For this X.509 proxy delegation profile, is the transport level security (TLS/SSL) assumed ?
If so, probably the message (SOAP) during the delegation can be looked to be confidential. And then the message level security (such as message signature) could not be necessary in this case.
Weizhong Qiang
NorduGrid
Dear all,
I just uploaded to gridforge:
http://forge.gridforum.org/sf/go/doc15549?nav=1
a very early draft for a proposal of a "PGI Transport Level Security
profile", which uses X509 proxy certificates + a delegation port-type
for authentication and credential delegation.
At the moment the document just states what has already be said during
the PGI teleconferences. I hope it will be useful for tomorrow
discussion at OGF, and eventually evolve in the near future into a full
specification (which at the moment is definitely not).
Moreno.
--
Moreno Marzolla
INFN Sezione di Padova, via Marzolo 8, 35131 PADOVA, Italy
EMail: moreno.marzolla@pd.infn.it Phone: +39 049 8277047
WWW : http://www.dsi.unive.it/~marzolla Fax : +39 049 8756233
_______________________________________________
Pgi-wg mailing list
Pgi-wg@ogf.org
http://www.ogf.org/mailman/listinfo/pgi-wg