OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

security-services message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: RE: [security-services] HTTP GET in Redirect Binding


> SAMLBindings lines 559-560 state: Messages are encoded for 
> use with this binding using a URL encoding technique, and 
> transmitted using the HTTP GET method. 
> 
> To what exchange does the "GET" method refer? 

Not sure what you mean. The HTTP Redirect binding is explicitly about
sending the SAML message in the query string. The message gets sent when you
pass it inside a redirect to the browser and then it sends it via GET
message to the peer site. Bogus in HTTP terms, since GETs are not supposed
to "do things", but that's web SSO...

-- Scott



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]