> Because WSS implementation knows wsu:Id is of type xsd:Id.
> In order for it to know saml:AssertionID (or any other token defined
> attribute) is of type xsd:Id, requires schema processing.
That's a very interesting question; are we expecting/requiring profiles to
be supported generically? Or it it reasonable to expect that if a WSS
implementation supports a profile FOO it has some knowledge of the
syntax and/or semantics of FOO? You could make the case either way.
I don't recall consensus on way or the other.
/r$
--
Rich Salz Chief Security Architect
DataPower Technology http://www.datapower.com
XS40 XML Security Gateway http://www.datapower.com/products/xs40.html
XML Security Overview http://www.datapower.com/xmldev/xmlsecurity.html