Uploaded image for project: 'FHIR Specification Feedback'
  1. FHIR Specification Feedback
  2. FHIR-40333

udap_authorization_extensions_required: make clear if limited to B2B

    XMLWordPrintableJSON

Details

    • Icon: Change Request Change Request
    • Resolution: Unresolved
    • Icon: Medium Medium

    Description

      The field "udap_authorization_extensions_required" says "Authorization Extension Objects required by the Authorization Server in every token request", but if the server supports both authorization_code and client_credentials, then the hl7-b2b extensions will not be required in every token request, only the B2B requests, thus "hl7-b2b" should not be specified here.

      Is the intent of this metadata field to specify required extensions on every token request, or only client credentials token requests?

      Attachments

        Activity

          People

            Unassigned Unassigned
            jlamy Joseph M. Lamy
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated: