Re: [security-services] Groups - sstc-saml-x509-authn-attrib-profile-draft-10-diff.pdf uploaded

From
Tom Scavo <>
Date
2006-08-08T19:56:48+00:00
ID
Thread
Re: [security-services] Groups - sstc-saml-x509-authn-attrib-profile-draft-10-diff.pdf uploaded
On 8/7/06, Greg Whitehead <> wrote:
> I guess the question is whether a client that knows nothing about the X.509
> Attribute Sharing Profile NEEDS to distinguish between those three
> endpoints, or would they all work for standard attribute requests?

Well that's the point, I guess.  Currently, there doesn't seem to be
any way for an endpoint to call out support for one of the X.509
profiles and NOT support the Assertion Query/Request Profile.  In that
sense, EVERY attribute query profile should extend the Assertion
Query/Request Profile.

> Do you really expect to see separate endpoints like that anyway, or would it
> be more common to have one endpoint like...

Yes of course, but your example exhibits the same problem, I think.

Tom