security-services message
[Date Prev]
| [Thread Prev]
| [Thread Next]
| [Date Next]
--
[Date Index]
| [Thread Index]
| [List Home]
Subject: Authz Decision Response (multiple Actions requested, different decisions)
- From: Thomas Wisniewski <Thomas.Wisniewski@entrust.com>
- To: SAML <security-services@lists.oasis-open.org>
- Date: Fri, 17 Feb 2006 12:52:21 -0500
Title: Message
If a query is made
for the following Actions:
Read
Write
Execute
And the result of
authz is that the user is allowed to read, not allowed to write, and it's
indeterminate in terms of execute.
What should the
response be -- seems unspecified?
Is it sufficient to
return:
An Assertion with a
single AuthzDecisioinStatement with the single Action value of Read and Decision
value of Permit.
Thanks,
Tom.
Thomas Wisniewski
Software Architect
Phone: (201)
891-0524
Cell: (201) 248-3668
EntrustÒ
Securing Digital Identities
& Information
[Date Prev]
| [Thread Prev]
| [Thread Next]
| [Date Next]
--
[Date Index]
| [Thread Index]
| [List Home]