RE: [security-services] DDDS RFCs, Liberty and SAML Metadata exchange protocol

From
<>
Date
2003-09-17T18:44:07+00:00
ID
Thread
RE: [security-services] DDDS RFCs, Liberty and SAML Metadata exchange protocol
Jahan 

Is DNSSEC relevant to this work? 
Is there an issue with DNS security and site spoofing?
Does the DDDS/NAPTR material address such concerns?

I agree with Scott, I would certainly appreciate any summary of what you've learned.

regards, Frederick
 
Frederick Hirsch
Nokia Mobile Phones




> -----Original Message-----
> From: ext Jahan Moreh [mailto:]
> Sent: Tuesday, September 16, 2003 8:28 PM
> To: Scott Cantor; 
> Cc: 
> Subject: [security-services] DDDS RFCs, Liberty and SAML Metadata
> exchange protocol
> 
> 
> 
> Scott and Jeff -
> I took some time today to read the DDDS RFC set (3401-3405) 
> as well as NAPTR
> RFC (2915). I think I understand these sufficiently to follow 
> Liberty's
> Metadata discovery specifications. It is still useful (though 
> no longer
> critical) to have a conversation with Peter Davis to clear up 
> a few things.
> I am now very much leaning towards proposing that we use DDDS/DNS for
> publishing SAML metadata.
> 
> 
> Thanks for your guidance,
> Jahan
> 
> ----------------
> Jahan Moreh
> Chief Security Architect
> 310.286.3070
> 
> 
> 
> To unsubscribe from this mailing list (and be removed from 
> the roster of the OASIS TC), go to 
> http://www.oasis-open.org/apps/org/workgroup/security-services
/members/leave_workgroup.php.