Re: [OAUTH-WG] [apps-discuss] FW: Appsdir review of draft-ietf-oauth-v2-23

2012-03-21 Thread Derek Atkins
with Michelle @ IANA I can help coordinate a meeting in Paris next week (assuming you are attending). ht -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant

[OAUTH-WG] OAUTH Report for IETF-83

2012-03-29 Thread Derek Atkins
and feedback. Our goal is to send it to the IESG for approval on their April 26th telechat. This would hopefully result in approval on the May 10th chat, after public comment. We finished the meeting at 14h30. -- Derek Atkins 617-623-3745 de...@ihtfp.com

Re: [OAUTH-WG] OAUTH Report for IETF-83

2012-03-30 Thread Derek Atkins
Report for IETF-83 To: William Mills wmi...@yahoo-inc.com, Derek Atkins de...@ihtfp.com, s...@ietf.org s...@ietf.org, oauth@ietf.org oauth@ietf.org ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

Re: [OAUTH-WG] OAUTH Report for IETF-83

2012-03-30 Thread Derek Atkins
: [OAUTH-WG] OAUTH Report for IETF-83 To: Eran Hammer e...@hueniverse.com, Derek Atkins de...@ihtfp.com, s...@ietf.org s...@ietf.org, oauth@ietf.org oauth@ietf.org ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

Re: [OAUTH-WG] Meeting Minutes - IETF#83

2012-04-04 Thread Derek Atkins
and let us know if there is something missing: http://www.ietf.org/proceedings/83/minutes/minutes-83-oauth.txt Ciao Hannes Derek ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth -- Derek Atkins

Re: [OAUTH-WG] Updated Charter to the IESG (this weekend)

2012-04-16 Thread Derek Atkins
items onto the plate, theoretically. -- Justin -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https

Re: [OAUTH-WG] [apps-discuss] Web Finger vs. Simple Web Discovery (SWD)

2012-04-16 Thread Derek Atkins
. Play ball! -MSK ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security

Re: [OAUTH-WG] Dynamic Client Registration

2012-04-16 Thread Derek Atkins
, the WG may choose to delay work on this document until ready. I don't feel that this is explicitly required, but I have no objection to making it clearer in the charter that the DCR is dependent on Discovery. Hannes? EH -derek -- Derek Atkins 617-623-3745 de

Re: [OAUTH-WG] [apps-discuss] Web Finger vs. Simple Web Discovery (SWD)

2012-04-20 Thread Derek Atkins
reasonable and generally acceptable to have a server that provides data in multiple formats whereas the client only supports a subset and specifies which format(s) are acceptable. /OAUTH Char Hat -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com

Re: [OAUTH-WG] [apps-discuss] Web Finger vs. Simple Web Discovery (SWD)

2012-04-23 Thread Derek Atkins
. Mike -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

Re: [OAUTH-WG] [apps-discuss] Web Finger vs. Simple Web Discovery (SWD)

2012-04-23 Thread Derek Atkins
application using just JSON. It doesn't have to worry about receiving XML, because it will always get JSON. As for your abstract model issue.. Maybe Mike was right and we SHOULD use ASN.1! :-D Then we could have defined encodings to XML or JSON ;) -Tim -derek -- Derek Atkins

Re: [OAUTH-WG] [apps-discuss] Web Finger vs. Simple Web Discovery (SWD)

2012-04-23 Thread Derek Atkins
Michael Thomas m...@mtcc.com writes: Derek Atkins wrote: Michael Thomas m...@mtcc.com writes: Why not MUST ASN.1 while you're at it? JSON has won in case you'all haven't noticed it. Well, now that you mention it... ;-) But seriously, we're basing this work on an RFC that was just

Re: [OAUTH-WG] Shepherd review of draft-ietf-oauth-v2-threatmodel

2012-04-25 Thread Derek Atkins
. Thank you, Eran. EH -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman

Re: [OAUTH-WG] FYI - Text resolving DISCUSS issue about Bearer URI Query Parameter method

