Re: [dix] Re: [Ietf-http-auth] BOF Request: WARP - Web Authentication Resistant to Phishing
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [dix] Re: [Ietf-http-auth] BOF Request: WARP - Web Authentication Resistant to Phishing



Sam Hartman wrote:
"John" == John Merrells <merrells at sxip.com> writes:

John> I'm not sure if you're saying this but... DIX does not John> impose any specific number of identifiers on a user. They John> can have as many as they choose to have, from 0 to infinity.

No, but dix does support transporting more than one claim and does
support claims that are not identifiers.

I don't view doing so as a requirement.
It is a requirement if you require to support more than authN. Access to a site might require an "I am over 21" token, authZ without direct authN - DIX supports that, and I believe it is important to do so.


-- Pete

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

_______________________________________________
dix mailing list
dix at ietf.org
https://www1.ietf.org/mailman/listinfo/dix

Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.