2.4 The Processing rules by the client does not use normative language.

Issue #511 resolved
Nat Sakimura created an issue

Comments

The 2nd paragraph of 2.4 states

The client is obliged to process the JWT secured response as follows:

The current sentence structure is such that

The client is obliged to process the JWT secured response as follows: (<< non-normative language)

#. ==Some check description using non-normative language==.  If the check fails, ==action in Normative language==. 

Thus, the relevant normative sections are all conditional. each "check" are not normatively required.

They should be normatively required.

This can be achieved by replacing "is obliged to" in the second paragraph of 2.4 with a "MUST". 

Proposal

Change the 2nd paragraph to read:

The client MUST process the JWT secured response as follows:

Comments (4)

  1. Log in to comment