-
Notifications
You must be signed in to change notification settings - Fork 19
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
fix!: Relying Party - discovery_uri, removal of DPoP and random fragment for request and response endpoints #176
Conversation
…ent for request and response endpoints
…nt for request and response endpoints - seq diag
…t was just the encoding on the html mime when the qrcode is provided as SVG
See also |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I made a pass with a request to make some minor editorial changes to the MSC and the text.
Co-authored-by: fmarino-ipzs <[email protected]> Co-authored-by: asharif1990 <[email protected]>
two things to be done in this draft before making it a ready-to-be-merged PR:
|
Co-authored-by: Giuseppe De Marco <[email protected]>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I made an editorial change in the sequence diagram. I updated the plantuml link as a suggestion but the SVG must be updated accordingly.
Co-authored-by: fmarino-ipzs <[email protected]>
feat: added ISO18013 proximity flow
Remote and Proximity flows are split in two different rst file. Some sphinz build issues are fixed.
Guys I merge this PR since it brings many important changes to be aligned, however the discussion on the OpenID4VP flows is still on the way, where discovery_uri (here) would be used instead of the request_uri_method This means that we'll continue working with openid wg to achieve the definitive approach for that and then we'll open another PR about the presentation flow |
this PR
defines how to use #fragments to randomize the request_uri and the the response_uri endpoint, for the security of the RP. See Attestable and randomized redirect_uri and response_uri openid/OpenID4VP#73