I'd suggest allowing support for the well-known location mechanism as well
as the DNS-based approach for metadata acquisition, in case there are
deployment environments where the DNS is under separate administration,
outside the convenient control of those responsible for SAML deployment.
--jl
-----Original Message-----
From: Jahan Moreh [mailto:]
Sent: Tuesday, September 16, 2003 8:28 PM
To: Scott Cantor;
Cc:
Subject: [security-services] DDDS RFCs, Liberty and SAML Metadata
exchange protocol
Scott and Jeff -
I took some time today to read the DDDS RFC set (3401-3405) as well as NAPTR
RFC (2915). I think I understand these sufficiently to follow Liberty's
Metadata discovery specifications. It is still useful (though no longer
critical) to have a conversation with Peter Davis to clear up a few things.
I am now very much leaning towards proposing that we use DDDS/DNS for
publishing SAML metadata.
Thanks for your guidance,
Jahan
----------------
Jahan Moreh
Chief Security Architect
310.286.3070
To unsubscribe from this mailing list (and be removed from the roster of the
OASIS TC), go to
http://www.oasis-open.org/apps/org/workgroup/security-services/members/leave
_workgroup.php.