OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

wsfed message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: New Issue: Functionally equivalent signing keys


Title: Functionally equivalent signing keys

 

Description:

There are cases when it may be needed to specify functionally equivalent signing keys, for example to mitigate certificate rollover problems. This can be handled by simply allowing multiple TokenSigningKeyInfo elements to appear in the Fed metadata.

 

Proposal:

Add the following text after the exemplar in section 3.1.2.

 

“It should be noted that this element MAY occur multiple times indicating multiple functionally equivalent keys. “

 



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]