Proof Key for Code Exchange by OAuth Public Clients
RFC 7636

Revision differences

Document history

Date Rev. By Action
2019-04-10
15 (System) Received changes through RFC Editor sync (added Errata tag)
2015-10-14
15 (System) Notify list changed from draft-ietf-oauth-spop@ietf.org, draft-ietf-oauth-spop.shepherd@ietf.org, Hannes.Tschofenig@gmx.net, oauth-chairs@ietf.org, draft-ietf-oauth-spop.ad@ietf.org to (None)
2015-09-17
15 (System) IANA registries were updated to include RFC7636
2015-09-16
15 (System) RFC published
2015-09-15
15 (System) RFC Editor state changed to AUTH48-DONE from AUTH48
2015-08-24
15 (System) RFC Editor state changed to AUTH48 from RFC-EDITOR
2015-08-12
15 (System) RFC Editor state changed to RFC-EDITOR from EDIT
2015-07-23
15 (System) IANA Action state changed to RFC-Ed-Ack from Waiting on RFC Editor
2015-07-21
15 (System) IANA Action state changed to Waiting on RFC Editor from Waiting on Authors
2015-07-21
15 (System) IANA Action state changed to Waiting on Authors from In Progress
2015-07-15
15 (System) IANA Action state changed to In Progress
2015-07-13
15 Cindy Morgan IESG state changed to RFC Ed Queue from Approved-announcement sent
2015-07-13
15 (System) RFC Editor state changed to EDIT
2015-07-13
15 (System) Announcement was received by RFC Editor
2015-07-10
15 Amy Vezza IESG state changed to Approved-announcement sent from Approved-announcement to be sent
2015-07-10
15 Amy Vezza IESG has approved the document
2015-07-10
15 Amy Vezza Closed "Approve" ballot
2015-07-10
15 Amy Vezza Ballot approval text was generated
2015-07-10
15 Amy Vezza IESG state changed to Approved-announcement to be sent from IESG Evaluation::AD Followup
2015-07-10
15 Cindy Morgan New revision available
2015-07-06
14 Barry Leiba
[Ballot comment]
Version -14 resolves my DISCUSS (and also some of my non-blocking comments).  Thanks very much for considering these and working with me on ...
2015-07-06
14 Barry Leiba [Ballot Position Update] Position for Barry Leiba has been changed to No Objection from Discuss
2015-07-06
14 Nat Sakimura New version available: draft-ietf-oauth-spop-14.txt
2015-07-05
13 (System) Sub state has been changed to AD Followup from Revised ID Needed
2015-07-05
13 John Bradley IANA Review state changed to Version Changed - Review Needed from IANA - Not OK
2015-07-05
13 John Bradley New version available: draft-ietf-oauth-spop-13.txt
2015-06-23
12 (System) IANA Review state changed to IANA - Not OK from Version Changed - Review Needed
2015-06-11
12 Gunter Van de Velde Request for Last Call review by OPSDIR Completed: Ready. Reviewer: Melinda Shore.
2015-06-11
12 Barry Leiba
[Ballot discuss]
After getting John's explanation of the background and details of the attack (and the different communications paths involved, I still would prefer that ...
2015-06-11
12 Barry Leiba
[Ballot comment]
Putting quotation marks around "code_verifier" and "code_challenge" in the formulas is confusing: it makes it look as if you're putting in those strings ...
2015-06-11
12 Barry Leiba Ballot comment and discuss text updated for Barry Leiba
2015-06-11
12 Cindy Morgan IESG state changed to IESG Evaluation::Revised I-D Needed from IESG Evaluation
2015-06-11
12 Jari Arkko [Ballot Position Update] New position, No Objection, has been recorded for Jari Arkko
2015-06-10
12 Terry Manderson [Ballot Position Update] New position, No Objection, has been recorded for Terry Manderson
2015-06-10
12 Tero Kivinen Request for Last Call review by SECDIR Completed: Has Issues. Reviewer: Ben Laurie.
2015-06-10
12 Benoît Claise [Ballot Position Update] New position, No Objection, has been recorded for Benoit Claise
2015-06-10
12 Alia Atlas [Ballot Position Update] New position, No Objection, has been recorded for Alia Atlas
2015-06-10
12 Martin Stiemerling [Ballot Position Update] New position, No Objection, has been recorded for Martin Stiemerling
2015-06-10
12 Alissa Cooper [Ballot comment]
I support Barry's DISCUSS.
2015-06-10
12 Alissa Cooper [Ballot Position Update] New position, No Objection, has been recorded for Alissa Cooper
2015-06-10
12 Deborah Brungard [Ballot Position Update] New position, No Objection, has been recorded for Deborah Brungard
2015-06-10
12 Brian Haberman [Ballot comment]
I agree with Barry's DISCUSS about "plain".  Using "plain" makes no sense to me.
2015-06-10
12 Brian Haberman Ballot comment text updated for Brian Haberman
2015-06-10
12 Brian Haberman [Ballot Position Update] New position, No Objection, has been recorded for Brian Haberman
2015-06-09
12 Joel Jaeggli
[Ballot comment]
From Melinda Shore's OPSdir review:

