[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [ggf-ogsa-sec-wg] New specs released: WS-SecurityPolicy, WS-Trust, WS-SecureConversation, WS-Policy, WS-PolicyAttachments, WS-PolicyAssertions
>>>>> " " == Marty Humphrey <humphrey@cs.virginia.edu> writes:
I totally agree with Marty that these specifications need a thorough
assessment as to whether they fill OGSA requirements. From a cursory
pass it appears the specs are well thought out and address many of the
security infrastructure issues that the authors set out to resolve in
the WS Security Roadmap. However, they are nascent and I expect to see
revisions forthcoming to iron out ambuguities and solidify the
semantics and processing rules such that interoperability can be
achieved.
Additionally it is necessary to determine whether the OGSA security
roadmap aligns with the content of these specs. I raise this point
specifically since I detect some, perhaps not significant, deviation
from the WS-Trust specification and the original WS-Security-Roadmap
description.
Finally we need to have a clear understanding of the statement of IPR.
> Folks,
> Six new specs have been released (today, I believe) that are related to
> our OGSA SEC efforts. These are:
> [1] WS-SecurityPolicy
> [2] WS-Trust
> [3] WS-SecureConversation
> [4] WS-Policy
> [5] WS-PolicyAttachments
> [6] WS-PolicyAssertions.
> The key, of course, is how we see these fitting into our efforts.
> Many of these documents are co-authored by multiple organizations (e.g.,
> Microsoft, Verisign, IBM, RSA, etc.) See
> http://msdn.microsoft.com/webservices/understanding/gxa/default.aspx for
> the Microsoft links to these documents.
> We need to carefully read these (as a community) and evaluate them.
> Something to do over the Holidays! :^)
> -- Marty
> Marty Humphrey
> Assistant Professor
> Computer Science Department
> University of Virginia
> <html>
> <head>
> <META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=us-ascii">
> <meta name=Generator content="Microsoft Word 10 (filtered)">
> <style>
> <!--
> /* Font Definitions */
> @font-face
> {font-family:"MS Mincho";
> panose-1:2 2 6 9 4 2 5 8 3 4;}
> @font-face
> {font-family:"\@MS Mincho";
> panose-1:2 2 6 9 4 2 5 8 3 4;}
> /* Style Definitions */
> p.MsoNormal, li.MsoNormal, div.MsoNormal
> {margin:0in;
> margin-bottom:.0001pt;
> font-size:12.0pt;
> font-family:Arial;}
> a:link, span.MsoHyperlink
> {color:blue;
> text-decoration:underline;}
> a:visited, span.MsoHyperlinkFollowed
> {color:purple;
> text-decoration:underline;}
> p.MsoAutoSig, li.MsoAutoSig, div.MsoAutoSig
> {margin:0in;
> margin-bottom:.0001pt;
> font-size:12.0pt;
> font-family:"Times New Roman";}
> span.EmailStyle17
> {font-family:Arial;
> color:windowtext;}
> @page Section1
> {size:8.5in 11.0in;
> margin:1.0in 1.25in 1.0in 1.25in;}
> div.Section1
> {page:Section1;}
-->
> </style>
> </head>
> <body lang=EN-US link=blue vlink=purple>
> <div class=Section1>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>Folks,</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'> </span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>Six
> new specs have been released (today, I believe) that are related to our OGSA
> SEC efforts. These are:</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'> </span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>[1] WS-SecurityPolicy</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>[2] WS-Trust</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>[3]
> WS-SecureConversation</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>[4] WS-Policy</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>[5] WS-PolicyAttachments</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>[6] WS-PolicyAssertions.</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'> </span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>The
> key, of course, is how we see these fitting into our efforts. </span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'> </span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>Many
> of these documents are co-authored by multiple organizations (e.g., Microsoft, Verisign,
> IBM, RSA, etc.) See <a
> href="http://msdn.microsoft.com/webservices/understanding/gxa/default.aspx">http://msdn.microsoft.com/webservices/understanding/gxa/default.aspx</a>
> for the Microsoft links to these documents. </span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'> </span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>We
> need to carefully read these (as a community) and evaluate them. Something to
> do over the Holidays! :^)</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'> </span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'>--
> Marty</span></font></p>
> <p class=MsoNormal><font size=2 face=Arial><span style='font-size:10.0pt'> </span></font></p>
> <p class=MsoAutoSig><font size=3 face="Times New Roman"><span style='font-size:
> 12.0pt'>Marty Humphrey</span></font></p>
> <p class=MsoAutoSig><font size=3 face="Times New Roman"><span style='font-size:
> 12.0pt'>Assistant Professor</span></font></p>
> <p class=MsoAutoSig><font size=3 face="Times New Roman"><span style='font-size:
> 12.0pt'>Computer Science Department</span></font></p>
> <p class=MsoAutoSig><font size=3 face="Times New Roman"><span style='font-size:
> 12.0pt'>University</span></font> of Virginia</p>
> <p class=MsoNormal><font size=3 face=Arial><span style='font-size:12.0pt'> </span></font></p>
> </div>
> </body>
> </html>
--
mailto:gary.ellison@sun.com
"Some people with no brain do a awful lot of talking,
don't they" -- Scarecrow
- Prev by Date:
RE: [ggf-ogsa-sec-wg] New specs released: WS-SecurityPolicy, WS-Trust, WS-SecureConversation, WS-Policy, WS-PolicyAttachments, WS-PolicyAssertions
- Next by Date:
RE: [ggf-ogsa-sec-wg] New specs released: WS-SecurityPolicy, WS-Trust, WS-SecureConversation, WS-Policy, WS-PolicyAttachments, WS-PolicyAssertions
- Prev by thread:
RE: [ggf-ogsa-sec-wg] New specs released: WS-SecurityPolicy, WS-Trust, WS-SecureConversation, WS-Policy, WS-PolicyAttachments, WS-PolicyAssertions
- Next by thread:
[ggf-ogsa-sec-wg] Schedule for Security Workshop at GlobusWorld next week
- Index(es):