RE: [security-services] Token binding
> We are in favor of doing this in SAML. We will implement it. I can help out. Thanks. I think if we use SubjectConfirmation we really don't have much choice but to create a new SSO profile, so it is a somewhat heavyweight approach. -- Scott