OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

soa-rm-ra message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Re: [soa-rm-ra] WS Trust


Title: Re: [soa-rm-ra] WS Trust
Ken:

It doesn’t relate to PDP’s and PEP’s directly.  It is a model for establishing a zone of trust for authentication.  Most PDP’s are based on authentication.  Authentication might not be possible locally on a specific machine and authentication has to be handed over somewhere else.  That places an emphasis on trusting that all aspects of the authentication can be trusted.  One breach (root access on an LDAP server), can break the whole system.   Whether or not to trust other zones is important for PEP’s. If trust cannot be established, I suspect consequences must happen.

D


On 12/8/06 11:06 AM, "Ken Laskey" <klaskey@mitre.org> wrote:

PDP and PEP ala XACML


--
**********************************************************
Sr. Technical Evangelist - Adobe Systems, Inc.           *
Chair - OASIS SOA Reference Model Technical Committee    *
Blog: http://technoracle.blogspot.com                    *
Music: http://www.mix2r.com/audio/by/artist/duane_nickull*
**********************************************************


[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]