Skip to content

Commit

Permalink
fixed references from shepherd writeup review
Browse files Browse the repository at this point in the history
  • Loading branch information
aaronpk committed Dec 23, 2024
1 parent 88d3174 commit f1365ae
Showing 1 changed file with 26 additions and 33 deletions.
59 changes: 26 additions & 33 deletions draft-ietf-oauth-browser-based-apps.md
Original file line number Diff line number Diff line change
Expand Up @@ -35,13 +35,13 @@ author:

normative:
RFC2119:
RFC5116:
RFC6749:
RFC6750:
RFC6819:
RFC7636:
RFC8252:
RFC9207:
RFC8707:
RFC9449:
draft-ietf-httpbis-rfc6265bis:
title: "Cookies: HTTP State Management Mechanism"
date: October 2021
Expand Down Expand Up @@ -85,6 +85,22 @@ normative:
org: yes.com
date: June 2024
target: https://datatracker.ietf.org/doc/html/draft-ietf-oauth-security-topics
serviceworker:
title: Service Workers
author:
- name: Jake Archibald
org: Google
- name: Marijn Kruisselbrink
org: Google
target: https://www.w3.org/TR/service-workers/
date: July 2022
WebMessaging:
title: HTML Living Standard - Cross-document messaging
author:
name: whatwg
ins: whatwg
date: December 2024
target: https://html.spec.whatwg.org/multipage/web-messaging.html#web-messaging
informative:
HTML:
title: HTML
Expand All @@ -93,15 +109,6 @@ informative:
ins: whatwg
date: 2024
target: https://html.spec.whatwg.org/
tmi-bff:
title: Token Mediating and session Information Backend For Frontend
author:
- name: V. Bertocci
org: Okta
- name: B. Campbell
org: Ping
date: November 2021
target: https://datatracker.ietf.org/doc/draft-bertocci-oauth2-tmi-bff/
WebCryptographyAPI:
title: Web Cryptography API
author:
Expand All @@ -119,8 +126,6 @@ informative:
- ins: M. Jones
- ins: B. de Medeiros
- ins: C. Mortimore
RFC8707:
RFC9449:
CSP3:
title: Content Security Policy
author:
Expand All @@ -130,15 +135,8 @@ informative:
- name: Antonio Sartori
ins: A. Sartori
org: Google, Inc
date: October 2024
date: December 2024
target: https://www.w3.org/TR/CSP3/
WebMessaging:
title: HTML Living Standard - Cross-document messaging
author:
name: whatwg
ins: whatwg
date: October 2024
target: https://html.spec.whatwg.org/multipage/web-messaging.html#web-messaging
WebStorage:
title: HTML Living Standard - Web Storage
author:
Expand All @@ -165,16 +163,7 @@ informative:
name: Joshua Bell
org: Google
target: https://www.w3.org/TR/IndexedDB/
date: October 2024
serviceworker:
title: Service Workers
author:
- name: Jake Archibald
org: Google
- name: Marijn Kruisselbrink
org: Google
target: https://www.w3.org/TR/service-workers/
date: July 2022
date: November 2024


--- abstract
Expand Down Expand Up @@ -616,8 +605,6 @@ The token-mediating backend associates the obtained tokens with the user's sessi

The JavaScript application in the browser can use the access token obtained in step I to directly make requests to the resource server (J).

Note that an early draft ({{tmi-bff}}) already documented this concept, although the draft is is currently expired and has not been proposed for adoption to the OAuth Working Group.



### Implementation Details
Expand Down Expand Up @@ -1363,6 +1350,12 @@ Document History

[[ To be removed from the final specification ]]

-21

* Removed unused references
* Removed reference to TMI-BFF individual draft
* Moved some references to the normative reference section

-20

* Handled review comments from Rifaat (email 2024-11-13)
Expand Down

0 comments on commit f1365ae

Please sign in to comment.