[mdx] on splitting the spec

Cantor, Scott cantor.2 at osu.edu
Tue Oct 1 07:59:58 PDT 2013


On 10/1/13 7:44 AM, "Rainer Hoerbe" <rainer at hoerbe.at> wrote:

>Signatures allow more flexible and secure processing chains than the TLS
>point-to-point model. On the other hand, all the power of XML-DSig seems
>to be overly expensive if one just needs to sign a blob. Wouldn't it make
>sense to introduce some kind of CMS-signature, similar to SAML
>POST-SimpleSign Binding?

I'm not in favor. I think that use case should eventually be addressed by
JWS, unless that spec fails to achieve meaningful adoption.

-- Scott





More information about the mdx mailing list