Title: Message
Tom,
Out of band.
~ Rick
From: Thomas Wisniewski
[mailto:]
Sent: Wednesday, March 09,
2005 3:44 PM
To:
Cc:
Scott Tomilson
Subject: [security-services] Question on X509
Authn-based Attr Sharing Profile
Rick, can you
elaborate more on how the X509 Authn-based Attr Sharing Profile will use/verify
holder-of-key?
Is it the intent
that key information will be exchanged out of band (e.g., and KeyName would be
used to identify the key)? Or are you planning on passing around X.509
Certs in the KeyInfo element?
All, is there a
place on the Saml site that describes the usage/validation of the subject
using holder-of-key identifier (more detail than the SAML 2 Profile
spec)?
Thanks,
Tom.