Re: [security-services] Groups - sstc-saml-x509-authn-based-attribute-protocol-profile-2 0-draft-07.pdf uploaded

From
Randall Rick <>
Date
2005-05-24T11:45:19+00:00
ID
Thread
Re: [security-services] Groups - sstc-saml-x509-authn-based-attribute-protocol-profile-2 0-draft-07.pdf uploaded
Title: RE: [security-services] Groups - sstc-saml-x509-authn-based-attribute-protocol-profile-2 0-draft-07.pdf uploaded

Tom,

 

Sorry I missed that comment earlier.  The intent is to sign 
both.  Do I need to post another draft to clarify this?

 

 

 ~ 
Rick

From: Thomas Wisniewski 
[mailto:] 
Sent: Tuesday, May 24, 2005 
12:27 AM
To: 
Subject: 
RE: [security-services] Groups - 
sstc-saml-x509-authn-based-attribute-protocol-profile-2 0-draft-07.pdf 
uploaded

Rick, looks good. Only one comment. 

There is a incocnsistency in lines 156 and 245. Basically when 
you are sending the Assertiton back, you can sign, the Response, the Assertion 
(inside the Response), or both. Line 156 seems to mandates signing the Response 
(and makes no mention of the assertion) whereas line 245 (which elaborates on 
the signing), mandates signing the Assertion (and makes no mention of the 
response).

Was your intent to sign only one of the 2 (or to sign both 
items, which seems a bit much)? 

Tom. 

-----Original Message----- 
From: 
 [mailto:] 

Sent: Monday, May 23, 2005 6:57 PM 
To:  
Subject: [security-services] Groups - 
sstc-saml-x509-authn-based-attribute-protocol-profile-2 0-draft-07.pdf 
uploaded 

The document named 
sstc-saml-x509-authn-based-attribute-protocol-profile-2 
0-draft-07.pdf has been submitted by Mr. Rick Randall to the OASIS 
Security Services (SAML) TC document repository. 

Document Description: 
Draft v07 of the 
X.509 authn profile, PDF format. 

This draft incorporates comments provided by Thomas Wisniewski 
and Scott Cantor of the SSTC on draft 06. 

Many thanks to Tom and Scott for their comments. 

View Document Details: http://www.oasis-open.org/apps/org/workgroup/security/document.php?document_id=12818 

Download Document:  
http://www.oasis-open.org/apps/org/workgroup/security/download.php/12818/sstc-saml-x509-authn-based-attribute-protocol-profile-2%200-draft-07.pdf

PLEASE NOTE:  If the above links do not work for you, your 
email application may be breaking the link into two pieces.  You may be 
able to copy and paste the entire link address into the address field of your 
web browser.

-OASIS Open Administration