Giter Club home page Giter Club logo

bachelor-thesis-use-of-dane-in-identity-fedeartions's People

Contributors

christofferholmstedt avatar sopber-8 avatar

Stargazers

 avatar

Watchers

 avatar  avatar  avatar

Forkers

sopber-8

bachelor-thesis-use-of-dane-in-identity-fedeartions's Issues

References to DANE draft and other RFC drafts needs an update

References to DANE draft and other RFC drafts need an update clearly stating that it's "Work in progress".

"Internet-Drafts are draft documents valid for a maximum of six months
and may be updated, replaced, or obsoleted by other documents at any
time. It is inappropriate to use Internet-Drafts as reference
material or to cite them other than as "work in progress.""

Comments on text in chapter 3 - Identity federations and certificates

...university’s log in page and signs... change "log in" to "login"
...this theses... change "theses" to "thesis" (?)

..."The SAML ”standard defines an XML-based
framework for describing and exchanging security information between on-line business
partners” [11, p. 8]." ...Detta känns ihopklämt på ett konstigt sätt kanske ändra till något så som "According to XYZ(referens) the purpose with SAML is to ABC"

..."(key information or public keys)" change "or" to "and"

..."Federation Operator" or "Federation provider"?

..."The FO is not apart of the SAML" change "apart" to "a part"

..."on request in order to have the user log in" change "log in" to "login" (?)

..." The Web Browser SSO Profile that stats that" change "stats" to "says"

..."descirbed" misspelled

..." user agent deliver to the IdP through an HTTP redirect, post or artifact binding" not sure if "artifact binding" should be listed here. (?)

..."LDAP Lightweight Directory Access Protocol" change to "some back-end engine with user credentials, in our testing environment we used the Lightweight Directory Access Protocol (LDAP)"

..."not a redirect binding since the response most often is longer than the URL permitted by most user agents." is this correct. I assume it's still a redirect but instead of using the GET values the SAML message is sent as a POST message. But that is perhaps what this is saying.

..."...least one authentication assertion and fallows with the client receiving..." what is the meaning of this sentence?

CERTIFICATES
SAML2 säger att man måste använda SSL/TLS men vad säger Web SSO profile?

Allmänt långa citat som gör det svårt att följa vad det hela handlar om.

Write a proper Bind DNS guide

Write a proper installation guide for Bind 9 on Ubuntu 11.10 or 12.04 when it can be tested step by step on a new machine.

Write a proper OpenDNSSEC guide

Write a proper OpenDNSSEC installation, configuration and usage guide when a virtual machine is available to test all steps on.

Write a proper SoftHSM guide

Write a proper SoftHSM installation, configuration and usage guide when a virtual machine is available to test all steps on.

Theory - 3.2.2 Certificates in SAML

"A TLS/SSL handshake example adapted to the identity federation influenced by [17]"

Add the name of the reference for better flow in the text.

Add description about future work

Short text about what next step is about identity federations and DANE

  1. Next step is DANE with TLS for clients (and servers) because this is the first draft that will reach RFC standard.

Theory 3.2.1 Certificates in general

"the validation of Alice and Bob with the help of a signed certificates and is based on[15]"

Add the name on the reference aswell for better flow in the text.

Theory - 3.2.1 Certificates in general

"...Alice can encrypt the private message with the public key and only Bob with the private key can decrypt the message."

Need to make it clear that it's Bob's public key that is used in this scenario.

Ulfs kommentarer

Abstract

  • Språk

Preface

  • Språk

1.1 Background

  • A new solution will be built upon the concept of identity federations. Förklara med om elegnämnden.

1.4

  • Språk

2.1

  • Språk
  • Lägg till eventuell ändring om hur vi har använt testmiljön

3

  • Bra skrivet

4

  • Bra skrivet

5

  • Vi säger vad vi "tycker"...mer uppbyggnad behövs.

5.1.1.
We belive that it is this initial sharing of information that would benefit
the most if it could be done solely over the internet and it’s possible if we put trust in
the DNSSEC infrastructure

Bygg vidare med tydligare diskussion.

Furthermore, our belief is that within future SAML specifications and/or when estab-
lishing new federations, more strict rules concerning metadata must be agreed upon to
secure the data integrity of the metadata.

Fixa till och säg att vidare arbete behövs.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.