Markdown Version | Transcript | Session Recording

Session Date/Time: 04 May 2026 17:00

OAUTH

Summary

The OAUTH Working Group held an interim meeting on May 26, 2026, to discuss the progress of draft-ietf-oauth-attestation-based-client-auth. The discussion focused on the recent restructuring of the document (versions -08 and -09), the introduction of a combined DPoP (Demonstrating Proof-of-Possession) mode, and several open GitHub issues regarding terminology, metadata, and the binding of OAuth artifacts to specific client instances.

Key Discussion Points

Working Group Status and Agenda

Rifaat Shekh-Yusef opened the meeting and presented the Chairs Slides. He noted the upcoming interim schedule:

OAuth 2.0 Attestation-Based Client Authentication

Christian Bormann and Paul Bastian presented updates on draft-ietf-oauth-attestation-based-client-auth using the slide deck OAuth-ABC_interim_26.

Document Updates

Terminology and Scope

Binding OAuth Artifacts to Client Instances

Metadata and DCR/CIMD

Implementation Guidance

Decisions and Action Items

Next Steps

Related Documents

draft-ietf-oauth-attestation-based-client-auth, draft-ietf-oauth-client-id-metadata-document, draft-ietf-oauth-refresh-token-expiration