atom feed26 messages in org.oasis-open.lists.security-servicesRE: [security-services] A browser/POS...
FromSent OnAttachments
Philpott, RobertApr 30, 2003 5:53 pm 
Scott CantorApr 30, 2003 8:52 pm 
Eve L. MalerMay 1, 2003 7:16 am 
Scott CantorMay 1, 2003 7:23 am 
Eve L. MalerMay 1, 2003 7:40 am 
Scott CantorMay 1, 2003 8:01 am 
Mishra, PrateekMay 1, 2003 8:21 am 
Scott CantorMay 1, 2003 8:29 am 
Philpott, RobertMay 1, 2003 9:34 am 
Scott CantorMay 1, 2003 10:29 am 
Eve L. MalerMay 1, 2003 10:32 am 
Mishra, PrateekMay 1, 2003 11:38 am 
Scott CantorMay 1, 2003 11:45 am 
Mishra, PrateekMay 1, 2003 11:58 am 
Philpott, RobertMay 1, 2003 12:07 pm 
Scott CantorMay 1, 2003 12:07 pm 
Philpott, RobertMay 1, 2003 12:28 pm 
Mishra, PrateekMay 1, 2003 1:04 pm 
Eve L. MalerMay 1, 2003 3:37 pm 
Jahan MorehMay 1, 2003 5:50 pm 
Jahan MorehMay 1, 2003 6:51 pm 
Philpott, RobertMay 1, 2003 8:41 pm 
Eve L. MalerMay 2, 2003 6:50 am 
Eve L. MalerMay 2, 2003 6:50 am 
Eve L. MalerMay 2, 2003 7:39 am 
Jahan MorehMay 2, 2003 9:01 am 
Subject:RE: [security-services] A browser/POST question...
From:Scott Cantor (cant@osu.edu)
Date:May 1, 2003 12:07:44 pm
List:org.oasis-open.lists.security-services

OK, so the proposed clarification would be replace: 1)

Section 4.1.1.6

The <saml:ConfirmationMethod> element of each assertion MUST be set to urn:oasis:names:tc:SAML:1.0:cm:artifact-01.

BY

The <saml:ConfirmationMethod> element of each statement in each assertion MUST be set to urn:oasis:names:tc:SAML:1.0:cm:artifact-01

The problem with that is that it assumes that each statement even has a subject (not a requirement, of course, though only SubjectStatements are currently defined by SAML).

Maybe that's being overly pedantic. ;-)

-- Scott