From: Mike Jones
Sent: Wednesday, November 19, 2014 5:22 PM
To: j...@ietf.org
Cc: Pete Resnick; Stephen Farrell; Richard Barnes
Subject: JOSE -37 and JWT -31 drafts addressing remaining IESG review comments

These JOSE and JWT drafts contain updates intended to address the remaining 
outstanding IESG review comments by Pete Resnick, Stephen Farrell, and Richard 
Barnes, other than one that Pete may still provide text for.  Algorithm names 
are now restricted to using only ASCII characters, the TLS requirements 
language has been refined, the language about integrity protecting header 
parameters used in trust decisions has been augmented, we now say what to do 
when an RSA private key with "oth" is encountered but not supported, and we now 
talk about JWSs with invalid signatures being considered invalid, rather than 
them being rejected.  Also, added the CRT parameter values to example JWK RSA 
private key representations.

The specifications are available at:

*         http://tools.ietf.org/html/draft-ietf-jose-json-web-signature-37

*         http://tools.ietf.org/html/draft-ietf-jose-json-web-encryption-37

*         http://tools.ietf.org/html/draft-ietf-jose-json-web-key-37

*         http://tools.ietf.org/html/draft-ietf-jose-json-web-algorithms-37

*         http://tools.ietf.org/html/draft-ietf-oauth-json-web-token-31

HTML formatted versions are available at:

*         
http://self-issued.info/docs/draft-ietf-jose-json-web-signature-37.html

*         
http://self-issued.info/docs/draft-ietf-jose-json-web-encryption-37.html

*         http://self-issued.info/docs/draft-ietf-jose-json-web-key-37.html

*         
http://self-issued.info/docs/draft-ietf-jose-json-web-algorithms-37.html

*         http://self-issued.info/docs/draft-ietf-oauth-json-web-token-31.html

                                                                -- Mike

P.S.  This notice was also posted at http://self-issued.info/?p=1303 and as 
@selfissued.

_______________________________________________
OAuth mailing list
OAuth@ietf.org
https://www.ietf.org/mailman/listinfo/oauth

Reply via email to