OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

security-services message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]


Subject: Authz Decision Response (multiple Actions requested, different decisions)


Title: Message
If a query is made for the following Actions:
 
Read
Write
Execute
 
And the result of authz is that the user is allowed to read, not allowed to write, and it's indeterminate in terms of execute.
 
What should the response be -- seems unspecified?
 
Is it sufficient to return:
 
An Assertion with a single AuthzDecisioinStatement with the single Action value of Read and Decision value of Permit.
 
Thanks, Tom.
 
 

Thomas Wisniewski
Software Architect
Phone: (201) 891-0524
Cell: (201) 248-3668
 
EntrustÒ
Securing Digital Identities
& Information

 


[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]