RE: Assertion Element

From
Hal Lockhart <>
Date
2001-08-24T18:26:24+00:00
ID
Thread
RE: Assertion Element
I haven't looked at the diagrams yet, but:

1. NotBefore/NotAfter are defined under Conditions, which is in
AssertionAbstractType

2. Attribute has a complex strucure with potentially independant name and
value namespaces and multi-valued attributes, all described in section 1.6

Hal

> -----Original Message-----
> From: George Robert Blakley III [mailto:]
> Sent: Friday, August 24, 2001 2:12 PM
> To: Hal Lockhart
> Cc: ''
> Subject: Assertion Element
> 
> 
> I was looking at Phill's diagrams yesterday evening and two 
> things jumped
> out at me.
> 
> The first was that I couldn't find the validity interval
> (NotBefore/NotAfter) anywhere.  I thought these
> were in the base schema... but I can't remember for sure.  
> The second was
> that the AttributeAssertionType
> has a simple "Attribute" member... should this be called out as a
> Type/Value or Name/Value structure?
> 
> 
> --bob
> 
> Bob Blakley (email:    phone: +1 512 436 1564)
> Chief Scientist, Security and Privacy, Tivoli Systems, Inc.
> 
> 
> Hal Lockhart <> on 08/24/2001 12:44:43 PM
> 
> Please respond to Hal Lockhart <>
> 
> To:   "''"
>       <>
> cc:
> Subject:  Object Element
> 
> 
> 
> Someone else may have already spotted this, but more cleanup 
> is required
> around Object in core 0.15.
> 
> QueryAbstractType still refers to Object, but in 
> Authorization Decision
> Assertion, Object has been eliminated and Resource and Action are now
> independant elements.
> 
> Hal
> 
> ----------------------------------------------------------------
> To subscribe or unsubscribe from this elist use the subscription
> manager: <http://lists.oasis-open.org/ob/adm.pl>
>