[mdx] on splitting the spec

Leif Johansson leifj at sunet.se
Thu Oct 3 12:59:42 PDT 2013


On 10/01/2013 12:25 PM, Ian Young wrote:
>
> * The security considerations for SAML (which allows for XML DSIG-signed responses) are going to be different than for a metadata type which does not allow for signature but relies instead on TLS integrity guarantees.

I actually don't think this is true. There is already talk about using
signed openidc metadata for certain use-cases.

They will see the LIGHT!




More information about the mdx mailing list