[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]
Subject: RE: [security-services] Formalize meaning of multi-statement vs. multi-assertion
> Assuming that the subject in each assertion is the same, right? Two > statements in the same assertion can /only/ be about the named subject > at the assertion level these days, which is different than previous > versions of SAML. Right. > Why provide two equivalent mechanisms? What does equivalence mean in > this case? Perhaps the answers to these questions are what we > ought to document... Well, the text I'm looking at is section 5.4.6: "Binding Between Statements in a Multi-Statement Assertion Use of signing does not affect the semantics of statements within assertions in any way, as stated in Section 2." So we say it doesn't affect the semantics, but we never define any semantics. So we should clean this up somewhere. -- Scott
[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]