Metadata requireSignedMetadata=false Behavior

Cantor, Scott cantor.2 at osu.edu
Mon Jun 8 09:57:40 EDT 2015


On 6/8/15, 9:49 AM, "users on behalf of Nate Klingenstein" <users-bounces at shibboleth.net on behalf of ndk at internet2.edu> wrote:

>> An ID is a syntactic comment for logging. That's not a change.
>
>It is for those of us who need to write documentation that we would like to address both. :\

I don't understand why any documentation would care what the ID is, but if "both" means V2 and V3, we should yank any V2 documentation associated with testshib, I think.

>All we should really do is provide a copy/paste stanza now, I guess.

For testshib, certainly.

>I think there's a [legal] difference between republishing something under your signature and distributing something signed by someone else that is going to prove very important, even if you have a registering authority, so I think the single key thingy stands.

That isn't how it works, but if it did, you'd use a trust engine, not a single key.

-- Scott



More information about the users mailing list