[PROPOSAL] bare response / bare request

Dick Hardt dick at sxip.com
Wed Oct 4 02:42:14 UTC 2006


On 2-Oct-06, at 12:34 PM, Kevin Turner wrote:

> On Sat, 2006-09-30 at 20:09 -0400, Dick Hardt wrote:
>> Motivating Use Case
>> ----------------------------
>> The IdP would like to allow the user to click a link on the IdP to
>> login to an RP. This requires a bare response to be able to be sent.
>
> How will RPs that customarily use a request nonce treat this?

There will not be a request nonce -- could have the IdP say "none"





More information about the specs mailing list