| From | Sent On | Attachments |
|---|---|---|
| 47 earlier messages | ||
| Rich Thompson | Jan 24, 2003 8:22 am | |
| Rich Thompson | Jan 24, 2003 8:27 am | |
| Rich Thompson | Jan 24, 2003 8:34 am | |
| Rich Thompson | Jan 24, 2003 8:40 am | |
| Rich Thompson | Jan 24, 2003 8:50 am | |
| Rich Thompson | Jan 24, 2003 8:53 am | |
| Rich Thompson | Jan 24, 2003 8:55 am | |
| Rich Thompson | Jan 24, 2003 9:01 am | |
| Rich Thompson | Jan 24, 2003 9:03 am | |
| Rich Thompson | Jan 24, 2003 9:05 am | |
| Rich Thompson | Jan 24, 2003 9:07 am | |
| Rich Thompson | Jan 24, 2003 9:09 am | |
| Rich Thompson | Jan 24, 2003 9:23 am | |
| Rich Thompson | Jan 24, 2003 9:27 am | |
| Rich Thompson | Jan 24, 2003 9:33 am | |
| Rich Thompson | Jan 24, 2003 9:37 am | |
| Subbu Allamaraju | Jan 24, 2003 9:37 am | |
| Rich Thompson | Jan 24, 2003 9:43 am | |
| Rich Thompson | Jan 24, 2003 9:45 am | |
| Rich Thompson | Jan 24, 2003 9:52 am | |
| Rich Thompson | Jan 24, 2003 9:55 am | |
| Rich Thompson | Jan 24, 2003 9:57 am | |
| Rich Thompson | Jan 24, 2003 10:00 am | |
| Rich Thompson | Jan 24, 2003 10:03 am | |
| Rich Thompson | Jan 24, 2003 10:06 am | |
| Rich Thompson | Jan 24, 2003 10:16 am | |
| Rich Thompson | Jan 24, 2003 10:22 am | |
| Rich Thompson | Jan 24, 2003 10:26 am | |
| Rich Thompson | Jan 24, 2003 10:28 am | |
| Rich Thompson | Jan 24, 2003 10:32 am | |
| Rich Thompson | Jan 24, 2003 10:34 am | |
| Rich Thompson | Jan 24, 2003 10:39 am | |
| Rich Thompson | Jan 24, 2003 10:42 am | |
| Rich Thompson | Jan 24, 2003 10:43 am | |
| Rich Thompson | Jan 24, 2003 10:45 am | |
| Rich Thompson | Jan 24, 2003 10:47 am | |
| Rich Thompson | Jan 24, 2003 10:49 am | |
| Rich Thompson | Jan 24, 2003 10:54 am | |
| Rich Thompson | Jan 24, 2003 10:55 am | |
| Rich Thompson | Jan 24, 2003 10:57 am | |
| Rich Thompson | Jan 24, 2003 10:58 am | |
| Rich Thompson | Jan 24, 2003 11:00 am | |
| Rich Thompson | Jan 24, 2003 11:01 am | |
| Rich Thompson | Jan 24, 2003 11:03 am | |
| Rich Thompson | Jan 24, 2003 11:04 am | |
| Rich Thompson | Jan 24, 2003 11:08 am | |
| Eilon Reshef | Jan 24, 2003 3:55 pm | |
| Richard Jacob | Jan 24, 2003 10:05 pm | |
| Richard Jacob | Jan 24, 2003 10:05 pm | |
| Richard Jacob | Jan 25, 2003 9:14 pm | |
| Rich Thompson | Jan 26, 2003 8:35 pm | |
| Carsten Leue | Jan 26, 2003 9:27 pm | |
| Carsten Leue | Jan 26, 2003 9:27 pm | |
| Carsten Leue | Jan 26, 2003 9:27 pm | |
| Carsten Leue | Jan 26, 2003 9:27 pm | |
| Carsten Leue | Jan 26, 2003 9:27 pm | |
| Carsten Leue | Jan 26, 2003 9:27 pm | |
| Carsten Leue | Jan 26, 2003 9:27 pm | |
| Carsten Leue | Jan 26, 2003 9:28 pm | |
| Carsten Leue | Jan 26, 2003 9:28 pm | |
| Carsten Leue | Jan 26, 2003 9:28 pm | |
| Carsten Leue | Jan 26, 2003 9:28 pm | |
| Carsten Leue | Jan 26, 2003 9:28 pm | |
| Carsten Leue | Jan 26, 2003 9:28 pm | |
| Carsten Leue | Jan 26, 2003 9:28 pm | |
| Carsten Leue | Jan 26, 2003 9:28 pm | |
| Rich Thompson | Jan 27, 2003 5:15 am | |
| Rich Thompson | Jan 27, 2003 5:19 am | |
| Rich Thompson | Jan 27, 2003 6:06 am | |
| Rich Thompson | Jan 27, 2003 6:21 am | |
| Rich Thompson | Jan 27, 2003 6:28 am | |
| Rich Thompson | Jan 27, 2003 7:00 am | |
| Rich Thompson | Jan 27, 2003 7:01 am | |
| Rich Thompson | Jan 27, 2003 7:03 am | |
| Rich Thompson | Jan 27, 2003 7:06 am | |
| Rich Thompson | Jan 27, 2003 7:08 am | |
| Rich Thompson | Jan 27, 2003 7:12 am | |
| Rich Thompson | Jan 27, 2003 7:14 am | |
| Rich Thompson | Jan 27, 2003 7:20 am | |
| Rich Thompson | Jan 27, 2003 7:22 am | |
| Rich Thompson | Jan 27, 2003 7:25 am | |
| Rich Thompson | Jan 27, 2003 8:41 am | |
| Rich Thompson | Jan 27, 2003 8:44 am | |
| Rich Thompson | Jan 27, 2003 8:46 am | |
| Rich Thompson | Jan 27, 2003 8:48 am | |
| Rich Thompson | Jan 27, 2003 8:51 am | |
| Rich Thompson | Jan 27, 2003 8:53 am | |
| Rich Thompson | Jan 27, 2003 8:56 am | |
| Subbu Allamaraju | Jan 27, 2003 9:05 am | |
| Rich Thompson | Jan 27, 2003 5:50 pm | |
| Rex Brooks | Jan 28, 2003 6:39 am | |