2012-05-24 Thread Derek Atkins
feedback on this (it has been mentioned during IETF LC multiple times). Best regards, Julian -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant

[OAUTH-WG] On the OAuth Core Spec

2012-06-12 Thread Derek Atkins
)? Thanks, and again, our apologies, -derek, co-chair -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https

Re: [OAUTH-WG] Oauth 2 and discovery

2012-06-12 Thread Derek Atkins
should just write up a separate draft that has the IANA registry items and other ancillary data necessary. It could probably go through as an informational draft, too, and possibly even an individual submission. -bill -derek -- Derek Atkins 617-623-3745 de

Re: [OAUTH-WG] Meeting slot for the Vancouver IETF meeting requested

2012-07-30 Thread Derek Atkins
___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant

[OAUTH-WG] Remote Participation for Vancouver (was Re: Meeting slot for the Vancouver IETF meeting requested)

2012-08-01 Thread Derek Atkins
in. -derek Torsten Lodderstedt tors...@lodderstedt.net writes: Hi Derek, I will give it a try. Where can I find the respective meeting data? regards, Torsten. Am 30.07.2012 19:55, schrieb Derek Atkins: We will have a WebEx available if you can attend remotely? That's my plan, as I cannot

Re: [OAUTH-WG] A question on draft-ietf-oauth-v2-http-mac-01

2012-09-10 Thread Derek Atkins
-derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

Re: [OAUTH-WG] 答复: Re: A question on draft-ietf-oauth-v2-http-mac-01

2012-09-10 Thread Derek Atkins
back to the AS during that period. Otherwise the AS becomes a single point of failure and a bottleneck. -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant

Re: [OAUTH-WG] 答复: Re: 答复: Re: A question on draft-ietf-oauth-v2-http-mac-01

2012-09-17 Thread Derek Atkins
. Therefore your statement above is invalid. -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org

[OAUTH-WG] More reviewers of the OAuth Security draft?

2012-09-17 Thread Derek Atkins
Hi, This is a request for more reviews of the OAuth Security Draft. You can find it at http://datatracker.ietf.org/doc/draft-tschofenig-oauth-security/ Thanks! -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer

Re: [OAUTH-WG] [Editorial Errata Reported] RFC6749 (3446)

2013-01-09 Thread Derek Atkins
to their won't help that. I suggest editing the corrected text to by changing the resource owner's password before marking this as Verified. Yep, I suggested that same change in a private email to Stephen, so I would prefer this modification. Barry -derek -- Derek Atkins

Re: [OAUTH-WG] Last call review of draft-ietf-oauth-dyn-reg-10

2013-06-03 Thread Derek Atkins
, either side should be able to rotate keys. It should not be only one side's choice; either side should have the option to refresh due to local policy (or worse, local knowledge of an issue). -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com

Re: [OAUTH-WG] Client Instances of An Application - Was: Re: Last call review of draft-ietf-oauth-dyn-reg-10

2013-06-03 Thread Derek Atkins
of a client gets its own ID and a locally-stored secret. -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org

Re: [OAUTH-WG] Protocol Action: 'OAuth 2.0 Token Revocation' to Proposed Standard (draft-ietf-oauth-revocation-11.txt)

2013-08-22 Thread Derek Atkins
/listinfo/oauth -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

Re: [OAUTH-WG] Current Progress in use case document?

2013-08-22 Thread Derek Atkins
https://www.ietf.org/mailman/listinfo/oauth -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org

[OAUTH-WG] OAuth Agenda for IETF-88

2013-10-31 Thread Derek Atkins
* draft-richer-oauth-dyn-reg-management * ... -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https

Re: [OAUTH-WG] OAuth Agenda for IETF-88

2013-10-31 Thread Derek Atkins
Just a clarification: if you are making a status update slides are NOT required. The slide info was if you WERE planning to make slides. Sorry for any confusion. See you Monday! -derek On Thu, October 31, 2013 4:07 pm, Derek Atkins wrote: The IETF is next week, and OAuth meets Monday

