Re: [OAUTH-WG] Breaking change for authorization code flow?

2011-03-24 Thread Eran Hammer-Lahav
lient requests. EHL > -Original Message- > From: oauth-boun...@ietf.org [mailto:oauth-boun...@ietf.org] On Behalf > Of Torsten Lodderstedt > Sent: Saturday, February 26, 2011 5:03 AM > To: OAuth WG > Subject: [OAUTH-WG] Breaking change for authorization code flow? > >

Re: [OAUTH-WG] Breaking change for authorization code flow?

2011-02-27 Thread Torsten Lodderstedt
011 5:03 AM To: OAuth WG Subject: [OAUTH-WG] Breaking change for authorization code flow? Hi all, I just noticed a change between draft 11 and 13 I would like to bring to your attention. Until draft 11, the spec left open whether the client of the authz code grant type had to present a secret o

Re: [OAUTH-WG] Breaking change for authorization code flow?

2011-02-26 Thread Eran Hammer-Lahav
ary 26, 2011 5:03 AM > To: OAuth WG > Subject: [OAUTH-WG] Breaking change for authorization code flow? > > Hi all, > > I just noticed a change between draft 11 and 13 I would like to bring to your > attention. > > Until draft 11, the spec left open whether the client o

[OAUTH-WG] Breaking change for authorization code flow?

2011-02-26 Thread Torsten Lodderstedt
Hi all, I just noticed a change between draft 11 and 13 I would like to bring to your attention. Until draft 11, the spec left open whether the client of the authz code grant type had to present a secret or not. It had been a decision of the authz server and I assume some deployments already w