69°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • Plane
    1775.52mi
    Distance
    247:28
    Duration
    6:16pm
    Start
    8:23pm
    End
    Seattle, Washington • 60°F
    Tue, Sep 19, 2023 8:23pm -07:00
  • Aaron Parecki
    at Gate E11
    DFW Airport, Texas • Tue, September 19, 2023 5:13pm
    32.891659 -97.036469
    DFW Airport, TX, United States • 94°F
    2 mentions
    Tue, Sep 19, 2023 5:13pm -05:00
  • Aaron Parecki
    at Terminal E
    Grapevine, Texas • Tue, September 19, 2023 5:12pm
    32.890619 -97.036026
    Grapevine, TX, United States • 94°F
    1 mention
    Tue, Sep 19, 2023 5:12pm -05:00
  • Aaron Parecki
    at Skylink
    Grapevine, Texas • Tue, September 19, 2023 5:11pm
    32.892305 -97.036385
    Grapevine, TX, United States • 94°F
    2 mentions
    Tue, Sep 19, 2023 5:11pm -05:00
  • Tram
    1.58mi
    Distance
    4:39
    Duration
    5:06pm
    Start
    5:11pm
    End
    Dallas, Texas • 94°F
    Tue, Sep 19, 2023 5:11pm -05:00
  • Aaron Parecki
    at Skylink
    Grapevine, Texas • Tue, September 19, 2023 5:06pm
    32.896343 -97.044198
    Grapevine, TX, United States • 94°F
    1 mention
    Tue, Sep 19, 2023 5:06pm -05:00
  • Emelia ๐Ÿ‘ธ๐Ÿป https://hachyderm.io/@thisismissem   •   Sep 19

    @aaronpk I've seen that, but haven't yet fully looked at it.. it always looked so... financial related?

    Aaron Parecki
    Yeah that is an artifact of its origins, but they took "Financial" out of the name and now it's just "FAPI". Think of it as just a high-security profile, one which would likely be useful for financial related industries and others with similar concerns.
    Dallas, Texas • 94°F
    1 like 1 reply
    Tue, Sep 19, 2023 4:19pm -05:00
  • Emelia ๐Ÿ‘ธ๐Ÿป https://hachyderm.io/@thisismissem   •   Sep 19

    @aaronpk that's perhaps fair, though I think OIDC smooths out a lot of OAuth 2.0's rough edges

    Aaron Parecki
    If you want to see a profile that *really* smoothes out the rough edges, check out the OpenID FAPI profile. The whole goal of that is high security and interoperability. OpenID core is still pretty loose.
    Dallas, Texas • 94°F
    1 like 1 reply
    Tue, Sep 19, 2023 4:10pm -05:00
  • Aaron Parecki
    at American Airlines Admirals Club
    Grapevine, Texas • Tue, September 19, 2023 4:02pm
    32.898254 -97.045037
    Grapevine, TX, United States • 94°F
    2 mentions
    Tue, Sep 19, 2023 4:02pm -05:00
  • Aaron Parecki
    at Skylink
    Grapevine, Texas • Tue, September 19, 2023 3:57pm
    32.896343 -97.044198
    Grapevine, TX, United States
    3 mentions
    Tue, Sep 19, 2023 3:57pm -05:00
  • Tram
    1.27mi
    Distance
    3:23
    Duration
    3:53pm
    Start
    3:57pm
    End
    Dallas, Texas • 94°F
    Tue, Sep 19, 2023 3:57pm -05:00
  • Aaron Parecki
    at Skylink
    DFW Airport, Texas • Tue, September 19, 2023 3:53pm
    32.88841 -97.036545
    DFW Airport, TX, United States • 94°F
    Tue, Sep 19, 2023 3:53pm -05:00
  • Evan Prodromou https://cosocial.ca/@evan   •   Sep 17

    I started a FEP to define an #OAuth 2.0 profile for the #ActivityPub API (โ€œc2sโ€):

    https://codeberg.org/fediverse/fep/pulls/162

    Iโ€™d appreciate any feedback or support. Iโ€™ve begun implementing this profile, and I think itโ€™s testing out pretty well.

    Aaron Parecki
    I see the proposal has just been merged and now links out to a socialhub link? Where is the best place to continue discussing this? I have ... a lot of feedback as you might imagine.

    https://socialhub.activitypub.rocks/t/fep-d8c2-oauth-2-0-profile-for-the-activitypub-api/3575
    Dallas, Texas, USA • 93°F
    1 like 1 reply
    Tue, Sep 19, 2023 3:42pm -05:00
  • Emelia ๐Ÿ‘ธ๐Ÿป https://hachyderm.io/@thisismissem   •   Sep 17

    @evan no, I mean, I don't see why it'd make sense to define a custom profile of OAuth 2.0 when OIDC exists and we could just use it?

    What does defining a custom profile really give us? Our authentication needs can't be that unique, can they?

    Aaron Parecki
    there is no "just use" OIDC, it would still require defining a profile. Plus I don't think most ActivityPub implementations benefit from most of the features OIDC brings.
    Dallas, Texas, USA • 93°F
    1 reply
    Tue, Sep 19, 2023 3:40pm -05:00
  • Emelia ๐Ÿ‘ธ๐Ÿป https://hachyderm.io/@thisismissem   •   Sep 17

    @evan so currently all the different fediverse services that implement OAuth implement different bits of specs & don't support discovery of authorization server metadata; additionally, they rarely support PKCE. Dynamic Client Registration is supported, but OIDC Federation would likely be better.

    The scopes you define look like they could conflict with existing implementations, and are also not discoverable by the client.

    Aaron Parecki
    so, a few things. Despite "federation" in the name, OIDC Federation is really not the right thing for this. It's more for a closed ecosystem of independent servers, but is explicitly not made to be open for anyone to join a federation. That's why there are trust anchors and things.

    If current implementations don't support PKCE, they really should, because it's only a matter of time before someone takes advantage of the hole that not doing PKCE leaves open for public clients.
    Dallas, Texas, USA • 93°F
    1 like
    Tue, Sep 19, 2023 3:39pm -05:00
  • Aaron Parecki
    at Plaza Premium Lounge
    Grapevine, Texas • Tue, September 19, 2023 3:21pm
    32.888633 -97.036732
    Grapevine, TX, United States • 92°F
    4 mentions
    Tue, Sep 19, 2023 3:21pm -05:00
  • Aaron Parecki
    at Skylink
    DFW Airport, Texas • Tue, September 19, 2023 3:15pm
    32.88841 -97.036545
    DFW Airport, TX, United States
    3 mentions
    Tue, Sep 19, 2023 3:15pm -05:00
  • Tram
    1.71mi
    Distance
    5:21
    Duration
    3:09pm
    Start
    3:15pm
    End
    Dallas, Texas • 92°F
    Tue, Sep 19, 2023 3:15pm -05:00
  • Aaron Parecki
    at Skylink
    Grapevine, Texas • Tue, September 19, 2023 3:07pm
    32.89887 -97.044182
    Grapevine, TX, United States • 92°F
    2 mentions
    Tue, Sep 19, 2023 3:07pm -05:00
  • Aaron Parecki
    at Terminal D
    Grapevine, Texas • Tue, September 19, 2023 3:05pm
    32.897732 -97.044339
    Grapevine, TX, United States • 92°F
    2 mentions
    Tue, Sep 19, 2023 3:05pm -05:00
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • ๐ŸŽฅ YouTube Tutorials and Reviews
  • ๐Ÿ  We're building a triplex!
  • โญ๏ธ Life Stack
  • โš™๏ธ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv