Skip to Content.
Sympa Menu

shibboleth-dev - RE: comments: draft-mace-shibboleth-arch-protocols-02

Subject: Shibboleth Developers

List archive

RE: comments: draft-mace-shibboleth-arch-protocols-02


Chronological Thread 
  • From: "Scott Cantor" <>
  • To: "'Alistair Young'" <>
  • Cc: <>
  • Subject: RE: comments: draft-mace-shibboleth-arch-protocols-02
  • Date: Mon, 1 Nov 2004 09:36:43 -0500
  • Organization: The Ohio State University

> SAML1 has a nameID but shibb defines it's own namespace for this which
> says it should be opaque and transient.

It says no such thing. It defines a means of doing this when you need to
because assuming privacy is a concern is a better default than not assuming
it.

> I haven't spotted this use case in SAML2 (maybe I'm missing something)

Yep.

Check section 8.3.7 of core. That is effectively the definition of eptid
that I want to move to.

-- Scott




Archive powered by MHonArc 2.6.16.

Top of Page