OpenID Connect Working Group Updates & ISO Specifications

openid ab connect working group n.w
1 / 7
Embed
Share

Discover the latest progress and opportunities of the OpenID Connect Working Group, including the publication of ISO specifications and advancements in OpenID Federation. Learn about new specs, challenges, and upcoming events shaping the world of digital identity.

  • OpenID Connect
  • Working Group
  • ISO Specifications
  • Digital Identity
  • Federation

Uploaded on | 0 Views


Download Presentation

Please find below an Image/Link to download the presentation.

The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author. If you encounter any issues during the download, it is possible that the publisher has removed the file from their server.

You are allowed to download the files provided on this website for personal or commercial use, subject to the condition that they are used lawfully. All files are the property of their respective owners.

The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author.

E N D

Presentation Transcript


  1. OpenID AB/Connect Working Group Michael B. Jones 1

  2. Working Group Progress & Opportunities Since Last Workshop Working group highlights since last workshop in April 2024 Nine OpenID Connect specs published as ISO Publicly Available Submission (PAS) specifications OpenID for Verifiable Credential Issuance specification adopted by DCP WG Third proposed Implementer s Draft of OpenID for Verifiable Presentations in WGLC Simpler query language added to the spec as an alternative to Presentation Exchange Fourth OpenID Federation Implementer s Draft approved Security analysis of OpenID Federation under way by University of Stuttgart researchers OpenID Federation Extended Subordinate Listing specification adopted Challenges and opportunities facing the working group OpenID Federation in production use In Italy, both for national federations In Australia, for FAPI trust establishment In Sweden, for national federations FindyNet will run Wallet plugfest using OpenID Federation for trust establishment in November Participants include Sphereon, Meeco, and walt.id Fostering relationships w/ wallet initiatives, national identity systems, and open finance worldwide 2

  3. ISO OpenID Connect Specifications! First family submitted ISO/IEC 26131:2024 Information technology OpenID connect OpenID connect core 1.0 incorporating errata set 2 ISO/IEC 26132:2024 Information technology OpenID connect OpenID connect discovery 1.0 incorporating errata set 2 ISO/IEC 26133:2024 Information technology OpenID connect OpenID connect dynamic client registration 1.0 incorporating errata set 2 ISO/IEC 26134:2024 Information technology OpenID connect OpenID connect RP-initiated logout 1.0 ISO/IEC 26135:2024 Information technology OpenID connect OpenID connect session management 1.0 ISO/IEC 26136:2024 Information technology OpenID connect OpenID connect front-channel logout 1.0 ISO/IEC 26137:2024 Information technology OpenID connect OpenID connect back-channel logout 1.0 incorporating errata set 1 ISO/IEC 26138:2024 Information technology OpenID connect OAuth 2.0 multiple response type encoding practices ISO/IEC 26139:2024 Information technology OpenID connect OAuth 2.0 form post response mode 3

  4. OpenID Connect Native SSO for Mobile Apps 1.0 https://openid.net/specs/openid-connect-native-sso-1_0.html Updated since last workshop Progressing towards final status 4

  5. OpenID Federation Extended Subordinate Listing https://openid.net/specs/openid-federation-extended-listing-1_0.html Adopted in August Extends OpenID Federation to provide efficient methods to interact with a potentially large number of registered Entities Motivated by open finance use cases in Australia, etc. Implementations and feedback wanted! Implementations and feedback wanted! 5

  6. Two specification calls for adoption end today OpenID Federation Wallet Architectures 1.0 https://github.com/peppelinux/federation-wallet/ Defines entity types for trust establishment with OpenID Federation for wallet ecosystems OpenID Connect Relying Party Metadata Choices 1.0 Addresses two issues https://bitbucket.org/openid/connect/issues/2158/metadata-parameter-value- arrays-for-rp https://github.com/openid/federation/issues/12 6

  7. Largely Inactive Specifications Several adopted specs appear to not being actively worked on OpenID Connect Claims Aggregation Private updates made removing duplication with OpenID4VC specs Self-Issued OpenID Provider v2 Work on OpenID4VP and OpenID4VCI appears to be taking precedence OpenID Connect UserInfo Verifiable Credentials Inactive? Should any of these be officially marked as being discontinued? 7

More Related Content