More on data formats

Lloyd Hilaiel lhilaiel at mozilla.com
Thu Nov 21 00:08:03 PST 2013


On Nov 20, 2013, at 9:50 PM, Brian Warner <warner at mozilla.com> wrote:

> On 11/20/13 1:44 AM, Dirkjan Ochtman wrote:
> 
>> Also, Lloyed noted that that spec (JWT) currently states that 'the
>> "sub" value is a case-sensitive string containing a StringOrURI
>> value', i.e., our JSON object usage is forbidden per current spec.
> 
> Huh, so non-extensible? That's kind of unfortunate.

I believe `sub` is present here because the belief is that an identity token which asserts a user’s identity, has to assert something.  But the `sub` field is optional.

Further, we can add new private or public top level keys.  So I think there’s sufficient extensibility here for our needs.

lloyd

> 
> cheers,
> -Brian
> 




More information about the Dev-fxacct mailing list