UMA Claims Pushing with DPoP-bound Solid OIDC tokens

オープン
#159 コメント 0 件 リアクション 0 件 担当者 0 名 GitHub で見る

まだ誰も着手していません。

評価

難易度
4/5
見積もり時間
3〜5日
初心者へのやさしさ
35/100
issue の種類
機能追加
明瞭さ
おおむね明確
活発さ
停滞

調査の方向性

Solid OIDC仕様のSection 9.2から始め、issueで説明されているDPoP要件と併せてUMAのclaims-pushingフローを確認してください。Solid OIDCのDPoPにバインドされたidentity tokenの扱いを仕様が規範的に定義し、それをDPoPにバインドされていないID tokenと区別できれば、作業は完了です。

索引モデルが issue の本文から書いたものです。

説明

In the Solid OIDC specification we are currently not defining the UMA claims pushing flow in a normative sense. See Section 9.2

The claim_token_format http://openid.net/specs/openid-connect-core-1_0.html#IDToken is used, which should thus indicates a Solid-OIDC DPoP-bound identity token. However from the perspective of the UMA specification DPoP is not considered in the claims pushing flow, so it would be good to write this out in a normative fashion. Especially given the fact that this IRI already identifies OIDC ID Tokens that aren't DPoP-bound.

主要言語
Bikeshed
スター
26
フォーク
14
PR マージ指標
30日以内にマージされた PR はありません

コントリビューションガイド

このリポジトリのコントリビューションガイドは索引されていません

はじめの一歩

  1. issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
  2. 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
  3. リポジトリをフォークし、ブランチを切って変更します。
  4. issue 番号を参照したプルリクエストを送ります。

solid/solid-oidc のほかの issue

solid/solid-oidc の issue をすべて見る

似ている issue

Security の issue をもっと見る

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。