{"id":700,"date":"2012-04-13T18:54:33","date_gmt":"2012-04-14T01:54:33","guid":{"rendered":"https:\/\/self-issued.info\/?p=700"},"modified":"2012-04-13T18:54:33","modified_gmt":"2012-04-14T01:54:33","slug":"april-10-2012-openid-connect-update-release","status":"publish","type":"post","link":"https:\/\/self-issued.info\/?p=700","title":{"rendered":"April 10, 2012 OpenID Connect Update Release"},"content":{"rendered":"<p><span class=\"plain\"><img decoding=\"async\" align=\"right\" src=\"https:\/\/self-issued.info\/images\/openid-logo.png\" alt=\"OpenID logo\" \/><\/span>The <a href=\"http:\/\/openid.net\/wg\/connect\/\">OpenID Connect working group<\/a> has released an update to the OpenID Connect specifications that continues incorporating significant developer feedback received, while maintaining as much compatibility with the <a href=\"https:\/\/self-issued.info\/?p=649\">implementer&#8217;s drafts<\/a> as possible.  The Connect specs have also been updated to track updates to the OAuth and JOSE specs, which they use.  The primary normative changes are as follows:<\/p>\n<ul>\n<li>Make changes to allow path in the issuer_identifier, per issue #513<\/li>\n<li>Add hash and hash check of access_token and code to id_token, per issue #510<\/li>\n<li>Split encrypted response configurations into separate parameters for alg, enc, int<\/li>\n<li>Added optional id_token to authorization request parameters, per issue #535<\/li>\n<li>Now requested claims add to those requested with scope values, rather than replacing them, per issue #547<\/li>\n<li>Added error interaction_required and removed user_mismatched, per issue #523<\/li>\n<li>Changed invalid_request_redirect_uri to invalid_redirect_uri, per issue #553<\/li>\n<li>Removed &#8220;embedded&#8221; display type, since its semantics were not well defined, per issue #514<\/li>\n<\/ul>\n<p>A significant non-normative addition is:<\/p>\n<ul>\n<li>Add example JS code for Basic client<\/li>\n<\/ul>\n<p>Implementers are particularly encouraged to build and provide feedback on the new and modified features.<\/p>\n<p>The new versions are available from <a href=\"http:\/\/openid.net\/connect\/\">http:\/\/openid.net\/connect\/<\/a> or at:<\/p>\n<ul>\n<li><a href=\"http:\/\/openid.net\/specs\/openid-connect-basic-1_0-17.html\">http:\/\/openid.net\/specs\/openid-connect-basic-1_0-17.html<\/a><\/li>\n<li><a href=\"http:\/\/openid.net\/specs\/openid-connect-discovery-1_0-08.html\">http:\/\/openid.net\/specs\/openid-connect-discovery-1_0-08.html<\/a><\/li>\n<li><a href=\"http:\/\/openid.net\/specs\/openid-connect-registration-1_0-10.html\">http:\/\/openid.net\/specs\/openid-connect-registration-1_0-10.html<\/a><\/li>\n<li><a href=\"http:\/\/openid.net\/specs\/openid-connect-messages-1_0-09.html\">http:\/\/openid.net\/specs\/openid-connect-messages-1_0-09.html<\/a><\/li>\n<li><a href=\"http:\/\/openid.net\/specs\/openid-connect-standard-1_0-09.html\">http:\/\/openid.net\/specs\/openid-connect-standard-1_0-09.html<\/a><\/li>\n<li><a href=\"http:\/\/openid.net\/specs\/openid-connect-session-1_0-06.html\">http:\/\/openid.net\/specs\/openid-connect-session-1_0-06.html<\/a><\/li>\n<li><a href=\"http:\/\/openid.net\/specs\/oauth-v2-multiple-response-types-1_0-04.html\">http:\/\/openid.net\/specs\/oauth-v2-multiple-response-types-1_0-04.html<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>The OpenID Connect working group has released an update to the OpenID Connect specifications that continues incorporating significant developer feedback received, while maintaining as much compatibility with the implementer&#8217;s drafts as possible. The Connect specs have also been updated to track updates to the OAuth and JOSE specs, which they use. The primary normative changes [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[8,27,26,14,25],"tags":[],"class_list":["post-700","post","type-post","status-publish","format-standard","hentry","category-claims","category-json","category-oauth","category-openid","category-specifications"],"_links":{"self":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/700","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=700"}],"version-history":[{"count":6,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/700\/revisions"}],"predecessor-version":[{"id":706,"href":"https:\/\/self-issued.info\/index.php?rest_route=\/wp\/v2\/posts\/700\/revisions\/706"}],"wp:attachment":[{"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=700"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=700"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/self-issued.info\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=700"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}