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/pull/189
* oauth-wg/oauth-identity-assertion-authz-grant (+1/-0/💬0)
1 pull requests submitted:
- (by mcguinness)
Repositories tracked by this digest:
-----------------------------------
* https://github.com/oauth-wg/oauth-browser-based-apps
* https://github.com/oauth-wg/oauth-identity-chaining
* https://github.com/oauth-wg/oauth-transaction-tokens
* https://github.com/oauth-wg/oauth-sd-jwt-vc
* https://github.com/oauth-wg/draft-ietf-oauth-resource-metadata
* https://github.com/oauth-wg/oauth-cross-device-security
* https://github.com/oauth-wg/oauth-selective-disclosure-jwt
* https://github.com/oauth-wg/oauth-v2-1
* https://github.com/oauth-wg/draft-ietf-oauth-status-list
* https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth
* https://github.com/oauth-wg/oauth-identity-assertion-authz-grant
* https://github.com/oauth-wg/draft-ietf-oauth-rfc8725bis
* https://github.com/oauth-wg/draft-ietf-oauth-rfc7523bis
* https://github.com/oauth-wg/oauth-first-party-apps
* https://github.com/oauth-wg/draft-ietf-oauth-client-id-metadata-document
--
To have a summary like this sent to your list, see:
https://github.com/ietf-github-services/activity-summary
_______________________________________________
OAuth mailing list -- [email protected]
To unsubscribe send an email to [email protected]