[OpenID] host-meta and "acct:"

Peter Williams home_pw at msn.com
Fri Nov 6 07:35:57 UTC 2009




Will Norris wrote:
> 
> 
>  I'm not completely sure what to make of an XRD that does not  
> identify its subject (by the <Subject> element or otherwise).  There  
> may be a use case for it, but nothing immediately comes to mind.
> 
> 

if one views the XRD 1.0 format as a replacement for the X.509 v3 format
(and such as a host-meta profile of XRD 1.0 as a replacement for the
domain-cert profile of X.509 v3), then you now have a ephemeral XRD -
created in certain SSL ciphersuites. One would put the (non.X509) XRDs in
the various "certificate" fields (as TLS drafts at least used to allow). 
The ephemeral value one puts there per the ciphersuite is not metadata
"about" anything, however. Its not even metadata; its just a blob in XRD
format.

-- 
View this message in context: http://old.nabble.com/host-meta-and-%22acct%3A%22-tp26079872p26227896.html
Sent from the OpenID - General mailing list archive at Nabble.com.



More information about the general mailing list