[mdx] syntax for entity-attributes

Tom Scavo trscavo at gmail.com
Mon Sep 5 11:08:39 PDT 2011


On Mon, Sep 5, 2011 at 1:39 PM, Leif Johansson <leifj at sunet.se> wrote:
>
> On 09/05/2011 06:37 PM, Tom Scavo wrote:
>>
>> http://names.incommon.org/attribute/entity/entity-role=sp
>> http://names.incommon.org/attribute/entity/entity-role=idp
>>
>> I guess any "social tag" could be represented in this way.
>
> Actually that is not what I had in mind. By 'social tag' I meant to
> express a semantic-free "label" that contains folksonomy-driven
> information about the entity. For instance some group of people might
> assign the label 'archeology' to entities relevant to that community.

Ah, so something like

http://names.incommon.org/attribute/entity/user-defined=archeology

but attribute values should be expressed as URIs so as not to clash
with each other:

http://names.incommon.org/attribute/entity/user-defined=http://vo.example.org/group/archeology

In fact, the previous entity-role *name* could be recast as an
entity-role *value* by leveraging the user-defined name:

http://names.incommon.org/attribute/entity/user-defined=http://names.incommon.org/attribute/entity/entity-role/sp
http://names.incommon.org/attribute/entity/user-defined=http://names.incommon.org/attribute/entity/entity-role/idp

So all we need is a "standard" name that could be used across the
board. I suspect this is what you were groping for earlier.

> I suspect the most important usecase might be for
> resolving entities by accreditation (i.e all OIX LoA1 IdPs).

We already have a "standard" name in that case:

urn:oasis:names:tc:SAML:attribute:assurance-certification=http://names.incommon.org/attribute/entity/assurance/bronze
urn:oasis:names:tc:SAML:attribute:assurance-certification=http://names.incommon.org/attribute/entity/assurance/silver

Right?

Tom



More information about the mdx mailing list