Agenda
Antitrust Policy
Proposal for CAMARA mandated minimum acceptable JWT token lifetime #208
ICM 0.3.0 - preparing the scope for meta-release Spring25 #193
Agenda items proposed by Jesús:
Patch release r0.2.1. Correct the text of the r0.2.1 release to reflect the same contents of the changelog, which follows RM guidelines.
https://github.com/camaraproject/IdentityAndConsentManagement/issues/193 Spring25 scope. Review status and new topics added, milestones, identify "priority" issues (if any), etc...
The relevant set of PRs covering the scope of the upcoming release shall be made available for Sub Project team review as follows:
PRs for critical issues must be created by Oct 15th (not necessarily merged)
PRs for other issues must be created by Oct 31st (not necessarily merged)
https://github.com/camaraproject/IdentityAndConsentManagement/issues/204 Fall24: ICM r0.2.0 clarification: Signed Request Object is optional
could it be closed with the existing answer?
https://github.com/camaraproject/IdentityAndConsentManagement/issues/205 Spring25: Proposal to RECOMMEND the use of Signed Request Object for the /authorize endpoint to prevent abuse
this is candidate for Spring25 to be fixed along with #194
https://github.com/camaraproject/IdentityAndConsentManagement/issues/207 ICM Release Versioning
https://github.com/camaraproject/IdentityAndConsentManagement/issues/208 Proposal for CAMARA mandated minimum acceptable JWT token lifetime
minimum token lifetime that must be accepted by all authorisation servers for private_key_jwt.
https://github.com/camaraproject/IdentityAndConsentManagement/issues/209 OIDC authorization code flow error response
PR https://github.com/camaraproject/IdentityAndConsentManagement/pull/210 fixes it (under review).
https://github.com/camaraproject/IdentityAndConsentManagement/issues/211 New sections with error scenarios.
Minutes
Topic 1
Comments