RE: [security-services] Web SSO <AuthnRequest> conformance

From
Mishra, Prateek <>
Date
2004-10-26T23:07:48+00:00
ID
Thread
RE: [security-services] Web SSO <AuthnRequest> conformance
I am afraid I still don't follow why there is a need for an additional
MTI feature. Is the argument that most AuthNRequest's do not commonly
fit on HTTP URLs? We haven't found this to be the case but then that is
just one opinion.

Maybe I havent understood the real issue in this thread.

- prateek

-----Original Message-----
From: Scott Cantor [mailto:] 
Sent: Tuesday, October 26, 2004 6:24 PM
To: 'Thomas Wisniewski'
Cc: 
Subject: RE: [security-services] Web SSO <AuthnRequest> conformance

> Seems reasonable. Do you feel it will be added to the conf 
> spec as MUST?

I'd be in favor of making POST MTI, and I think we have to do something.

The ability to do artifact was mostly just a consequence of layering the
spec the way I did (i.e. you get it for free architecturally), but there
wasn't overwhelming interest in using it for anything else.

-- Scott


To unsubscribe from this mailing list (and be removed from the roster of
the OASIS TC), go to
http://www.oasis-open.org/apps/org/workgroup/security-services/members/l
eave_workgroup.php.