I agree we don't want to end up like other protocols that were too generic. :)

The use case I am arguing for is sending encrypted tokens. Higher levels of 
assurance require this and various people brought this up as a requirement when 
WRAP was presented at IIW 09B.

-- Dick

On 2010-07-10, at 11:06 AM, Eran Hammer-Lahav wrote:

> We need to get this into a proper draft (which I understand is on Dirk's 
> list) and do a round of feedback before we promote this to a WG draft. I'm 
> happy to help with editorial work if needed. 
> Given the wide range of use cases, I think we need to keep this work focused 
> on the use cases driving it, and not try to make it too generic. 

OAuth mailing list

Reply via email to