Download - draft-ietf-sip-saml-00

Transcript
Page 1: draft-ietf-sip-saml-00

draft-ietf-sip-saml-00

New SIP-SAML I-D: draft-ietf-sip-saml-00.txt was: draft-tschofenig-sip-saml-05.txt

● addressed feedback on the list (thanks Vijay Gurbani) Enhanced the "Example SAML Assertions" section Added additional references Changed the order of the "Specification Scope" and

the "Introduction" section Moved Use-case Scenarios in Appendix

Page 2: draft-ietf-sip-saml-00

draft-ietf-sip-saml-00

What needs to be done with a future version:● normative considerations (as opposed to editorial)

is this spec a solution for meeting only the trait-based authz requirements?

● draft-ietf-sipping-trait-authz-02● If so, then the implications are:

draft-ietf-sip-saml-xx only needs to meet those stated requirements and compose simply with emergent SIP Identity RFC, and,

doesn't need to meet reqs of various SAML-based I-Ds eg sip-payment, SIP CPC, SPIT

● those various SAML-based I-Ds may need their own SAML profiles

Page 3: draft-ietf-sip-saml-00

draft-ietf-sip-saml-00

What needs to be done with a future version(cont'd):● Discussion about enabling SIP Proxies to add

SAML assertions to the SIP header by value● if SAML assertions can be conveyed by-value, then it

may be more straightforward to have a single "SIP SAML Profile" that addresses the multiple, somewhat intersecting, use cases in the other I-Ds (mentioned on prior slide)