Re: GGF evidently needs stackable pseudo-mechs
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: GGF evidently needs stackable pseudo-mechs



On Thu, Jul 21, 2005 at 12:47:58PM -0500, Von Welch wrote:
> 
> Still not entirely sure what you're looking for.
> 
> We don't do any SAML-based authentication, we do PKI (with a GSS
> interface) for authentication and use SAML assertions to convey
> attributes or authorization assertions.

Right, and that's what I'm interested in.

> We use a hack of putting SAML assertions into X509 extensions as a
> way to convey those assertions through TLS and other protocols and
> then use GSS extensions described in the GGF document to pull those
> assertions out.

Ah.

_______________________________________________
Kitten mailing list
Kitten at lists.ietf.org
https://www1.ietf.org/mailman/listinfo/kitten




Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.