| Rich Thompson | Jan 28, 2003 12:41 pm | |
| Rich Thompson | Jan 28, 2003 12:43 pm | |
| Rich Thompson | Feb 6, 2003 11:30 am | |
| Rich Thompson | Feb 7, 2003 7:02 am | |
| Rich Thompson | Feb 7, 2003 7:10 am | |
| Michael Freedman | Feb 9, 2003 6:19 pm | |
| Eilon Reshef | Feb 10, 2003 9:39 pm | |
| Rich Thompson | Feb 11, 2003 11:19 am | |
| Rich Thompson | Feb 11, 2003 11:19 am | |
| 163 later messages | ||
| Subject: | Re: [wsrp-wsia] [change request #2] Restricting access based onregistration handle | |
|---|---|---|
| From: | Richard Jacob (rich...@de.ibm.com) | |
| Date: | Jan 25, 2003 9:14:05 pm | |
| List: | org.oasis-open.lists.wsrp-wsia | |
sorry I meant we should _not_ mandate for ...
Mit freundlichen Gruessen / best regards,
Richard Jacob
______________________________________________________ IBM Lab Boeblingen, Germany Dept.8288, WebSphere Portal Server Development Phone: ++49 7031 16-3469 - Fax: ++49 7031 16-4888 Email: mailto:rich...@de.ibm.com
|---------+----------------------------> | | Richard | | | Jacob/Germany/IBM| | | @IBMDE | | | | | | 01/24/2003 12:00 | | | PM | |---------+----------------------------> >--------------------------------------------------------------------------------------------------------------------------------------------------| | | | To: wsrp...@lists.oasis-open.org | | cc: | | Subject: Re: [wsrp-wsia] [change request #2] Restricting access based on registration handle | >--------------------------------------------------------------------------------------------------------------------------------------------------|
I agree to that. we should leave it up to the implementations if and how these security aspects are handled. We should mandate for using a certain security technology.
Mit freundlichen Gruessen / best regards,
Richard Jacob
______________________________________________________ IBM Lab Boeblingen, Germany Dept.8288, WebSphere Portal Server Development Phone: ++49 7031 16-3469 - Fax: ++49 7031 16-4888 Email: mailto:rich...@de.ibm.com
|---------+----------------------------> | | Rich | | | Thompson/Watson/I| | | BM@IBMUS | | | | | | 01/20/2003 02:38 | | | PM | |---------+----------------------------> > --------------------------------------------------------------------------------------------------------------------------------------------------|
| | | To: wsrp...@lists.oasis-open.org | | cc: | | Subject: [wsrp-wsia] [change request #2] Restricting access based on registration handle | > --------------------------------------------------------------------------------------------------------------------------------------------------|
Document: WSRP spec Section: 5.2 Page/Line: 29/11-14 Requested by: Rich Thompson Old text: Producers may also find it useful to restrict the information returned to those portions of the service that the registration context will allow the Consumer to access on subsequent invocations. Producers using various security standards (e.g. WS-Security or SSL) to secure the communication should delegate this access control issue to the relevant security context.
Proposed text: (delete these 2 sentences)
Reasoning: When our security people read through the spec, they found these two sentences not useful for several reasons, primarily: 1 - They don't really say anything beyond the sentence at line 7. 2 - By raising the question of delegating such decisions without fully specifying how such delegation would work, the spec does more to confuse than to help. 3 - It really isn't the role of the WSRP spec to define how implementations will also support various security standards.
---------------------------------------------------------------- To subscribe or unsubscribe from this elist use the subscription manager: <http://lists.oasis-open.org/ob/adm.pl>
---------------------------------------------------------------- To subscribe or unsubscribe from this elist use the subscription manager: <http://lists.oasis-open.org/ob/adm.pl>





