← Prev in month ← Prev in thread
Next in thread → Next in month →

RE: [ebxml-msg] A question about authorisation

From
Pim van der Eijk <>
Date
2013-06-27T08:09:40+00:00
ID
8CB4DB4B0E104C02BFAF5A921E6C0055@Roussanne
Thread
RE: [ebxml-msg] A question about authorisation
Hello Ian,

With a pull request there can be two separate WS-Security
headers,  one a regular one which can be X.509 based and a
separate one for authorization target to an "ebms"
actor/role (see section 7.10 in v3.0 Core).    So when you
propose a SAML token profile,  the question is if it is used
as an alternative for the regular WS-Security header and/or
this separate authorization header.

Pim

-----Original Message-----
From: 
[mailto:] On Behalf Of Mr. Ian
Otto
Sent: 27 June 2013 09:19
To: 
Subject: [ebxml-msg] A question about authorisation

At yesterday's TC meeting, I received the impression that
X.509 Certificates could not be used for Pull authorisation.
Is that correct?

Do you need a username/password for Pull authorisation?
← Prev in month ← Prev in thread
Next in thread → Next in month →