Re: GGF evidently needs stackable pseudo-mechs
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: GGF evidently needs stackable pseudo-mechs
On Thu, Jul 21, 2005 at 12:47:58PM -0500, Von Welch wrote:
>
> Still not entirely sure what you're looking for.
>
> We don't do any SAML-based authentication, we do PKI (with a GSS
> interface) for authentication and use SAML assertions to convey
> attributes or authorization assertions.
Right, and that's what I'm interested in.
> We use a hack of putting SAML assertions into X509 extensions as a
> way to convey those assertions through TLS and other protocols and
> then use GSS extensions described in the GGF document to pull those
> assertions out.
Ah.
_______________________________________________
Kitten mailing list
Kitten at lists.ietf.org
https://www1.ietf.org/mailman/listinfo/kitten
Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.