-
assigned issue to
Several doubts about value in individual claim requests (5.5.1)
Issue #1114
resolved
We have several doubts reading the value member definition:
- should “value” value do a “equals” validation against the actual value? or could it be something like a pattern?
- the response should include the claim if there is a match?
- If there is no match should fail as “sub” in “3.1.2.2. Authentication Request Validation” point 4.
https://openid.net/specs/openid-connect-core-1_0.html#IndividualClaimsRequests
https://openid.net/specs/openid-connect-core-1_0.html#AuthRequestValidation Point 4
Comments (5)
-
-
Responses to your questions:
- Yes, the comparisons are “equals” comparisons.
- Yes, the response should include the claim.
- Yes, 3.1.2.2 specifies that the request must fail under those circumstances.
-
- changed status to open
-
This will be fixed by https://bitbucket.org/openid/connect/pull-requests/580
-
- changed status to resolved
- Log in to comment