[OGSA-AUTHZ] OGSA-Authz-WG draft meeting minutes: OGF Jan 29 session

Tom Scavo trscavo at gmail.com
Wed Jan 31 09:58:36 CST 2007


On 1/31/07, Valerio Venturi <valerio.venturi at cnaf.infn.it> wrote:
> On Wed, 2007-01-31 at 09:38 -0500, Tom Scavo wrote:
> > On 1/31/07, Valerio Venturi <valerio.venturi at cnaf.infn.it> wrote:
> > >
> > > Or are you talking about
> > > assertions travelling within X.509 proxies?
> >
> > Yes, the latter.  See the following wiki page for some crude thoughts
> > along these lines:
> >
> > https://spaces.internet2.edu/display/GS/X509BindingSAML
>
> Thanks, we'll have a look at it. However, in our plans, the natural
> format for attributes in X.509 proxies extensions will still be ACs so I
> don't know if it will be a needs for us.

Understood.

> > Valerio, would you mind providing
> > a pointer to the spec you're looking at?  There have been many
> > versions and I want to make sure you're looking at the right one.
> http://www.oasis-open.org/committees/document.php?document_id=20000&wg_abbrev=security

Ah, that's what I thought...you should work from this instead:

http://www.oasis-open.org/committees/download.php/21568/sstc-saml2-profiles-deploy-x509-draft-01.pdf

It's not significantly different than the previous one, but it is the
current version on the table.

Tom


More information about the ogsa-authz-wg mailing list