X-Git-Url: http://git.onelab.eu/?a=blobdiff_plain;f=sfa%2Ftrust%2Fcredential.xsd;h=c5f22f418d955f9972ac2fe1f6158e56e53b3182;hb=93c4c358fd8b0cd49cb2ece9c58737b883790482;hp=a57b94c0ef86d0f7e4587cade6cb6c2f4db1f523;hpb=413e217f33fe4a6148bba4edd8a761087bb22c12;p=sfa.git diff --git a/sfa/trust/credential.xsd b/sfa/trust/credential.xsd index a57b94c0..c5f22f41 100644 --- a/sfa/trust/credential.xsd +++ b/sfa/trust/credential.xsd @@ -1,214 +1,290 @@ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Can the ticket be delegated? - - - - - - A desciption of the resources that are being promised - - - - - - - - - The ticket must be "cashed in" by this date - - - - - - - - - - - - A credential granting privileges or a ticket. - - - - - - - - - - - - - - - - - - - Privileges or a ticket - - - - - - - - - - - - - - The type of this credential. Currently a Privilege set or a Ticket. - - - - - - - - - - - - A serial number. - - - - - GID of the owner of this credential. - - - - - URN of the owner. Not everyone can parse DER - - - - - GID of the target of this credential. - - - - - URN of the target. - - - - - UUID of this credential - - - - - Expires on - - - - - Optional Extensions - - - - - - - - - Parent that delegated to us - - - - - - - - - - - - - - + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + Can the ticket be delegated? + + + + + + A desciption of the resources that are being promised + + + + + + + + + The ticket must be "cashed in" by this date + + + + + + + + + + + + + + + + An ABAC RT0 statement, used only for type 'abac'. + + + + + + + + + + + + + + + + + + + + + + + + + + + An ABAC assertion containing a single RT0 statement, used only for type 'abac'. + + + + + + + + + + + + + + + + + + A credential granting privileges or a ticket or making an ABAC assertion. + + + + + + + + + + + + + + + + + + + Privileges or a ticket or an ABAC assertion + + + + + + + + + + + + + + + The type of this credential. Currently a Privilege set or a Ticket or ABAC. + + + + + + + + + + + + + A serial number. + + + + + GID of the owner of this credential. + + + + + URN of the owner. Not everyone can parse DER + + + + + GID of the target of this credential. + + + + + URN of the target. + + + + + UUID of this credential + + + + + Expires on in ISO8601 format but preferably RFC3339 + + + + + Optional Extensions + + + + + + + + + Parent that delegated to us + + + + + + + + + + + + + +