I haven't looked at the diagrams yet, but:
1. NotBefore/NotAfter are defined under Conditions, which is in
AssertionAbstractType
2. Attribute has a complex strucure with potentially independant name and
value namespaces and multi-valued attributes, all described in section 1.6
Hal
> -----Original Message-----
> From: George Robert Blakley III [mailto:]
> Sent: Friday, August 24, 2001 2:12 PM
> To: Hal Lockhart
> Cc: ''
> Subject: Assertion Element
>
>
> I was looking at Phill's diagrams yesterday evening and two
> things jumped
> out at me.
>
> The first was that I couldn't find the validity interval
> (NotBefore/NotAfter) anywhere. I thought these
> were in the base schema... but I can't remember for sure.
> The second was
> that the AttributeAssertionType
> has a simple "Attribute" member... should this be called out as a
> Type/Value or Name/Value structure?
>
>
> --bob
>
> Bob Blakley (email: phone: +1 512 436 1564)
> Chief Scientist, Security and Privacy, Tivoli Systems, Inc.
>
>
> Hal Lockhart <> on 08/24/2001 12:44:43 PM
>
> Please respond to Hal Lockhart <>
>
> To: "''"
> <>
> cc:
> Subject: Object Element
>
>
>
> Someone else may have already spotted this, but more cleanup
> is required
> around Object in core 0.15.
>
> QueryAbstractType still refers to Object, but in
> Authorization Decision
> Assertion, Object has been eliminated and Resource and Action are now
> independant elements.
>
> Hal
>
> ----------------------------------------------------------------
> To subscribe or unsubscribe from this elist use the subscription
> manager: <http://lists.oasis-open.org/ob/adm.pl>
>