shibboleth-dev - RE: TargetedID Durability
Subject: Shibboleth Developers
List archive
- From: "Scott Cantor" <>
- To: <>
- Subject: RE: TargetedID Durability
- Date: Fri, 29 Jul 2005 15:39:21 -0400
- Organization: The Ohio State University
> Our different understanding is not whether an ePTID can ever change.
> The causes you mention are valid reasons to change an ePTID.
> However, absent some special agreement or action between the SP
> and IdP, I think an ePTID for a user to a particular SP has to be
> invariant, forever.
The relevant property is non-reassignment. Under various circumstances the
value may change, and of course it's useful to have mechanisms to inform the
SP of that, as SAML 2 does. But a given value is never recycled.
The requirements here from a software standpoint are the same as for SAML 2
persistent NameIDs. That's why we changed the syntax to match it.
The additional requirements that adds are SP affiliations and SP-attached
aliases for the value, which turns it from a triple (IdP, SP/Affiliation,
value) into a quadruple (IdP, SP/Affiliation, value, SP value).
-- Scott
- TargetedID Durability, Chad La Joie, 07/29/2005
- Re: TargetedID Durability, Jim Fox, 07/29/2005
- RE: TargetedID Durability, Paul B. Hill, 07/29/2005
- RE: TargetedID Durability, Scott Cantor, 07/29/2005
- Re: TargetedID Durability, Chad La Joie, 07/29/2005
- RE: TargetedID Durability, Scott Cantor, 07/29/2005
- RE: TargetedID Durability, Jim Fox, 07/29/2005
- RE: TargetedID Durability, Scott Cantor, 07/29/2005
- RE: TargetedID Durability, Jim Fox, 07/29/2005
- RE: TargetedID Durability, Scott Cantor, 07/29/2005
- RE: TargetedID Durability, David L. Wasley, 07/29/2005
- RE: TargetedID Durability, Scott Cantor, 07/29/2005
- RE: TargetedID Durability, Scott Cantor, 07/29/2005
- RE: TargetedID Durability, Alistair Young, 07/31/2005
- RE: TargetedID Durability, Scott Cantor, 07/29/2005
- RE: TargetedID Durability, Jim Fox, 07/29/2005
- RE: TargetedID Durability, Scott Cantor, 07/29/2005
- Re: TargetedID Durability, Chad La Joie, 07/29/2005
- Re: TargetedID Durability, Jim Fox, 07/29/2005
Archive powered by MHonArc 2.6.16.