[{"author": "Pieter Kasselman", "text": "<p>Good morning!</p>", "time": "2024-03-22T05:01:59Z"}, {"author": "David Waite", "text": "<p>I'm going to miss all of you after this</p>", "time": "2024-03-22T05:02:22Z"}, {"author": "Atul Tulshibagwale", "text": "<p>Happy birthday, <span class=\"user-mention\" data-user-id=\"1218\">@Kelley Burgin</span> !</p>", "time": "2024-03-22T05:02:36Z"}, {"author": "Aaron Parecki", "text": "<p>hannes you have to move the mouse cursor over the slides for the clicker to work</p>", "time": "2024-03-22T05:03:31Z"}, {"author": "Sarah Cecchetti", "text": "<p>Happy Thursday evening</p>", "time": "2024-03-22T05:03:40Z"}, {"author": "Dean Saxe", "text": "<p>Oh good, the brains behind the operation has arrived =)</p>", "time": "2024-03-22T05:12:17Z"}, {"author": "Kristina Yasuda", "text": "<p>we did the PR to fix this in oid4vc...</p>", "time": "2024-03-22T05:16:30Z"}, {"author": "Aaron Parecki", "text": "<p>kristina can you queue to describe this?</p>", "time": "2024-03-22T05:17:53Z"}, {"author": "Kristina Yasuda", "text": "<p>ah actually i am wrong, we only discussed, have not done the PR yet.</p>", "time": "2024-03-22T05:18:09Z"}, {"author": "Kristina Yasuda", "text": "<p>i'll get back to you offline, aaron.</p>", "time": "2024-03-22T05:18:20Z"}, {"author": "Justin Richer", "text": "<p>we did not commit to not breaking changes -- requiring PKCE breaks things.</p>", "time": "2024-03-22T05:21:51Z"}, {"author": "Justin Richer", "text": "<p>but it's important to be deliberate about what we'd consider an interop between 2.0 and 2.1, and from which side</p>", "time": "2024-03-22T05:22:14Z"}, {"author": "Dean Saxe", "text": "<p>requiring PKCE only breaks things that want to be 2.1 compliant.</p>", "time": "2024-03-22T05:22:50Z"}, {"author": "Dean Saxe", "text": "<p>at least, as far I understand things</p>", "time": "2024-03-22T05:23:02Z"}, {"author": "David Waite", "text": "<p>audio issue, again :'(</p>", "time": "2024-03-22T05:23:10Z"}, {"author": "Muhammad Sardar", "text": "<p>Please speak closer to the mic.</p>", "time": "2024-03-22T05:23:37Z"}, {"author": "David Waite", "text": "<p>what I was queued to say: requiring deployed client_ids to change is a nightmare, but requiring alphanumeric secrets seems untenable.</p>", "time": "2024-03-22T05:24:34Z"}, {"author": "David Waite", "text": "<p>if this is the only way we think the feature can be interoperable, we should deprecate for 2.1</p>", "time": "2024-03-22T05:24:56Z"}, {"author": "Kristina Yasuda", "text": "<p>+1 to probably treating client_id and client_secrets differently..</p>", "time": "2024-03-22T05:25:57Z"}, {"author": "Filip Skokan", "text": "<p>if only the character set didn't include the \":\" character we could get away from any additional encoding of all username / password characters.</p>", "time": "2024-03-22T05:27:17Z"}, {"author": "Justin Richer", "text": "<p>@dean that's exactly my point.</p>", "time": "2024-03-22T05:27:22Z"}, {"author": "Justin Richer", "text": "<p>@david if people implemented properly it as it's already specified, it would ALSO be interoperable ;)</p>", "time": "2024-03-22T05:27:59Z"}, {"author": "Kristina Yasuda", "text": "<p>I have seen\"did:...\" as a client_id, filip...</p>", "time": "2024-03-22T05:29:26Z"}, {"author": "David Waite", "text": "<p>@Justin yeah I doubt this is the only way, although it is certainly a way to force the peg through the hole</p>", "time": "2024-03-22T05:32:01Z"}, {"author": "Pieter Kasselman", "text": "<p><a href=\"https://github.com/cedar-policy/cedar\">https://github.com/cedar-policy/cedar</a></p>", "time": "2024-03-22T05:32:27Z"}, {"author": "Sarah Cecchetti", "text": "<p>and <a href=\"https://www.cedarpolicy.com/en\">https://www.cedarpolicy.com/en</a> and <a href=\"https://cedarland.blog/\">https://cedarland.blog/</a></p>", "time": "2024-03-22T05:33:27Z"}, {"author": "Sarah Cecchetti", "text": "<p><a href=\"https://datatracker.ietf.org/doc/draft-cecchetti-oauth-rar-cedar/\">https://datatracker.ietf.org/doc/draft-cecchetti-oauth-rar-cedar/</a></p>", "time": "2024-03-22T05:35:31Z"}, {"author": "Justin Richer", "text": "<p>big +1 to George's comment just now</p>", "time": "2024-03-22T05:37:33Z"}, {"author": "Justin Richer", "text": "<p>client -&gt; AS, AS -&gt; client, and AS -&gt; RS don't need to be the same format or value in a functioning system</p>", "time": "2024-03-22T05:38:23Z"}, {"author": "Sarah Cecchetti", "text": "<p>Yup. The next draft will use \"type\" to indicate format in URI format. Another open question is whether to give guidance about when to make that an array that also includes intent.