Re: GGF evidently needs stackable pseudo-mechs
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: GGF evidently needs stackable pseudo-mechs



Still not entirely sure what you're looking for.

We don't do any SAML-based authentication, we do PKI (with a GSS
interface) for authentication and use SAML assertions to convey
attributes or authorization assertions.

We use a hack of putting SAML assertions into X509 extensions as a
way to convey those assertions through TLS and other protocols and
then use GSS extensions described in the GGF document to pull those
assertions out.

Von


Nicolas Williams writes (11:25 July 21, 2005):
 > On Thu, Jul 21, 2005 at 10:10:49AM -0400, Jeffrey Altman wrote:
 > > I believe that Nico is interested in the binding between GSS
 > > authentication and SAML data.
 > 
 > Indeed.
 > 
 > Nico
 > -- 

_______________________________________________
Kitten mailing list
Kitten at lists.ietf.org
https://www1.ietf.org/mailman/listinfo/kitten




Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.