OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

imi message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Re: [imi] Question regarding encryption


Scott Cantor schrieb:
> Mario Ivkovic wrote on 2009-12-07:
>> In my envisaged scenario the user would sign an RP defined message, add
>> it as an additional claim and transmit it to the IdP. The IdP adds the
>> users public key to the token and signs it. This can be seen as a HoK
> proof.
> 
> Or...just do HoK as it's already defined.

Yes, but we need this signed message anyway to prove the user's consent
(the affirmative statement story).

Btw. which selectors currently support HoK?

kind regards,

Mario




-- 

Mario Ivkovic
A-SIT, Secure Information Technology Center - Austria
Inffeldgasse 16a, A-8010 Graz, Austria
Tel.: +43 (316) 873-5528  Fax.: +43 (316) 873-105521
Mario.Ivkovic@a-sit.at


[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]