</p>", "time": "2024-03-22T05:41:35Z"}, {"author": "Justin Richer", "text": "<p>the value of \"type\" is defined to be a single string, so having it as an array would break parsing. You could define a secondary field to carry the other information, though, and require/recommend/etc that when the type is \"<a href=\"http://cedarpolicy.org\">cedarpolicy.org</a>\"</p>", "time": "2024-03-22T05:45:30Z"}, {"author": "Arndt Schwenkschuster", "text": "<p>For this question to answer wouldn't the entities.json be more necessary on top of the policy?</p>", "time": "2024-03-22T05:46:33Z"}, {"author": "Atul Tulshibagwale", "text": "<p>+1 to <span class=\"user-mention\" data-user-id=\"204\">@Brian Campbell</span> , can't the RS simply get the Cedar policy directly from the Cedar service?</p>", "time": "2024-03-22T05:46:47Z"}, {"author": "Atul Tulshibagwale", "text": "<p>why does the client or AS need to be involved?</p>", "time": "2024-03-22T05:47:05Z"}, {"author": "Hannes Tschofenig", "text": "<p>Have others looked at other policy languages, such as OPA/Rego?</p>", "time": "2024-03-22T05:55:26Z"}, {"author": "Atul Tulshibagwale", "text": "<p>I have some familiarity</p>", "time": "2024-03-22T05:56:36Z"}, {"author": "Pieter Kasselman", "text": "<p>@Hannes - there is a very large number of policy languages out there (some number above 20 by last count)</p>", "time": "2024-03-22T05:57:26Z"}, {"author": "Hannes Tschofenig", "text": "<p>But only a few have found wider usage</p>", "time": "2024-03-22T05:57:42Z"}, {"author": "Christian Bormann", "text": "<p>I was wondering about Rego as well, but Rego is used more on the infrastructure side from my experience?</p>", "time": "2024-03-22T05:57:52Z"}, {"author": "Hannes Tschofenig", "text": "<p>The question for me was whether we should standardize the two most popular policy languages</p>", "time": "2024-03-22T05:58:36Z"}, {"author": "Pieter Kasselman", "text": "<p>OPA/Rego has found adoption, but it is also very flexible and requires a skilled user to avoid unfortunate outcomes.</p>", "time": "2024-03-22T05:59:16Z"}, {"author": "Pieter Kasselman", "text": "<p>@Hannes - how would you define popular?</p>", "time": "2024-03-22T06:00:05Z"}, {"author": "Dean Saxe", "text": "<p>XACML? ;-)</p>", "time": "2024-03-22T06:00:16Z"}, {"author": "Hannes Tschofenig", "text": "<p>popular  = what the group prefers</p>", "time": "2024-03-22T06:00:35Z"}, {"author": "Aaron Parecki", "text": "<p>gotta do your homework before the meetings! ;-)</p>", "time": "2024-03-22T06:02:05Z"}, {"author": "Muhammad Sardar", "text": "<p>on the mic please</p>", "time": "2024-03-22T06:04:55Z"}, {"author": "Aaron Parecki", "text": "<p>use the mic brian</p>", "time": "2024-03-22T06:04:58Z"}, {"author": "Nat Sakimura", "text": "<p>Please use mic</p>", "time": "2024-03-22T06:05:48Z"}, {"author": "Yaroslav Rosomakho", "text": "<p>Might be a good idea to provide an optional URL to redirect user to so that user would know why he/she got kicked out</p>", "time": "2024-03-22T06:20:18Z"}, {"author": "Aaron Parecki", "text": "<p>@Yaroslav there is no user interaction in this draft, it happens entirely without the user context.</p>", "time": "2024-03-22T06:21:31Z"}, {"author": "Kristina Yasuda", "text": "<p>what is the lifecycle for this signed jwk set?</p>", "time": "2024-03-22T06:24:22Z"}, {"author": "Muhammad Sardar", "text": "<p>What is the lifetime of these certs?</p>", "time": "2024-03-22T06:30:54Z"}, {"author": "Nat Sakimura", "text": "<p>Thanks!</p>", "time": "2024-03-22T06:33:05Z"}, {"author": "Nigel Hickson", "text": "<p>thank you</p>", "time": "2024-03-22T06:33:10Z"}, {"author": "Kristina Yasuda", "text": "<p>the times remotely were pretty brutal :)</p>", "time": "2024-03-22T06:33:25Z"}, {"author": "Kristina Yasuda", "text": "<p>thank you!</p>", "time": "2024-03-22T06:33:31Z"}, {"author": "Aaron Parecki", "text": "<p>confirmed</p>", "time": "2024-03-22T06:33:32Z"}, {"author": "Christian Bormann", "text": "<p>Thanks and have a great day!</p>", "time": "2024-03-22T06:33:46Z"}]