OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

wsrp-wsia message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [Elist Home]


Subject: [wsrp-wsia] [change request] User identity (authenticated) forpersonalization


Document: WSRP Spec v0.9
Section: 6.10
Page/Line: 48/36-42
Requested by: Subbu Allamaraju
Old text:
Proposed text:
[addition] Sophisticated producers may completely ignore user categories 
and instead rely on authenticated user and/or consumer identity for 
personalization of behavior and/or markup.

Reasoning:

Sophisticated producer-consumer implementations may choose to propagate 
authenticated end user security context using some (unspecified) 
security mechanism. With such a security mechanism in place, a producer 
may choose to use the authenticated principal and roles for 
personalization in place of userContextID and userCategories.

I suggest that this section mention this possibility. This would also 
address sophisticated implementations that rely only on authenticated 
user identity and roles for personalization.



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [Elist Home]


Powered by eList eXpress LLC