Re: [OAUTH-WG] OAuth Agenda for IETF-88

2013-10-31 Thread Derek Atkins
Yes, that is the main topic of discussion. -derek Sent from my HTC smartphone - Reply message - From: Anthony Nadalin tony...@microsoft.com To: Derek Atkins de...@ihtfp.com, oauth@ietf.org oauth@ietf.org Subject: [OAUTH-WG] OAuth Agenda for IETF-88 Date: Thu, Oct 31, 2013 7:21 PM

Re: [OAUTH-WG] IETF WG Follow-up

2013-11-05 Thread Derek Atkins
___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing

[OAUTH-WG] Draft Minutes from IETF-88

2013-11-06 Thread Derek Atkins
NOTE: Please let me know if you find any issues with the minutes; I'll upload a final version with any necessary changes. -derek OAUTH WG - IETF 88 PARTICIPANTS * Anthony Nadlin (AN) * Brian Campbell (BN) * Derek Atkins (DA) * John Bradley (JB) * Justin Richer (JR) * Mike Jones

Re: [OAUTH-WG] Thurs tap and barrel

2013-11-07 Thread Derek Atkins
. Suggest we meet for 6:30 at hotel lobby. Phil ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer

[OAUTH-WG] Request for Agenda Items for IETF-89

2014-01-07 Thread Derek Atkins
have other issues that require dedicated time, please let me know too! Thanks, -derek, OAuth co-chair -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant

Re: [OAUTH-WG] Fwd: Tutorials (OAuth, Kerberos, PKI) for ACE BOF Preparation

2014-02-25 Thread Derek Atkins
/oauth___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant

[OAUTH-WG] OAUTH Presentation Slides

2014-03-03 Thread Derek Atkins
Hi, If you have a slot to speak tomorrow and are using slides please make sure to send the slides to Hannes and I, preferably in PDF format. This way I can upload them before the meeting tomorrow morning. Thanks! -derek -- Derek Atkins 617-623-3745 de

Re: [OAUTH-WG] Question lengths in draft-sakimura-oauth-tcse-03

2014-05-12 Thread Derek Atkins
@ietf.org https://www.ietf.org/mailman/listinfo/oauth -- Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory Member, MIT Student Information Processing Board (SIPB) URL: http://web.mit.edu/warlord/PP-ASEL-IA N1NWH warl...@mit.eduPGP

[OAUTH-WG] Call for Agenda Items for IETF-92

2015-01-28 Thread Derek Atkins
HI, IETF-92 in Dallas is 50-some days away. If you feel you want agenda time to talk about a draft or topic please get your requests into the chairs. Thanks, -derek and hannes -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer

[OAUTH-WG] Request for slides for WG meeting

2015-03-22 Thread Derek Atkins
Hi, Can all speakers please send us your slides for the OAuth meeting. I'd prefer to receive them in PDF format. Please send them ASAP (and before lunch tomorrow). Thanks, -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com

[OAUTH-WG] WGLC for draft-ietf-oauth-proof-of-possession-01

2015-03-10 Thread Derek Atkins
. See you there! -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth

[OAUTH-WG] [Fwd: IPR Disclosure Kirsten Aldrich's Statement about IPR related to RFC 6749]

2015-03-24 Thread Derek Atkins
of the IPR disclosure is Kirsten Aldrich's Statement about IPR related to RFC 6749 Thank you IETF Secretariat -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant

[OAUTH-WG] [Fwd: oauth - Requested session has been scheduled for IETF 92]

2015-02-27 Thread Derek Atkins
. - -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https

[OAUTH-WG] Review of draft-ietf-oauth-pop-architecture

2015-07-10 Thread Derek Atkins
provide a pointer to the protections then, too. -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant ___ OAuth mailing list OAuth@ietf.org https

Re: [OAUTH-WG] Chair volunteers

2017-03-30 Thread Derek Atkins
lty. I do plan to continue my involvement to the best of my ability. I encourage people to step up and volunteer to co-chair the group. > Ciao > Hannes -derek -- Derek Atkins 617-623-3745 de...@ihtfp.com www.ihtfp.com Compu