Skip to Content.
Sympa Menu

shibboleth-dev - RE: [Shib-Dev] seeking feedback on Shibboleth 2.2 Roadmap

Subject: Shibboleth Developers

List archive

RE: [Shib-Dev] seeking feedback on Shibboleth 2.2 Roadmap


Chronological Thread 
  • From: Peter Williams <>
  • To: "" <>
  • Subject: RE: [Shib-Dev] seeking feedback on Shibboleth 2.2 Roadmap
  • Date: Wed, 24 Sep 2008 12:38:18 -0700
  • Accept-language: en-US
  • Acceptlanguage: en-US

any chance this could align with the dynamic metadata notions that Ping
Federate SAML2 server actually supports? ...from an user's email id entered
at an RP site, the RP can resolve (openid-style) to a URL at which endpoint
the entity's (institutional) metadata can be located...and dynamically
imported.

In their concept, trust during that process is managed by SSL/PKI, to
authorize such auto-import, tho, note. This may not fit well, here. Also,
would assume the metadata signing tool is complete, and tuned up to easily
sign a single entities metadata (vs a collection of entity metadata, per
incommon notions)

________________________________________
From: Scott Cantor
[]
Sent: Wednesday, September 24, 2008 11:26 AM
To:

Subject: RE: [Shib-Dev] seeking feedback on Shibboleth 2.2 Roadmap

> 1.1.2.1 Dynamic metadata generation? Buzz, buzz, buzz ...
>
> Sorta makes the concept of metadata meaningless, ne-c'est pas?

Depends on what it's used for.

> How about this structure for data?
>
> Data necessary during a transaction.
>
> Data necessary pre-transaction.
>
> Data necessary post-transaction.

Metadata includes all three.

-- Scott



Archive powered by MHonArc 2.6.16.

Top of Page