Document:
sstc-saml-holder-of-key-browser-sso.xsd

Draft (A preliminary unapproved sketch, outline, or version.)

Details

Submitted By Mr. Nathan Klingenstein on 2008-08-04 7:43 am UTC

Publication Type

None at this time.

Group / Folder

OASIS Security Services (SAML) TC / A.5: Post-V2.0 Working Documents

Modified by

Not modified.

Copy

This document is not a copy.

Technical Contact

None at this time.

Download Count

749

Download Agreement

None at this time.

Description

The metadata specification offers no way to distinguish the profile used by an endpoint. A boolean flag extension is not sufficient to signal use of this profile: because SAML implementations that don't implement this profile would ignore this optional attribute, they could send users to an inappropriate endpoint, potentially impacting interoperability and user experience. Rather than define new endpoint elements, this schema uses the Binding attribute for disambiguation. If an endpoint has the binding attribute urn:oasis:names:tc:SAML:2.0:profiles:SSO:browser:holder-of-key, it MUST also include a separate extension hok:Protocol attribute as defined in this schema fragment.