I have reviewed this document as part of the Operational directorate's
ongoing effort to review all IETF documents ...
2015-06-09
12 Joel Jaeggli [Ballot Position Update] New position, No Objection, has been recorded for Joel Jaeggli
2015-06-09
12 Alexey Melnikov Request for Last Call review by GENART Completed: Almost Ready. Reviewer: Alexey Melnikov.
2015-06-09
12 Ben Campbell
[Ballot comment]
I share Barry's and Alexey's concerns about both allowing "plain" and defaulting to it.  I have some other comments, which may overlap with ...
2015-06-09
12 Ben Campbell [Ballot Position Update] New position, No Objection, has been recorded for Ben Campbell
2015-06-08
12 Alvaro Retana [Ballot Position Update] New position, No Objection, has been recorded for Alvaro Retana
2015-06-08
12 Barry Leiba
[Ballot discuss]
How does "plain" do anything at all to mitigate this attack?  Wouldn't anyone who could snag the grant also be able to snag ...
2015-06-08
12 Barry Leiba
[Ballot comment]
General:
I would think that this mechanism should never be a substitute for using TLS, and that this document should be explicit about ...
2015-06-08
12 Barry Leiba [Ballot Position Update] New position, Discuss, has been recorded for Barry Leiba
2015-06-06
12 John Bradley IANA Review state changed to Version Changed - Review Needed from IANA - Not OK
2015-06-06
12 John Bradley New version available: draft-ietf-oauth-spop-12.txt
2015-06-04
11 Kathleen Moriarty IESG state changed to IESG Evaluation from Waiting for Writeup
2015-06-04
11 Kathleen Moriarty Ballot has been issued
2015-06-04
11 Kathleen Moriarty [Ballot Position Update] New position, Yes, has been recorded for Kathleen Moriarty
2015-06-04
11 Kathleen Moriarty Created "Approve" ballot
2015-06-04
11 Kathleen Moriarty Ballot writeup was changed
2015-06-02
11 Kathleen Moriarty Placed on agenda for telechat - 2015-06-11
2015-06-02
11 Kathleen Moriarty Changed consensus to Yes from Unknown
2015-06-01
11 (System) IESG state changed to Waiting for Writeup from In Last Call
2015-05-29
11 Pearl Liang
(Via drafts-lastcall@iana.org): IESG/Authors/WG Chairs:

[Revised IANA Last Call Comments: added one missing new OAuth Parameter.]

IANA has reviewed draft-ietf-oauth-spop-11. Authors should review the comments and/or ...
2015-05-29
11 (System) IANA Review state changed to IANA - Not OK from IANA - Review Needed
2015-05-29
11 Pearl Liang
(Via drafts-lastcall@iana.org): IESG/Authors/WG Chairs:

