OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

security-services message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: RE: [security-services] Formalize meaning of multi-statement vs. multi-assertion


> Assuming that the subject in each assertion is the same, right? Two 
> statements in the same assertion can /only/ be about the named subject 
> at the assertion level these days, which is different than previous 
> versions of SAML.

Right.

> Why provide two equivalent mechanisms? What does equivalence mean in 
> this case? Perhaps the answers to these questions are what we 
> ought to document...

Well, the text I'm looking at is section 5.4.6:

"Binding Between Statements in a Multi-Statement Assertion

Use of signing does not affect the semantics of statements within assertions
in any way, as stated in Section 2."

So we say it doesn't affect the semantics, but we never define any
semantics. So we should clean this up somewhere.

-- Scott



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]