Multiple entity-category attributes or multivalued

Tom Scavo trscavo at gmail.com
Wed Aug 5 08:56:06 EDT 2015


On Wed, Aug 5, 2015 at 8:50 AM, Leif Johansson <leifj at sunet.se> wrote:
> On 2015-08-05 13:48, Tom Scavo wrote:
>> On Wed, Aug 5, 2015 at 7:28 AM, Leif Johansson <leifj at sunet.se> wrote:
>>>
>>>> Does Shib 3 IdP require all entity-category attribute values to be placed
>>>> in the same attribute?
>>>
>>> that is a consequence of the entity-attributes specification
>>
>> Can you please cite a reference? (I think I know what spec you're
>> talking about but I don't believe it stipulates such a syntax.)
>
> http://docs.oasis-open.org/security/saml/Post2.0/sstc-metadata-attr-cs-01.html
>
> Section 2.3: "Finally, this element MUST NOT appear more than once
> within a given <md:Extensions> element."

That refers to the <mdattr:EntityAttributes> container element. I
believe Stefan is referring to multiple <saml:Attribute> elements with
the same name.

Tom


More information about the users mailing list