← Prev in month ← Prev in thread

Artifact binding -- Most effective binding against DOS attacks

From
giorgi moniava <>
Date
2008-06-30T07:47:38+00:00
ID
Thread
Artifact binding -- Most effective binding against DOS attacks
Hi all.

Just wanted to ask your opinion about following statement. I think that
artifact based binding has the highest chances to be effectively secured
against DOS attacks. Since, when an IdP received an artifact, which comes
from an malicious SP, and tries to contat her in order to retrieve the corresponding
message using SOAP binding, she will use SSL/TLS with bilateral authentication,
clearly, if she looks up the identitied of the available parties then, requests from
malicious SPs will be blocked (i.e. IdP wont receive SAML 2.0 messages from
them, just artifacts). With POST and GET bindings, IdP is forced to process
a SAML 2.0 message before she can take any action for protecting against DOS.
Does what I wrote make sense?

Thanks!.

Giorgi.
← Prev in month ← Prev in thread