{"id":1442,"date":"2015-08-28T17:54:08","date_gmt":"2015-08-29T00:54:08","guid":{"rendered":"https:\/\/self-issued.info\/?p=1442"},"modified":"2015-11-25T15:13:13","modified_gmt":"2015-11-25T23:13:13","slug":"proof-of-possession-key-semantics-for-jwts-spec-addressing-remaining-comments","status":"publish","type":"post","link":"https:\/\/self-issued.info\/?p=1442","title":{"rendered":"Proof-of-Possession Key Semantics for JWTs spec addressing remaining comments"},"content":{"rendered":"<p><span class=\"plain\"><img decoding=\"async\" align=\"right\" src=\"https:\/\/self-issued.info\/images\/oauth_logo_120x120.png\" alt=\"OAuth logo\"\/><\/span>Proof-of-Possession Key Semantics for JWTs draft -04 addresses the remaining working group comments received &#8212; both a few leftover WGLC comments and comments received during <a href=\"http:\/\/www.ietf.org\/meeting\/93\/\">IETF 93 in Prague<\/a>.  The changes were:<\/p>\n<ul>\n<li>Allowed the use of &#8220;<code>jwk<\/code>&#8221; for symmetric keys when the JWT is encrypted.<\/li>\n<li>Added the &#8220;<code>jku<\/code>&#8221; (JWK Set URL) member.<\/li>\n<li>Added privacy considerations.<\/li>\n<li>Reordered sections so that the &#8220;<code>cnf<\/code>&#8221; (confirmation) claim is defined before it is used.<\/li>\n<li>Noted that applications can define new claim names, in addition to &#8220;<code>cnf<\/code>&#8220;, to represent additional proof-of-possession keys, using the same representation as &#8220;<code>cnf<\/code>&#8220;.<\/li>\n<li>Applied wording clarifications suggested by Nat Sakimura.<\/li>\n<\/ul>\n<p>The updated specification is available at:<\/p>\n<ul>\n<li><a href=\"http:\/\/tools.ietf.org\/html\/draft-ietf-oauth-proof-of-possession-04\">http:\/\/tools.ietf.org\/html\/draft-ietf-oauth-proof-of-possession-04<\/a><\/li>\n<\/ul>\n<p>An HTML formatted version is also available at:<\/p>\n<ul>\n<li><a href=\"https:\/\/self-issued.info\/docs\/draft-ietf-oauth-proof-of-possession-04.html\">https:\/\/self-issued.info\/docs\/draft-ietf-oauth-proof-of-possession-04.html<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Proof-of-Possession Key Semantics for JWTs draft -04 addresses the remaining working group comments received &#8212; both a few leftover WGLC comments and comments received during IETF 93 in Prague. The changes were: Allowed the use of &#8220;jwk&#8221; for symmetric keys when the JWT is encrypted. Added the &#8220;jku&#8221; (JWK Set URL) member. Added privacy considerations. [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[8,28,27,26,25],"tags":[],"class_list":["post-1442","post","type-post","status-publish","format-standard","hentry","category-claims","category-cryptography","category-json","category-oauth","category-specifications"],"_links":{"self":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/1442","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1442"}],"version-history":[{"count":3,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/1442\/revisions"}],"predecessor-version":[{"id":1495,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/1442\/revisions\/1495"}],"wp:attachment":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1442"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1442"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1442"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}