shibboleth-dev - RE: SAML name identifiers
Subject: Shibboleth Developers
List archive
- From: "Scott Cantor" <>
- To: <>
- Subject: RE: SAML name identifiers
- Date: Sun, 5 Mar 2006 14:22:59 -0500
- Organization: The Ohio State University
> So let me see if I understand what you're saying. You want to extend
> BaseNameIdentifierMapping with an abstract class that consolidates
> PrincipalNameIdentifier, X509SubjectNameNameIdentifierMapping,
> EmailAddressNameIdentifierMapping. This abstract class would support
> a generalized template/pattern mechanism similar to what
> X509SubjectNameNameIdentifierMapping does now. Then any
> implementation of a SAML name identifier (except perhaps transient and
> persistent) would be a simple extension of this abstract class.
>
> Is this what you're suggesting?
I think so, yes. The specific Format on the wire was something to be imposed
on top of the NameIdentifierMapping plugin itself. A more exotic version
could even apply a different pattern to different Formats and then support
multiple Formats at once.
In much the same way, the attribute plugins today are structural. They don't
know *what* attribute you're trying to build, they just apply a set of rules
to build it. I think the NameID plugins should be similar.
Persistent and transient have actual semantics and mostly *lack* structure,
so in that sense they're different. Just like we have a custom plugin for
eduPersonTargetedID, and not just because of the XML syntax.
-- Scott
<<attachment: winmail.dat>>
- Re: SAML name identifiers, (continued)
- Re: SAML name identifiers, Ian Young, 03/03/2006
- RE: SAML name identifiers, Scott Cantor, 03/03/2006
- RE: SAML name identifiers, Scott Cantor, 03/03/2006
- Re: SAML name identifiers, Nate Klingenstein, 03/03/2006
- RE: SAML name identifiers, Scott Cantor, 03/03/2006
- Re: SAML name identifiers, Ian Young, 03/03/2006
- RE: SAML name identifiers, Scott Cantor, 03/03/2006
- Re: SAML name identifiers, Ian Young, 03/07/2006
- RE: SAML name identifiers, Scott Cantor, 03/07/2006
- Re: SAML name identifiers, Ian Young, 03/07/2006
- RE: SAML name identifiers, Scott Cantor, 03/03/2006
- Re: SAML name identifiers, Ian Young, 03/03/2006
- Re: SAML name identifiers, Tom Scavo, 03/05/2006
- RE: SAML name identifiers, Scott Cantor, 03/05/2006
- Re: SAML name identifiers, Tom Scavo, 03/05/2006
- RE: SAML name identifiers, Scott Cantor, 03/05/2006
- Re: SAML name identifiers, Tom Scavo, 03/05/2006
- Re: SAML name identifiers, Tom Scavo, 03/06/2006
- RE: SAML name identifiers, Scott Cantor, 03/06/2006
- Re: SAML name identifiers, Tom Scavo, 03/06/2006
- Re: SAML name identifiers, Tom Scavo, 03/05/2006
- RE: SAML name identifiers, Scott Cantor, 03/05/2006
- Re: SAML name identifiers, Tom Scavo, 03/05/2006
- Re: SAML name identifiers, Tom Scavo, 03/06/2006
- RE: SAML name identifiers, Scott Cantor, 03/06/2006
- Re: SAML name identifiers, Tom Scavo, 03/06/2006
- RE: SAML name identifiers, Scott Cantor, 03/06/2006
- RE: SAML name identifiers, Scott Cantor, 03/05/2006
Archive powered by MHonArc 2.6.16.