[OAUTH-WG] scp claim in draft-ietf-oauth-token-exchange-12

2018-04-15 Thread Torsten Lodderstedt
Hi all, I I’m wondering why draft-ietf-oauth-token-exchange-12 defines a claim „scp“ to carry scope values while RFC 7591 and RFC 7662 use a claim „scope“ for the same purpose. As far as I understand the text, the intension is to represent a list of RFC6749 scopes. Is this correct? What’s the r

Re: [OAUTH-WG] Comments on draft-ietf-oauth-security-topics-05

2018-04-15 Thread Torsten Lodderstedt
Hi Phil, thanks for reviewing it. We incorporated the respective changes in the upcoming -06. best regards, Torsten. > Am 22.03.2018 um 10:52 schrieb Phil Hunt : > > Torsten, > > Great document! > > Some minor nits and comments: > > Abstract - double period after first sentence. > >> It