SAML (so far) doesn't have a protocol for updating attributes, just
acquiring them (issue an attribute request, get an attribute assertion back).
You could devise a protocol where a requestor instead submitted an attribute
assertion (as a request to update/add an attribute), but there is no support
for that as a protocol in SAML: is the assertion an add or an update, what
should the response of the receiver be, etc.
Caveat: I haven't followed the SAML list much for the past couple
of months.
Rob
Gavenraj Sodhi wrote:
fyi...
-----Original Message-----
From: DeSouza, Edwin [mailto:]
Sent: Monday, July 29, 2002 6:25 PM
To: Gavenraj Sodhi;
Cc: ; ;
; ; ;
Subject: Base SPML on SAML rather than DSML?
Darran, Gavenraj,
I see a lot of discussion on using DSML as the basis for SPML.
http://lists.oasis-open.org/archives/provision/200207/maillist.html
DSML is one possible starting point (Directories keep User Profiles, etc
--AND-- DSML is supposed to make directories talk to each other).
On the other hand, SAML is supposed to be able to transport all kinds of
"interesting" user profile info among various
sites/companies/applications/etc. And, given that Project Liberty
is
using SAML, and maybe WS-Security will be friendly to SAML, then in all
likelihood SAML will have a much more widespead usage than DSML.
That being the case ... it would be interesting to think about using
SAML as the basis for SPML.
Maybe someone more technical/knowledgeable than me can start a
discussion on this at SPML.
bye,
Edwin.
----------------------------------------------------------------
To subscribe or unsubscribe from this elist use the subscription
manager: <http://lists.oasis-open.org/ob/adm.pl>