{"id":2569,"date":"2024-09-13T18:16:25","date_gmt":"2024-09-14T01:16:25","guid":{"rendered":"https:\/\/self-issued.info\/?p=2569"},"modified":"2024-09-13T18:16:25","modified_gmt":"2024-09-14T01:16:25","slug":"oauth-2-0-protected-resource-metadata-draft-addressing-reviews-since-ietf-last-call","status":"publish","type":"post","link":"https:\/\/self-issued.info\/?p=2569","title":{"rendered":"OAuth 2.0 Protected Resource Metadata draft addressing reviews since IETF Last Call"},"content":{"rendered":"<p><span class=\"plain\"><img decoding=\"async\" align=\"right\" alt=\"OAuth logo\" src=\"https:\/\/self-issued.info\/images\/oauth_logo_120x120.png\"><a href=\"https:\/\/x.com\/aaronpk\">Aaron Parecki<\/a> and I published a new version the &#8220;OAuth 2.0 Protected Resource Metadata&#8221; specification that addresses the review comments received since the IETF Last Call.  Per the history entries, the changes were:<\/p>\n<ul>\n<li>Added metadata values declaring support for DPoP and mutual-TLS client certificate-bound access tokens.<\/li>\n<li>Added missing word caught during IANA review.<\/li>\n<li>Addressed ART, SecDir, and OpsDir review comments by Arnt Gulbrandsen, David Mandelberg, and Bo Wu, resulting in the following changes:<\/li>\n<li>Added step numbers to sequence diagram.<\/li>\n<li>Defined meaning of omitting <code>bearer_methods_supported metadata<\/code> parameter.<\/li>\n<li>Added internationalization of human-readable metadata values using the mechanism from [<a href=\"https:\/\/www.rfc-editor.org\/rfc\/rfc7591.html\">RFC7591<\/a>].<\/li>\n<li>Added <code>resource_name<\/code> metadata parameter, paralleling <code>client_name<\/code> in [<a href=\"https:\/\/www.rfc-editor.org\/rfc\/rfc7591.html\">RFC7591<\/a>].<\/li>\n<li>Added Security Considerations section on metadata caching.<\/li>\n<li>Used and referenced Resource Identifier definition.<\/li>\n<li>Added motivating example of an email client to intro.<\/li>\n<\/ul>\n<p>The specification is available at:<\/p>\n<ul>\n<li><a href=\"https:\/\/www.ietf.org\/archive\/id\/draft-ietf-oauth-resource-metadata-09.html\">https:\/\/www.ietf.org\/archive\/id\/draft-ietf-oauth-resource-metadata-09.html<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Aaron Parecki and I published a new version the &#8220;OAuth 2.0 Protected Resource Metadata&#8221; specification that addresses the review comments received since the IETF Last Call. Per the history entries, the changes were: Added metadata values declaring support for DPoP and mutual-TLS client certificate-bound access tokens. Added missing word caught during IANA review. Addressed ART, [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[32,26,25],"tags":[],"class_list":["post-2569","post","type-post","status-publish","format-standard","hentry","category-ietf","category-oauth","category-specifications"],"_links":{"self":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/2569","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2569"}],"version-history":[{"count":2,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/2569\/revisions"}],"predecessor-version":[{"id":2571,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/2569\/revisions\/2571"}],"wp:attachment":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2569"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2569"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2569"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}