atom feed19 messages in org.oasis-open.lists.xacml[xacml] Metadata Profile (was RE: [xa...
FromSent OnAttachments
Hal LockhartMay 16, 2012 3:28 pm 
remo...@emc.comMay 16, 2012 11:43 pm 
Hal LockhartMay 17, 2012 8:00 am 
Danny ThorpeMay 17, 2012 11:34 am 
Danny ThorpeMay 17, 2012 12:44 pm 
remo...@emc.comMay 17, 2012 2:29 pm 
Hal LockhartMay 29, 2012 12:48 pm 
Hal LockhartMay 29, 2012 12:53 pm 
Hal LockhartMay 29, 2012 12:58 pm 
Danny ThorpeMay 29, 2012 3:20 pm 
Hal LockhartMay 31, 2012 7:50 am 
David BrossardMay 31, 2012 7:53 am 
remo...@emc.comMay 31, 2012 3:14 pm 
remo...@emc.comMay 31, 2012 3:48 pm 
Craig R ForsterMay 31, 2012 4:10 pm.gif, .gif
prateek mishraJun 1, 2012 7:13 am 
Anil SaldhanaJun 1, 2012 8:24 am 
Craig R ForsterJun 1, 2012 8:27 am.gif, .gif
Hal LockhartJun 7, 2012 8:26 am 
Subject:[xacml] Metadata Profile (was RE: [xacml] REST Profile - PAP Issues)
From:Hal Lockhart (hal.@oracle.com)
Date:Jun 7, 2012 8:26:22 am
List:org.oasis-open.lists.xacml

The Policy Combining Algorithm for this virtual Policy Set is a PDP-wide parameter which can be advertized via Metadata (once we do the Metadata Profile).

I'm getting more and more interested in completing the Metadata Profile. What's the current status?

Erik did a partial draft and scheme which can be found here:

https://www.oasis-open.org/apps/org/workgroup/xacml/download.php/27316/xacml-3.0-metadata-v1-wd-01.zip

Nobody has worked on it since 2008.

If you are interested in working on it, you might take a quick look at the SAML
2.0 Metadata Profile:
http://docs.oasis-open.org/security/saml/v2.0/saml-metadata-2.0-os.pdf

The XACML one is intended to have a similar scope. That is, it will define
symbols and their semantics, but remain silent on how Metadata is published or
otherwise communicated, as long as the method provides at a minimum
Authentication of the Metadata Producer and integrity protection of the
contents.

Hal