Skip to Content.
Sympa Menu

shibboleth-dev - Re: Gridshib profile

Subject: Shibboleth Developers

List archive

Re: Gridshib profile


Chronological Thread 
  • From: Walter Hoehn <>
  • To: Tom Barton <>
  • Cc: , Von Welch <>
  • Subject: Re: Gridshib profile
  • Date: Wed, 19 Jan 2005 09:32:37 -0600

Hi Tom,

Exactly. If you use shibboleth's metadata API, then your code will be mostly insulated from issues such as the metadata format and distribution method.

-Walter


On Jan 19, 2005, at 7:48 AM, Tom Barton wrote:

Walter Hoehn wrote:
A couple of comments. Sorry if we've been over these before, but it's been a mighty long time since we've discussed it.
1) In section I.2a it seems that it would be more inline with current practice to place and IdP provider id in the certificate extension. This could then be used to lookup the set of valid attribute query endpoints.

Ok. What "resolver" is used to look them up? Are you referring to metadata maintained and distributed to IdPs and SPs by a 3rd party (a federation), that an SP would use to look up a provider id?

Attachment: smime.p7s
Description: S/MIME cryptographic signature




Archive powered by MHonArc 2.6.16.

Top of Page