Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

(Response to Feedback Item 6) Key hashing algorithm SDP-MD09 #80

Closed
judielaine opened this issue May 24, 2018 · 0 comments
Closed

(Response to Feedback Item 6) Key hashing algorithm SDP-MD09 #80

judielaine opened this issue May 24, 2018 · 0 comments
Assignees
Labels
question Response to community feedback responded Pull request linked or response text proposed

Comments

@judielaine
Copy link
Collaborator

judielaine commented May 24, 2018

Feedback Item 6: SDP-MD09 - This is down to a software implementation issue, example, Java will not process an MD5 cert. Do you point that out and ask people to not do things that will cause problems, or do you stick to the spec and say people should disregard the cert other than the key material?

  1. Suggest adding non-normative text that explains there is software out there that can’t not process the key, and you create interop problems with that software. SDP-MD06 has text about this.
  2. This should be a ‘SHOULD NOT’ - ignore cert contents beyond the key material.
  3. Look at SDP-MD06 as an example - it mixes normative and non-normative text in a way that would help with MD09.
  4. Could merge 09 and 06, move the text from 09 into 06.
  5. Making this a list of non-musts (shoulds/should-nots)
  6. Should we continue to make this concession, or should we strike out the wishy-washy support concession? We have struck out wishy-washy-ness almost everywhere else?
  7. Scott suggests just making this language non-normative, italicized it. ‘You may run into issues with noncompliant software and cert content beyond the key’, roll that into MD-06. By not ignoring the cert material, you are violating SAML [MD-IOP]
  8. “Any such software is noncompliant with the specification”
This was referenced May 30, 2018
@ergood ergood changed the title Issue 6: Key hashing algorithm SDP-MD09 (Response to Feedback Item 6) Key hashing algorithm SDP-MD09 Jun 14, 2018
@ergood ergood added question Response to community feedback responded Pull request linked or response text proposed labels Jul 12, 2018
@nckroy nckroy closed this as completed Jul 26, 2018
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
question Response to community feedback responded Pull request linked or response text proposed
Projects
None yet
Development

No branches or pull requests

3 participants