Skip to Content.
Sympa Menu

streamlining-sp - Re: Streamlining SP Working Grouper - meeting reminder

Subject: Streamlining SP Onboarding WG

List archive

Re: Streamlining SP Working Grouper - meeting reminder


Chronological Thread 
  • From: Garrett King <>
  • To: "" <>
  • Subject: Re: Streamlining SP Working Grouper - meeting reminder
  • Date: Fri, 19 Jan 2018 16:29:04 +0000
  • Accept-language: en-US
  • Ironport-phdr: 9a23:jgvURRFzhXlZs96+G09xMZ1GYnF86YWxBRYc798ds5kLTJ7zpMmwAkXT6L1XgUPTWs2DsrQY07OQ6/iocFdDyK7JiGoFfp1IWk1NouQttCtkPvS4D1bmJuXhdS0wEZcKflZk+3amLRodQ56mNBXdrXKo8DEdBAj0OxZrKeTpAI7SiNm82/yv95HJbAhEmCexbaluIBmqsA7cqtQYjYx+J6gr1xDHuGFIe+NYxWNpIVKcgRPx7dqu8ZBg7ipdpesv+9ZPXqvmcas4S6dYDCk9PGAu+MLrrxjDQhCR6XYaT24bjwBHAwnB7BH9Q5fxri73vfdz1SWGIcH7S60/VDK/5KlpVRDokj8KOT4n/m/Klsx+gqFVoByjqBx+34Hbb5qYO+Bicq7HZ94WWXZNU8RXWidcAo28dYwPD+8ZMOhZtYb9vUEOogWiBQmwGejhzz5Ihnn53aYn1OkhHhvJ3BY6H90QrHTUsNb1ObwOXuCw0anE1yvMYO5L2Trk7oXDbxMvoemUUL5tb8bcylMjGx3fglmNqYHoPSmZ2voDvmSD8uZsS+Gih3Q5pw1rvzSj2MkhhpPUio8b11zI7Th1zJg2KNGiVkJ3e8OoHIdQui2AKod7QsUvSHxytikg0L0Jo5u7cTAKyJs5wx7fbOSKc5KW7RLnTumQIS50i2xqeb2jhxa9606gyuLiWcWuyllKqDdKksPSuXEDzRDc9s2HSuZn8ki/xDmPyhjf6uBCIU8qiarWM4MtzqAzm5YJr0jPBDL6lUX0gaOMaEkp9PCk6+H9bbXnop+cOZV0igb7Mqk2lcywG/44MhIQUGiH5eS816bu8lH8QLVXlPE5jLTWsI3CKcQBuqG5GxNV0pok6xunDjem1sgXnX4CLFJAfxKHiZLlO1bUIPD3FPu/mEiskC11yP/cO73hBpTNLn7CkLfncrZx8lVcyBIowNBb5pJUEa0BIOntVkPrtdzYCAM5PBKuw+bhFtp9yp0SVXiRDaCELaOB+WOPs6g0P/OBbYoRuTD8Lfdg/ObGjHkynloYeq/v2oEYIjjsBeh8LkycZXvqg9EOVHwSlgs4R+vvjVqEFzlJaCDhcbg742QUAZi8AJvfDqOshrPJiCiyBIdbenxFIluJDDHle5jSCKREUz6bPsI0ym9MbrOmUYJ0jRw=

Hi Nick,

I agree.  I’ll add this to the next WG agenda to make sure we’re accounting for this in the criteria document and calling it appropriately (per your example) in the questionnaire.

Thanks for the feedback,
Garrett

On Jan 18, 2018, 1:23 PM -0500, Nick Roy <>, wrote:
I should note that sites that refresh metadata but do not verify the
signature are putting themselves and all of their federation partners at
great risk. This is fundamental to our security model. Please let me
know if you have any questions or would like me to elaborate.

Best,

Nick

On 1/17/18 2:57 PM, Nick Roy wrote:
Hi all,

I have one piece of feedback on the questionnaire: could you please
include a question about metadata signature verification in the "Trust"
section?

Something along the lines of:

"Does your site verify the XML digital signature on the root element of
the downloaded InCommon metadata each time you refresh metadata, to
ensure that the signature is valid, and was signed by the private key
that corresponds to the public key published by InCommon operations, and
reject any metadata found to not be validly signed?"

Thank you,

Nick Roy on behalf of InCommon Operations


On 1/17/18 2:39 PM, Garrett King wrote:
Thanks Alan, and agreed with your comments.  I’ll get some of this
feedback incorporated between this week and the next WG meeting.

Garrett

On Jan 17, 2018, 5:16 AM -0500, Alan Buxey <>,
wrote:
hi, apologies in advance, I won't be able to make todays meeting -
kids things to deal with (nothing serious/worrying etc - just mundane
things)

however, to further the questionnaire discussion and provide feedback
- having gone through the form a couple of times, I would say that
some of the stuff that appears on the no/don't know page should be
moved to the previous page - so that there's some info or 'more info'
link
on the actual question page - allowing the user to understand or check
before they choose an option. eg link to InCommon certificate
requirements

alan




Archive powered by MHonArc 2.6.19.

Top of Page