Re: [KAML] latest status

"Scott Cantor" <cantor.2@osu.edu> Wed, 28 October 2009 00:39 UTC

Return-Path: <cantor.2@osu.edu>
X-Original-To: kaml@core3.amsl.com
Delivered-To: kaml@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 1DA6B28C119 for <kaml@core3.amsl.com>; Tue, 27 Oct 2009 17:39:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.55
X-Spam-Level:
X-Spam-Status: No, score=-1.55 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, J_CHICKENPOX_27=0.6, MSGID_MULTIPLE_AT=1.449, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pLBkuYZHo0Yl for <kaml@core3.amsl.com>; Tue, 27 Oct 2009 17:39:24 -0700 (PDT)
Received: from defang20.it.ohio-state.edu (defang20.it.ohio-state.edu [128.146.216.134]) by core3.amsl.com (Postfix) with ESMTP id 2AB0628C115 for <kaml@ietf.org>; Tue, 27 Oct 2009 17:39:24 -0700 (PDT)
Received: from defang10.it.ohio-state.edu (defang10.it.ohio-state.edu [128.146.216.79]) by defang20.it.ohio-state.edu (8.13.7/8.13.1) with ESMTP id n9S0dcwC000915; Tue, 27 Oct 2009 20:39:38 -0400
Received: from SNOWDOG ([128.146.178.27]) by defang10.it.ohio-state.edu (8.13.7/8.13.1) with ESMTP id n9S0dbuI027452; Tue, 27 Oct 2009 20:39:37 -0400
From: Scott Cantor <cantor.2@osu.edu>
To: "'Henry B. Hotz'" <hotz@jpl.nasa.gov>, 'Luke Howard' <lukeh@PADL.COM>
References: <46fc8a10909180713x3116deb5l2cfade36f6b85a2e@mail.gmail.com> <0AC447C8-C281-4432-BC43-93FD295B8FDC@jpl.nasa.gov> <B4275EF3-278C-4CB0-875D-E284BCCF8C9D@padl.com> <9E4C1310-430D-44A4-B10F-38F47B5C9E4F@jpl.nasa.gov>
In-Reply-To: <9E4C1310-430D-44A4-B10F-38F47B5C9E4F@jpl.nasa.gov>
Date: Tue, 27 Oct 2009 20:39:37 -0400
Organization: The Ohio State University
Message-ID: <009701ca5767$20f22ab0$62d68010$@2>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Office Outlook 12.0
Thread-index: AcpXZpToYHFh0KDxSeKBgS0S35VeigAAE9+g
Content-language: en-us
X-CanIt-Geo: ip=128.146.216.79; country=US; region=OH; city=Columbus; latitude=39.9968; longitude=-82.9882; metrocode=535; areacode=614; http://maps.google.com/maps?q=39.9968,-82.9882&z=6
X-CanItPRO-Stream: outbound
X-Scanned-By: CanIt (www . roaringpenguin . com) on 128.146.216.134
Cc: 'Stephen C Buckley' <sbuckley@MIT.EDU>, kaml@ietf.org
Subject: Re: [KAML] latest status
X-BeenThere: kaml@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Discussions about SAML and Kerberos intersections <kaml.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/kaml>, <mailto:kaml-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/kaml>
List-Post: <mailto:kaml@ietf.org>
List-Help: <mailto:kaml-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/kaml>, <mailto:kaml-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 28 Oct 2009 00:39:25 -0000

Henry B. Hotz wrote on 2009-10-27:
> Just looked at this.  Added a minor comment, which I think is implied
> by what I've already said on this list.
> 
>> 	http://k5wiki.kerberos.org/wiki/Projects/KerberosInSAML
> 
> This one's still empty.  I assume the issue is how to relate principal
> names to SAML subject names?

There's already a format in SAML for that, but there are other missing
pieces, some of which Josh Howlett and Thomas Hardjono have been proposing
to the OASIS TC, such as representing tickets as a new subject confirmation
method and expressing principal and service names within ds:KeyInfo.

-- Scott