[15085] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: Ousourced Trust (was Re: Difference between TCPA-Hardware and

daemon@ATHENA.MIT.EDU (Rich Salz)
Mon Dec 29 14:22:31 2003

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Mon, 29 Dec 2003 12:16:00 -0500
From: Rich Salz <rsalz@datapower.com>
To: Anne & Lynn Wheeler <lynn@garlic.com>
Cc: cryptography@metzdowd.com
In-Reply-To: <4.2.2.20031223144514.00bee760@mail.earthlink.net>

> I asked the guy making the presentation about the similarity to Kerberos 
> message flows and he said something to the effect of ah yes, kerberos.

Not sure what the guy meant by that.  But yes, SAML flows are "just 
like" Kerberos flows.  And Liberty and WS-Federation look a lot like DCE 
cross-cell (er, Kerberos inter-realm) flows. After all, there's only not 
many ways to do secure online trusted third-party authentication.
	/r$
-- 
Rich Salz, Chief Security Architect
DataPower Technology                           http://www.datapower.com
XS40 XML Security Gateway   http://www.datapower.com/products/xs40.html
XML Security Overview  http://www.datapower.com/xmldev/xmlsecurity.html

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post