← Prev in month ← Prev in thread
Next in thread → Next in month →

X.509 attribute requester conformance clauses

From
Tom Scavo <>
Date
2007-08-01T15:41:35+00:00
ID
Thread
X.509 attribute requester conformance clauses
Taking into account the comments of Ari, Hal, and Scott, here are
possible conformance sections for both X.509 attribute requester
profiles:

Implementation Conformance [SAML V2.0 Attribute Sharing Profile for
X.509 Authentication-Based Systems]

An implementation of this specification shall be a conforming Basic
Mode X.509 Attribute Query/Requester or a conforming Encrypted Mode
X.509 Attribute Query/Requester (or both).  An Encrypted Mode X.509
Attribute Query/Requester is a functional superset of a Basic Mode
X.509 Attribute Query/Requester.

A Basic Mode X.509 Attribute Query/Requester MUST conform to the
normative statements in section 3.  An Encrypted Mode X.509 Attribute
Query/Requester MUST conform to the normative statements in section 4,
which includes references to normative portions of section 3.

Implementation Conformance [SAML V2.0 Deployment Profiles for X.509 Subjects]

An implementation of this specification shall be a conforming Extended
Mode X.509 Attribute Query/Requester or a conforming Extended Mode
X.509 Attribute Self-Query/Requester (or both).  An Extended Mode
X.509 Attribute Self-Query/Requester is a functional superset of an
Extended Mode X.509 Attribute Query/Requester.

An Extended Mode X.509 Attribute Query/Requester MUST conform to the
normative statements in section 3.  An Extended Mode X.509 Attribute
Self-Query/Requester MUST conform to the normative statements in
section 4, which includes references to normative portions of section
3.

Unless there are further suggestions (which are still welcome, of
course), I'll include these sections into new versions of the profile
documents.

Tom
← Prev in month ← Prev in thread
Next in thread → Next in month →