> At the August 10 conference call, I took an action to investigate
> materials describing MTI algorithms/use of keyinfo etc. for digital
> signature and encryption. The thinking was this was material might be
> readily accessible from existing ID-FF 1.2 or SAML 2.0 drafts.
The stuff I was referring to is at line 460 of the ID-FF 1.2 SCR:
"The following algorithms MUST be supported as indicated in [xmlenc-core],
sections 5.2.1 and 5.2.2: TRIPLE DES, AES-128, AES-256."
It doesn't include the MTI key wraps, but I think only one or two are MTI in
xmlenc.
I don't have any problem with waiting, but I don't think it's that big of a
deal unless somebody has a concern about something that's MTI in the sig/enc
specs.
KeyInfo is a different thing. I wasn't suggesting we mention it (although
I'd love to have more guidance on it myself).
-- Scott