1818 Python 3.12.12
1919 ConfigArgParse 1.7
2020 google-i18n-address 3.1.1
21- intervaltree 3.1.0
21+ intervaltree 3.2.1
2222 Jinja2 3.1.6
2323 lxml 6.0.2
2424 platformdirs 4.5.1
10481048</ tr > </ thead >
10491049< tfoot > < tr >
10501050< td class ="left "> Looker, et al.</ td >
1051- < td class ="center "> Expires 6 July 2026</ td >
1051+ < td class ="center "> Expires 10 July 2026</ td >
10521052< td class ="right "> [Page]</ td >
10531053</ tr > </ tfoot >
10541054</ table >
10611061< dd class ="internet-draft "> draft-ietf-oauth-status-list-latest</ dd >
10621062< dt class ="label-published "> Published:</ dt >
10631063< dd class ="published ">
1064- < time datetime ="2026-01-02 " class ="published "> 2 January 2026</ time >
1064+ < time datetime ="2026-01-06 " class ="published "> 6 January 2026</ time >
10651065 </ dd >
10661066< dt class ="label-intended-status "> Intended Status:</ dt >
10671067< dd class ="intended-status "> Standards Track</ dd >
10681068< dt class ="label-expires "> Expires:</ dt >
1069- < dd class ="expires "> < time datetime ="2026-07-06 " > 6 July 2026</ time > </ dd >
1069+ < dd class ="expires "> < time datetime ="2026-07-10 " > 10 July 2026</ time > </ dd >
10701070< dt class ="label-authors "> Authors:</ dt >
10711071< dd class ="authors ">
10721072< div class ="author ">
@@ -1124,7 +1124,7 @@ <h2 id="name-status-of-this-memo">
11241124 time. It is inappropriate to use Internet-Drafts as reference
11251125 material or to cite them other than as "work in progress."< a href ="#section-boilerplate.1-3 " class ="pilcrow "> ¶</ a > </ p >
11261126< p id ="section-boilerplate.1-4 ">
1127- This Internet-Draft will expire on 6 July 2026.< a href ="#section-boilerplate.1-4 " class ="pilcrow "> ¶</ a > </ p >
1127+ This Internet-Draft will expire on 10 July 2026.< a href ="#section-boilerplate.1-4 " class ="pilcrow "> ¶</ a > </ p >
11281128</ section >
11291129</ div >
11301130< div id ="copyright ">
@@ -1950,7 +1950,7 @@ <h3 id="name-status-list-token-in-jwt-fo">
19501950 < h3 id ="name-status-list-token-in-cwt-fo ">
19511951< a href ="#section-5.2 " class ="section-number selfRef "> 5.2. </ a > < a href ="#name-status-list-token-in-cwt-fo " class ="section-name selfRef "> Status List Token in CWT Format</ a >
19521952 </ h3 >
1953- < p id ="section-5.2-1 "> The Status List Token < span class ="bcp14 "> MUST</ span > be encoded as a "CBOR Web Token (CWT)" according to < span > [< a href ="#RFC8392 " class ="cite xref "> RFC8392</ a > ]</ span > .< a href ="#section-5.2-1 " class ="pilcrow "> ¶</ a > </ p >
