RE: [security-services] Question on X509 Authn-based Attr Sharing Profile

From
Randall Rick <>
Date
2005-03-09T20:47:05+00:00
ID
Thread
RE: [security-services] Question on X509 Authn-based Attr Sharing Profile
Title: Message

Tom,

 

Out of band.

 

 ~ Rick

 

From: Thomas Wisniewski 
[mailto:] 
Sent: Wednesday, March 09, 
2005 3:44 PM
To: 
Cc: 
Scott Tomilson
Subject: [security-services] Question on X509 
Authn-based Attr Sharing Profile

Rick, can you 
elaborate more on how the X509 Authn-based Attr Sharing Profile will use/verify 
holder-of-key?

 

Is it the intent 
that key information will be exchanged out of band (e.g., and KeyName would be 
used to identify the key)? Or are you planning on passing around X.509 
Certs in the KeyInfo element?

 

All, is there a 
place on the Saml site that describes the usage/validation of the subject 
using holder-of-key identifier (more detail than the SAML 2 Profile 
spec)?

 

Thanks, 
Tom.