IANA has reviewed draft-ietf-oauth-spop-11.  Authors should review the comments and/or questions below.  Please report any inaccuracies and respond to any questions ...
2015-05-24
11 Gunter Van de Velde Request for Last Call review by OPSDIR is assigned to Melinda Shore
2015-05-24
11 Gunter Van de Velde Request for Last Call review by OPSDIR is assigned to Melinda Shore
2015-05-21
11 Tero Kivinen Request for Last Call review by SECDIR is assigned to Ben Laurie
2015-05-21
11 Tero Kivinen Request for Last Call review by SECDIR is assigned to Ben Laurie
2015-05-21
11 Jean Mahoney Request for Last Call review by GENART is assigned to Alexey Melnikov
2015-05-21
11 Jean Mahoney Request for Last Call review by GENART is assigned to Alexey Melnikov
2015-05-18
11 Amy Vezza IANA Review state changed to IANA - Review Needed
2015-05-18
11 Amy Vezza
The following Last Call announcement was sent out:

From: The IESG <iesg-secretary@ietf.org>
To: IETF-Announce <ietf-announce@ietf.org>
CC: <oauth@ietf.org>
Reply-To: ietf@ietf.org
Sender: <iesg-secretary@ietf.org>
Subject: Last Call: <draft-ietf-oauth-spop-11.txt> ...
2015-05-18
11 Amy Vezza IESG state changed to In Last Call from Last Call Requested
2015-05-18
11 Amy Vezza Last call announcement was generated
2015-05-17
11 Kathleen Moriarty Last call was requested
2015-05-17
11 Kathleen Moriarty Ballot approval text was generated
2015-05-17
11 Kathleen Moriarty IESG state changed to Last Call Requested from AD Evaluation
2015-05-17
11 Kathleen Moriarty Last call announcement was generated
2015-05-16
11 John Bradley New version available: draft-ietf-oauth-spop-11.txt
2015-04-18
10 Kathleen Moriarty IESG state changed to AD Evaluation from Publication Requested
2015-04-15
10 Kathleen Moriarty Ballot writeup was generated
2015-04-15
10 Kathleen Moriarty Last call announcement was generated
2015-04-15
10 Kathleen Moriarty Last call announcement was generated
2015-03-26
10 Hannes Tschofenig
Shepherd Write-Up for "Proof Key for Code Exchange by OAuth Public Clients"
<draft-ietf-oauth-spop-10>

(1) What type of RFC is being requested (BCP, Proposed Standard,
Internet ...
2015-03-26
10 Hannes Tschofenig State Change Notice email list changed to draft-ietf-oauth-spop@ietf.org, oauth@ietf.org, draft-ietf-oauth-spop.shepherd@ietf.org, Hannes.Tschofenig@gmx.net, oauth-chairs@ietf.org, draft-ietf-oauth-spop.ad@ietf.org
2015-03-26
10 Hannes Tschofenig Responsible AD changed to Kathleen Moriarty
2015-03-26
10 Hannes Tschofenig IETF WG state changed to Submitted to IESG for Publication from WG Document
2015-03-26
10 Hannes Tschofenig IESG state changed to Publication Requested
2015-03-26
10 Hannes Tschofenig IESG process started in state Publication Requested
2015-03-26
10 Hannes Tschofenig Changed document writeup
2015-02-05
10 John Bradley New version available: draft-ietf-oauth-spop-10.txt
2015-02-04
09 John Bradley New version available: draft-ietf-oauth-spop-09.txt
2015-02-03
08 John Bradley New version available: draft-ietf-oauth-spop-08.txt
2015-01-30
07 John Bradley New version available: draft-ietf-oauth-spop-07.txt
2015-01-21
06 John Bradley New version available: draft-ietf-oauth-spop-06.txt
2014-12-07
05 John Bradley New version available: draft-ietf-oauth-spop-05.txt
2014-11-12
04 Nat Sakimura New version available: draft-ietf-oauth-spop-04.txt
2014-11-12
03 John Bradley New version available: draft-ietf-oauth-spop-03.txt
2014-10-27
02 John Bradley New version available: draft-ietf-oauth-spop-02.txt
2014-10-26
01 Nat Sakimura New version available: draft-ietf-oauth-spop-01.txt
2014-08-27
00 Hannes Tschofenig Intended Status changed to Proposed Standard from None
2014-08-26
00 Hannes Tschofenig Document shepherd changed to Hannes Tschofenig
2014-08-26
00 Hannes Tschofenig This document now replaces draft-sakimura-oauth-tcse instead of None
2014-08-26
00 Nat Sakimura New version available: draft-ietf-oauth-spop-00.txt