On 11-Feb-06, at 3:17 PM, Eric Rescorla wrote:
The idea behind DIX is to have a third-party authentication system where a user can have a preexisting relationship with a third party that then vouches for its identity to the system site/server that it actually wants to communicate with.
Yes, but there's more. We're also moving properties from one party to the other, where the property could be self or third party asserted. John
This is, of course, a pretty common desire and there are already a lot of systems that do it (Kerberos, PKI, etc.). The particular scheme described in this draft is based on Web forms, Javascript, and redirection.
_______________________________________________ dix mailing list [email protected] https://www1.ietf.org/mailman/listinfo/dix
