Skip to content

Commit e47d2a0

Browse files
thomasdarimontThomas Darimont
andauthored
Update draft and align with final spec references (#292)
* Fixes issue #291 Update draft and align with final spec references SSF 1.0, CAEP 1.0, RFC9728, FAPI 2.0 Security Profile Signed-off-by: Thomas Darimont <[email protected]> * Update required spec version to 1_0 Signed-off-by: Thomas Darimont <[email protected]> * Fix typos --------- Signed-off-by: Thomas Darimont <[email protected]> Co-authored-by: Thomas Darimont <[email protected]>
1 parent cbdf31f commit e47d2a0

File tree

1 file changed

+20
-15
lines changed

1 file changed

+20
-15
lines changed

openid-caep-interoperability-profile-1_0.md

Lines changed: 20 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,8 @@
11
---
2-
title: CAEP Interoperability Profile 1.0 - draft 01
2+
title: CAEP Interoperability Profile 1.0 - draft 02
33
abbrev: caep-interop
44
docname: caep-interoperability-profile-1_0
5-
date: 2025-05-29
5+
date: 2025-09-16
66

77
ipr: none
88
cat: std
@@ -34,8 +34,8 @@ normative:
3434
RFC8935: # Push delivery
3535
RFC8936: # POLL delivery
3636
SSF:
37-
target: https://openid.net/specs/openid-sharedsignals-framework-1_0.html
38-
title: OpenID Shared Signals and Events Framework Specification 1.0 - draft
37+
target: https://openid.net/specs/openid-sharedsignals-framework-1_0-final.html
38+
title: OpenID Shared Signals and Events Framework Specification 1.0
3939
03
4040
author:
4141
-
@@ -64,7 +64,7 @@ normative:
6464
org: Cisco
6565

6666
CAEP:
67-
target: https://openid.net/specs/openid-caep-1_0.html
67+
target: https://openid.net/specs/openid-caep-1_0-final.html
6868
title: OpenID Continuous Access Evaluation Profile 1.0
6969
author:
7070
-
@@ -83,14 +83,14 @@ normative:
8383
RFC8414: # OAuth 2.0 Authorization Server Metadata
8484
RFC6749:
8585
FAPI:
86-
target: https://openid.bitbucket.io/fapi/fapi-2_0-security-profile.html
87-
title: FAPI 2.0 Security Profile — draft
86+
target: https://openid.net/specs/fapi-security-profile-2_0-final.html
87+
title: FAPI 2.0 Security Profile
8888
author:
8989
- ins: D. Fett
9090
- ins: D. Tonge
9191
- ins: J. Heenan
9292
OPRM:
93-
target: https://www.ietf.org/archive/id/draft-ietf-oauth-resource-metadata-03.html
93+
target: https://datatracker.ietf.org/doc/html/rfc9728
9494
title: OAuth 2.0 Protected Resource Metadata
9595
author:
9696
-ins: M.B. Jones
@@ -157,7 +157,7 @@ transmitter APIs, as per [RFC6125]{{RFC6125}}.
157157

158158
## CAEP specification version
159159

160-
This specification supports CAEP {{CAEP}} events from Implementer's Draft 2
160+
This specification supports CAEP {{CAEP}} events from OpenID Continuous Access Evaluation Profile 1.0.
161161

162162
## Transmitters {#common-transmitters}
163163

@@ -166,7 +166,7 @@ Transmitters MUST implement the following features:
166166
### Spec Version {#spec-version}
167167

168168
The Transmitter Configuration Metadata MUST have a `spec_version` field, and its
169-
value MUST be `1_0-ID2` or greater
169+
value MUST be `1_0` or greater
170170

171171
### Delivery Method {#delivery-method}
172172

@@ -251,7 +251,7 @@ Transmitter by providing a valid authorization
251251

252252
**Stream Verification**
253253
: A Receiver MUST be able to verify the liveness of the Stream by requesting
254-
that the Transmitter send it a Stream Verificaiton event by providing a valid
254+
that the Transmitter send it a Stream Verification event by providing a valid
255255
authorization
256256

257257
## Receivers {#common-receivers}
@@ -296,7 +296,7 @@ metadata document as specified in [RFC8414]{{RFC8414}}
296296
* MUST support at least one of the following to obtain a short-lived access
297297
token. For example, a short lived access token could be defined as one in which
298298
the value of the `exp` claim is not longer than 60 mins after `nbf` claim.
299-
Please efer to Access token lifetimes in the security considerations of {{FAPI}}
299+
Please refer to Access token lifetimes in the security considerations of {{FAPI}}
300300
for additional considerations.
301301
* client credential grant flow {{RFC6749}} section 4.4
302302
* authorization code flow {{RFC6749}} section 4.1
@@ -391,7 +391,7 @@ specification.
391391

392392
# Notices
393393

394-
Copyright (c) 2024 The OpenID Foundation.
394+
Copyright (c) 2025 The OpenID Foundation.
395395

396396
The OpenID Foundation (OIDF) grants to any Contributor, developer, implementer,
397397
or other interested party a non-exclusive, royalty free, worldwide copyright
@@ -426,10 +426,15 @@ cover technology that may be required to practice this specification.
426426

427427
[[ To be removed from the final specification ]]
428428

429+
-02
430+
431+
* Updated required SSF spec version to 1_0
432+
* Updated spec references (#291)
433+
429434
-01
430435

431436
* Cleaned up markdown (#91)
432437

433438
-00
434-
435-
* Initial draft
439+
440+
* Initial draft

0 commit comments

Comments
 (0)