Skip to Content.
Sympa Menu

shibboleth-dev - Re: Draft Holder-of-Key Web SSO Profile

Subject: Shibboleth Developers

List archive

Re: Draft Holder-of-Key Web SSO Profile


Chronological Thread 
  • From: "Diego R. Lopez" <>
  • To:
  • Subject: Re: Draft Holder-of-Key Web SSO Profile
  • Date: Sat, 16 Feb 2008 18:53:59 +0100


On 15 Feb 2008, at 21:25, Scott Cantor wrote:

+ I have not seen in the profile a specific request for the user to
employ the same certificate when identifying to the IdP and when
connecting to
the SP.

You shouldn't have to. Only the key matters.


I know. When I was talking abut a "certificate" I should have been more
explicit and use the term "keypair". I have four different keypairs (along
with their corresponding certificates) stored by my browser, and sometime the
broser asks for which key to use for a certain connection, sometimes it doesn't
and proposes one automatically (I guess I could configure the browser to take the
decision on its own). This is the kind of situation I think should be addressed.

Be goode,


--
"Esta vez no fallaremos, Doctor Infierno"

Dr Diego R. Lopez

Red.es - RedIRIS
The Spanish NREN

e-mail:

jid:

Tel: +34 955 056 621
Mobile: +34 669 898 094
-----------------------------------------





Archive powered by MHonArc 2.6.16.

Top of Page