OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

dss message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: RE: Question on Verifying result codes


A comment which I think has yet to be answered.

Stefan - can you please record in comments tracking.

Nick

> -----Original Message-----
> From: scabre@ac.upc.edu [mailto:scabre@ac.upc.edu]
> Sent: 16 June 2005 14:49
> To: dss-comment@lists.oasis-open.org; Andreas Kuehne; Edward Shallow;
> Konrad Lanz; Nick Pope; Tommy Lindberg
> Cc: cruellas@ac.upc.edu
> Subject: Question on Verifying result codes
> 
> 
> Hi,
> 
> Reading DSS Core draft we found a problem when describing result codes:
> 
> In section 4.4, the result code ValidSignature_NotAllDocuments is
> described as "The signature or timestamp is valid. However, the
> signature or timestampt does not cover all of the input documents that
> were passed in by the client". This means that this code should be
> returned if client sends, for instance, two input documents and the
> given signature only covers one of them.
> However, in section 4.3, while describing the process to verify XML
> signatures, the last paragraph of step 1 says that
> ValidSignature_NotAllDocuments should be returned if there is a
> ds:Reference using a full URI and the corresponding input document is
> not present.
> 
> I think that these are two diferent situations, so maybe should be
> noticed to the client using two diferent result codes.
> 
> Regards,
> 
> Juan Carlos and Sergi
> 
> 
> 



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]