OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

saml-dev message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: RE: [saml-dev] SAML 2.0 SPProvidedID


> Is the SPProvidedID Attribute usable as a kind of foreign key 
> at the IdP? I thought about the following:

It's a secondary key at the SP.

> 3.	in all following requests to the IdP, the SP uses the 
> SPProvidedID (provided as NameID attribute; omitting the 
> IdP's NameID String) when referring to the Subject and thus 
> needn't hold the Subject's NameID provided by the IdP
> 
> Is this possible or does the IdP need the NameID to idenitify 
> the subject?

That is not legal. The SPProvidedID is attached to the entire NameID
structure. The SP is the one consuming it (when the IdP sends it on later
messages), not the IdP.

-- Scott



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]