[JIRA] Updated: (OSJ-3) Binding/profile-specific inputs to security policy rules

Scott Cantor (JIRA) noreply at shibboleth.net
Thu Oct 18 00:27:22 EDT 2012


     [ https://issues.shibboleth.net/jira/browse/OSJ-3?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Scott Cantor updated OSJ-3:
---------------------------

    Component/s: Security

> Binding/profile-specific inputs to security policy rules
> --------------------------------------------------------
>
>                 Key: OSJ-3
>                 URL: https://issues.shibboleth.net/jira/browse/OSJ-3
>             Project: OpenSAML - Java
>          Issue Type: Improvement
>          Components: Security
>            Reporter: Brent Putman
>            Assignee: Brent Putman
>            Priority: Minor
>             Fix For: 3.0.0
>
>
> Provide mechanism for supplying binding (decoder) and/or profile-specific inputs to security policy rules.
> This will likely entail augmenting MessageContext with some sort of extensible properties set.
> Extant motivating use cases are:
> - binding-specific requirements for checked intended vs. actual recipient endpoint
> - client cert auth is applicable for some bindings, not others, doesn't really align with notion of profiles 

--
This message is automatically generated by JIRA.
For more information on JIRA, see: http://www.atlassian.com/software/jira


More information about the commits mailing list