MDQ

Cantor, Scott cantor.2 at osu.edu
Wed Feb 3 20:23:05 UTC 2021


On 2/3/21, 3:16 PM, "users on behalf of Christopher Bongaarts via users" <users-bounces at shibboleth.net on behalf of users at shibboleth.net> wrote:

>    I think this may reflect some terminological confusion of what "MDQ service" means.

It's more fuzzy than that, MDQ as a spec does explicitly require (I think) exposing the /entities path.

>    My interpretation is that the "MDQ Service" refers specifically and exclusively to the per-entity Metadata Query Service
> that is consumed in Shib by the DynamicHTTPMetadataProvider.  This would also include the use of caching metadata for
> specific entities by using FileBackedHTTPMetadataProvider.

The Dynamic provider does lots of caching too and addresses pretty much all of the possible worries people have about it.

The purpose of the /entities path was more in the vein of zone transfers in DNS, not something endpoints were meant to use.

-- Scott




More information about the users mailing list