Next in thread → Next in month →

RE: [saml-dev] draft-catalyst-interop-plan-01

From
Jahan Moreh <>
Date
2002-04-30T19:35:36+00:00
ID
000601c1f07e$36d46800$1569f4d1@JMOREH
Thread
RE: [saml-dev] draft-catalyst-interop-plan-01
Title: Message

Our preference would be in the following order:

1. Base 64 DER

2. Binary DER 

3. PKCS #7

 

Jahan

 

 

---------------------------
Jahan Moreh
Chief Security 
Architect
tel: 310.286.3070
fax: 310.286.3076

  

  
-----Original Message-----
From: Hal Lockhart 
  [mailto:] 
Sent: Tuesday, April 30, 2002 
  12:21 PM
To: ''; 'Mishra, Prateek'; 
  
Subject: RE: [saml-dev] 
  draft-catalyst-interop-plan-01

  
Comments below. 

  
> Section 1.2, URL Naming Convention 
> ** 
> What is the difference between the 
  "portal" and the "inter-site 
> transfer"? I thought 
  they are one and the same (i.e., the URL for 
> 
  browser to go to authenticate and receive the artifact). 

  
I agree, I don't see why they can't be the same. 
  

  
> Section 1.6.b (trust model) 
> 
  ** 
> I think the correct standard here is PKCS #7 
  and not PKCS #12. 

  
This is a holdover from our original idea that we would be 
  exchanging a root plus a chain. Since I guess we are just exchanging a single 
  root for SSL which is likely to be a self-signed cert, any of: PKCS#7, CMS, 
  binary DER, base64 DER or PKCS#12 would work.

  
Anybody have a strong perference? We have a tool that can 
  convert among various types. 

  
Hal
Next in thread → Next in month →