1953+ < p id ="section-5.2-1 "> The Status List Token < span class ="bcp14 "> MUST</ span > be encoded as a "CBOR Web Token (CWT)" according to < span > [< a href ="#RFC8392 " class ="cite xref "> RFC8392</ a > ]</ span > . The Status List Token < span class =" bcp14 " > MUST NOT </ span > be tagged with the CWT tag defined in < span > < a href =" https://rfc-editor.org/rfc/rfc8392#section-6 " class =" relref " > Section 6 </ a > of [ < a href =" #RFC8392 " class =" cite xref " > RFC8392 </ a > ] </ span > . The COSE message < span class =" bcp14 " > MUST </ span > either be the tagged COSE_Sign1_Tagged ( < code > 18 </ code > ) or COSE_Mac0_Tagged ( < code > 17 </ code > ) as defined in < span > < a href =" https://rfc-editor.org/rfc/rfc9052#section-2 " class =" relref " > Section 2 </ a > of [ < a href =" #RFC9052 " class =" cite xref " > RFC9052 </ a > ] </ span > . < a href ="#section-5.2-1 " class ="pilcrow "> ¶</ a > </ p >
19541954< p id ="section-5.2-2 "> The following content applies to the protected header of the CWT:< a href ="#section-5.2-2 " class ="pilcrow "> ¶</ a > </ p >
19551955< ul class ="normal ">
19561956< li class ="normal " id ="section-5.2-3.1 ">
@@ -1993,40 +1993,42 @@ <h3 id="name-status-list-token-in-cwt-fo">
19931993< p id ="section-5.2-8 "> The following is a non-normative example of a Status List Token in CWT format in Hex:< a href ="#section-5.2-8 " class ="pilcrow "> ¶</ a > </ p >
19941994< div class ="alignLeft art-text artwork " id ="section-5.2-9 ">
19951995< pre >
1996- 845820a2012610781a6170706c69636174696f6e2f7374617475736c6973742b6377
1997- 74a1044231325850a502782168747470733a2f2f6578616d706c652e636f6d2f7374
1998- 617475736c697374732f31061a648c5bea041a8898dfea19fffe19a8c019fffda264
1999- 6269747301636c73744a78dadbb918000217015d58405e1dfcf3b4499621dd2585c9
2000- cdd3f702543c040f1c6947e6d07b0092948ffb6d33ccff503c6938daecbc57d3de5c
2001- 9067b16da45c530e905b33a4787fba5d0599
1996+ d2845820a2012610781a6170706c69636174696f6e2f7374617475736c6973742b63
1997+ 7774a1044231325850a502782168747470733a2f2f6578616d706c652e636f6d2f73
1998+ 74617475736c697374732f31061a648c5bea041a8898dfea19fffe19a8c019fffda2
1999+ 646269747301636c73744a78dadbb918000217015d584093fa4d01032b18c35e2fe1
2000+ 101b77fd6cc9440022caa4694450c4e4e9feab4e99d1fa6d9772ce2bf3a12e0323de
2001+ d7c982c5e101a5e67f0cbc1e2b6f57ce99c279
20022002</ pre > < a href ="#section-5.2-9 " class ="pilcrow "> ¶</ a >
20032003</ div >
20042004< p id ="section-5.2-10 "> The following is the CBOR Annotated Hex output of the example above:< a href ="#section-5.2-10 " class ="pilcrow "> ¶</ a > </ p >
20052005< div class ="alignLeft art-text artwork " id ="section-5.2-11 ">
20062006< pre >
2007- 84 # array(4)
2008- 58 20 # bytes(32)
2009- a2012610781a6170706c696361 # "¢\x01&\x10x\x1aapplica"
2010- 74696f6e2f7374617475736c69 # "tion/statusli"
2011- 73742b637774 # "st+cwt"
2012- a1 # map(1)
2013- 04 # uint(4)
2014- 42 # bytes(2)
2015- 3132 # "12"
2016- 58 50 # bytes(80)
2017- a502782168747470733a2f2f65 # "¥\x02x!https://e"
2018- 78616d706c652e636f6d2f7374 # "xample.com/st"
2019- 617475736c697374732f31061a # "atuslists/1\x06\x1a"
2020- 648c5bea041a8898dfea19fffe # "d\x8c[ê\x04\x1a\x88\x98ßê\x19ÿþ"
2021- 19a8c019fffda2646269747301 # "\x19¨À\x19ÿý¢dbits\x01"
2022- 636c73744a78dadbb918000217 # "clstJxÚÛ¹\x18\x00\x02\x17"
2023- 015d # "\x01]"
2024- 58 40 # bytes(64)
2025- 5e1dfcf3b4499621dd2585c9cd # "^\x1düó´I\x96!Ý%\x85ÉÍ"
2026- d3f702543c040f1c6947e6d07b # "Ó÷\x02T<\x04\x0f\x1ciGæÐ{"
2027- 0092948ffb6d33ccff503c6938 # "\x00\x92\x94\x8fûm3ÌÿP<i8"
2028- daecbc57d3de5c9067b16da45c # "Úì¼WÓÞ\\x90g±m¤\"
2029- 530e905b33a4787fba5d0599 # "S\x0e\x90[3¤x\x7fº]\x05\x99"
2007+ d2 # tag(18)
2008+ 84 # array(4)
2009+ 58 20 # bytes(32)
2010+ a2012610781a6170706c6963 # "¢\x01&\x10x\x1aapplic"
2011+ 6174696f6e2f737461747573 # "ation/status"
2012+ 6c6973742b637774 # "list+cwt"
2013+ a1 # map(1)
2014+ 04 # uint(4)
2015+ 42 # bytes(2)
2016+ 3132 # "12"
2017+ 58 50 # bytes(80)
2018+ a502782168747470733a2f2f # "¥\x02x!https://"
2019+ 6578616d706c652e636f6d2f # "example.com/"
2020+ 7374617475736c697374732f # "statuslists/"
2021+ 31061a648c5bea041a8898df # "1\x06\x1ad\x8c[ê\x04\x1a\x88\x98ß"
2022+ ea19fffe19a8c019fffda264 # "ê\x19ÿþ\x19¨À\x19ÿý¢d"
2023+ 6269747301636c73744a78da # "bits\x01clstJxÚ"
2024+ dbb918000217015d # "Û¹\x18\x00\x02\x17\x01]"
2025+ 58 40 # bytes(64)
2026+ 93fa4d01032b18c35e2fe110 # "\x93úM\x01\x03+\x18Ã^/á\x10"
2027+ 1b77fd6cc9440022caa46944 # "\x1bwýlÉD\x00"ʤiD"
2028+ 50c4e4e9feab4e99d1fa6d97 # "PÄäéþ«N\x99Ñúm\x97"
2029+ 72ce2bf3a12e0323ded7c982 # "rÎ+ó¡.\x03#Þ×É\x82"
2030+ c5e101a5e67f0cbc1e2b6f57 # "Åá\x01¥æ\x7f\x0c¼\x1e+oW"
2031+ ce99c279 # "Î\x99Ây"
20302032</ pre > < a href ="#section-5.2-11 " class ="pilcrow "> ¶</ a >
20312033</ div >
20322034</ section >
@@ -2073,7 +2075,7 @@ <h3 id="name-referenced-token-in-jose">
20732075 </ ul >
20742076< p id ="section-6.2-4 "> Application of additional restrictions and policies are at the discretion of the Relying Party.< a href ="#section-6.2-4 " class ="pilcrow "> ¶</ a > </ p >
20752077< p id ="section-6.2-5 "> The following is a non-normative example of a decoded header and payload of a Referenced Token:< a href ="#section-6.2-5 " class ="pilcrow "> ¶</ a > </ p >
2076- < div class ="lang-json sourcecode " id ="section-6.2-6 ">
2078+ < div class ="alignLeft art-ascii-art art-text artwork " id ="section-6.2-6 ">
20772079< pre >
20782080{
20792081 "alg": "ES256",
@@ -2177,9 +2179,9 @@ <h4 id="name-cbor-web-token-cwt">
21772179d28443a10126a1044231325866a502653132333435017368747470733a2f2f657861
217821806d706c652e636f6d061a648c5bea041a8898dfea19ffffa16b7374617475735f6c69
217921817374a2636964780063757269782168747470733a2f2f6578616d706c652e636f6d2f
2180- 7374617475736c697374732f315840425901681bb602928a803b7602027856372412
2181- c6b8b92b732ee2b66ef0273010f3640da98ceca025465178e0f09fa079b0962b7d72
2182- 863edce3726d80f1e52bbf
2182+ 7374617475736c697374732f315840340f7efea10f1a36dc4797636a17b4dd4848b6
2183+ 8997d1d10e8cceb3a38ff33b3dda72964a83989f6cf98560c2fc97a08bc8977cc6b0
2184+ f84cfedab93d3e4481e938
21832185</ pre > < a href ="#section-6.3.1-5 " class ="pilcrow "> ¶</ a >
21842186</ div >
21852187< p id ="section-6.3.1-6 "> The following is the CBOR Annotated Hex output of the example above:< a href ="#section-6.3.1-6 " class ="pilcrow "> ¶</ a > </ p >
@@ -2204,12 +2206,12 @@ <h4 id="name-cbor-web-token-cwt">
22042206 2e636f6d2f7374617475736c # ".com/statusl"
22052207 697374732f31 # "ists/1"
22062208 58 40 # bytes(64)
2207- 425901681bb602928a803b76 # "BY\x01h\x1b¶\x02\x92\x8a\x80;v "
2208- 02027856372412c6b8b92b73 # "\x02\x02xV7$\x12Ƹ¹+s "
2209- 2ee2b66ef0273010f3640da9 # ".â¶nð'0\x10ód\x0d© "
2210- 8ceca025465178e0f09fa079 # "\x8cì\xa0%FQxàð\x9f\xa0y "
2211- b0962b7d72863edce3726d80 # "°\x96+}r\x86 >Üãrm\x80 "
2212- f1e52bbf # "ñå+¿ "
2209+ 340f7efea10f1a36dc479763 # "4\x0f~þ¡\x0f\x1a6ÜG\x97c "
2210+ 6a17b4dd4848b68997d1d10e # "j\x17´ÝHH¶\x89\x97ÑÑ\x0e "
2211+ 8cceb3a38ff33b3dda72964a # "\x8cγ£\x8fó;=Úr\x96J "
2212+ 83989f6cf98560c2fc97a08b # "\x83\x98\x9flù\x85`Âü\x97\xa0\x8b "
2213+ c8977cc6b0f84cfedab93d3e # "È\x97|ưøLþÚ¹= >"
2214+ 4481e938 # "D\x81é8 "
22132215</ pre > < a href ="#section-6.3.1-7 " class ="pilcrow "> ¶</ a >
22142216</ div >
22152217</ section >
@@ -2454,8 +2456,8 @@ <h3 id="name-status-list-response">
24542456yJleHAiOjIyOTE3MjAxNzAsImlhdCI6MTY4NjkyMDE3MCwiaXNzIjoiaHR0cHM6Ly9le
24552457GFtcGxlLmNvbSIsInN0YXR1c19saXN0Ijp7ImJpdHMiOjEsImxzdCI6ImVOcmJ1UmdBQ
24562458WhjQlhRIn0sInN1YiI6Imh0dHBzOi8vZXhhbXBsZS5jb20vc3RhdHVzbGlzdHMvMSIsI
2457- nR0bCI6NDMyMDB9.V_ukn3xTpF3w14bgNMN2FaFCeTGQHXt81lii8tCAvOngf8BZrN7c
2458- lWfsLYcnQpgT0Ok9LQpfkX45WNRQydijug
2459+ nR0bCI6NDMyMDB9.2lKUUNG503R9htu4aHAYi7vjmr3sgApbfoDvPrl65N3URUO1EYqq
2460+ Ql45Jfzd-Av4QzlKa3oVALpLwOEUOq-U_g
24592461</ pre > < a href ="#section-8.2-10 " class ="pilcrow "> ¶</ a >
24602462</ div >
24612463</ section >
@@ -2541,8 +2543,8 @@ <h3 id="name-historical-resolution">
25412543yJleHAiOjIyOTE3MjAxNzAsImlhdCI6MTY4NjkyMDE3MCwiaXNzIjoiaHR0cHM6Ly9le
25422544GFtcGxlLmNvbSIsInN0YXR1c19saXN0Ijp7ImJpdHMiOjEsImxzdCI6ImVOcmJ1UmdBQ
25432545WhjQlhRIn0sInN1YiI6Imh0dHBzOi8vZXhhbXBsZS5jb20vc3RhdHVzbGlzdHMvMSIsI
2544- nR0bCI6NDMyMDB9.V_ukn3xTpF3w14bgNMN2FaFCeTGQHXt81lii8tCAvOngf8BZrN7c
2545- lWfsLYcnQpgT0Ok9LQpfkX45WNRQydijug
2546+ nR0bCI6NDMyMDB9.2lKUUNG503R9htu4aHAYi7vjmr3sgApbfoDvPrl65N3URUO1EYqq
2547+ Ql45Jfzd-Av4QzlKa3oVALpLwOEUOq-U_g
25462548</ pre > < a href ="#section-8.4-7 " class ="pilcrow "> ¶</ a >
25472549</ div >
25482550</ section >
@@ -4682,19 +4684,25 @@ <h2 id="name-document-history">
46824684< p id ="appendix-D-2 "> -15< a href ="#appendix-D-2 " class ="pilcrow "> ¶</ a > </ p >
46834685< ul class ="normal ">
46844686< li class ="normal " id ="appendix-D-3.1 ">
4685- < p id ="appendix-D-3.1.1 "> add description field to EKU iana registration request < a href ="#appendix-D-3.1.1 " class ="pilcrow "> ¶</ a > </ p >
4687+ < p id ="appendix-D-3.1.1 "> limit Status List Token CWT COSE message to Sign1/Mac0 < a href ="#appendix-D-3.1.1 " class ="pilcrow "> ¶</ a > </ p >
46864688</ li >
46874689 < li class ="normal " id ="appendix-D-3.2 ">
4688- < p id ="appendix-D-3.2.1 "> fix typos in referenced token < a href ="#appendix-D-3.2.1 " class ="pilcrow "> ¶</ a > </ p >
4690+ < p id ="appendix-D-3.2.1 "> be explicit about tagging and re-add cose_sign1 tag to example < a href ="#appendix-D-3.2.1 " class ="pilcrow "> ¶</ a > </ p >
46894691</ li >
46904692 < li class ="normal " id ="appendix-D-3.3 ">
4691- < p id ="appendix-D-3.3.1 "> fix typos < a href ="#appendix-D-3.3.1 " class ="pilcrow "> ¶</ a > </ p >
4693+ < p id ="appendix-D-3.3.1 "> add description field to EKU iana registration request < a href ="#appendix-D-3.3.1 " class ="pilcrow "> ¶</ a > </ p >
46924694</ li >
46934695 < li class ="normal " id ="appendix-D-3.4 ">
4694- < p id ="appendix-D-3.4.1 "> make IANA references informative < a href ="#appendix-D-3.4.1 " class ="pilcrow "> ¶</ a > </ p >
4696+ < p id ="appendix-D-3.4.1 "> fix typos in referenced token < a href ="#appendix-D-3.4.1 " class ="pilcrow "> ¶</ a > </ p >
46954697</ li >
46964698 < li class ="normal " id ="appendix-D-3.5 ">
4697- < p id ="appendix-D-3.5.1 "> remove unused iana.jose reference< a href ="#appendix-D-3.5.1 " class ="pilcrow "> ¶</ a > </ p >
4699+ < p id ="appendix-D-3.5.1 "> fix typos< a href ="#appendix-D-3.5.1 " class ="pilcrow "> ¶</ a > </ p >
4700+ </ li >
4701+ < li class ="normal " id ="appendix-D-3.6 ">
4702+ < p id ="appendix-D-3.6.1 "> make IANA references informative< a href ="#appendix-D-3.6.1 " class ="pilcrow "> ¶</ a > </ p >
4703+ </ li >
4704+ < li class ="normal " id ="appendix-D-3.7 ">
4705+ < p id ="appendix-D-3.7.1 "> remove unused iana.jose reference< a href ="#appendix-D-3.7.1 " class ="pilcrow "> ¶</ a > </ p >
46984706</ li >
46994707 </ ul >
47004708< p id ="appendix-D-4 "> -14< a href ="#appendix-D-4 " class ="pilcrow "> ¶</ a > </ p >
0 commit comments