Wiki

Clone wiki

fapi / FAPI_Meeting_Notes_2024-02-28_Atlantic

FAPI WG Agenda & Meeting Notes (2024-02-28)

The meeting was called to order at 14:05 UTC.

1.   Roll Call (Dave)

  • Attendees:
  • Regrets:

3.   Events (Mike L.)

4.   External Orgs & Liaisons (Mike L.)

  • OFBR – continued high volume of FAPI re-certification requests to meet central bank mandates/milestones. Certification team is doing an excellent job in managing the increased volume.
  • OPIN – starting to see next phase of FAPI re-certifications
  • Chile – 18 months timeline

6.   Issues

6.4.   #660 Define requirements for OpenAPI FAPI securityScheme type

  • #660
  • There is no sensible way to express a security scheme in OpenAPI right now.
  • This ticket is suggesting to create a document so that it can be proposed to them.
  • This does not impact the spec so the spec can proceed independently.
  • Peter Stanley supported it, mentioning that OpenID Connect is a scheme there.

6.5.   #674 length of nonce tested in OP conformance tests

  • #674
  • In FAPI2, it is not the web server limit but the internal processing e.g. DB.
  • Supports for minimum values for AS on nonce (64) and state (512).
  • Some discussion on the corresponding client values.
  • We should discuss it over a PR.

6.6.   #651 Avoid "should be" and "shall be" where possible

  • #651
  • Make authorisation server and/or clients etc. as the subject of the sentence.
  • Dave is going to make a PR

7.   AOB (Dave)

n/a

The meeting adjourned at 15:04.

Updated