Skip to content

Clarify RP action when encountering invalid OP EC #243

@malmgren01DF

Description

@malmgren01DF

In the conformance tests, there is one proposed test in the RP Automatic Registration section that says

RP rejects OP EC with errors: RP runs all validation rules on OP EC (per first section of tests), rejecting invalid ones

Going through the spec, I failed to find some wording that would clarify what the RP should do if it wants to do automatic registration with an OP, but the OP EC does not validate in some respect. I guess it could be generalized to the question of what a federation participant should do when it encounters an invalid EC. Let's say, for example, that the OPs EC sub is incorrect and not equal to the iss, should there be a statement in the the spec along the lines of "further interaction with the federation entity MUST NOT be attempted", or is this implicit somehow?

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

Status

Done

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions