X-Git-Url: http://git.onelab.eu/?a=blobdiff_plain;f=sfa%2Ftrust%2Fcredential.xsd;h=c5f22f418d955f9972ac2fe1f6158e56e53b3182;hb=93c4c358fd8b0cd49cb2ece9c58737b883790482;hp=a57b94c0ef86d0f7e4587cade6cb6c2f4db1f523;hpb=413e217f33fe4a6148bba4edd8a761087bb22c12;p=sfa.git
diff --git a/sfa/trust/credential.xsd b/sfa/trust/credential.xsd
index a57b94c0..c5f22f41 100644
--- a/sfa/trust/credential.xsd
+++ b/sfa/trust/credential.xsd
@@ -1,214 +1,290 @@
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
- Can the ticket be delegated?
-
-
-
-
-
- A desciption of the resources that are being promised
-
-
-
-
-
-
-
-
- The ticket must be "cashed in" by this date
-
-
-
-
-
-
-
-
-
-
-
- A credential granting privileges or a ticket.
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
- Privileges or a ticket
-
-
-
-
-
-
-
-
-
-
-
-
-
- The type of this credential. Currently a Privilege set or a Ticket.
-
-
-
-
-
-
-
-
-
-
-
- A serial number.
-
-
-
-
- GID of the owner of this credential.
-
-
-
-
- URN of the owner. Not everyone can parse DER
-
-
-
-
- GID of the target of this credential.
-
-
-
-
- URN of the target.
-
-
-
-
- UUID of this credential
-
-
-
-
- Expires on
-
-
-
-
- Optional Extensions
-
-
-
-
-
-
-
-
- Parent that delegated to us
-
-
-
-
-
-
-
-
-
-
-
-
-
-
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Can the ticket be delegated?
+
+
+
+
+
+ A desciption of the resources that are being promised
+
+
+
+
+
+
+
+
+ The ticket must be "cashed in" by this date
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ An ABAC RT0 statement, used only for type 'abac'.
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ An ABAC assertion containing a single RT0 statement, used only for type 'abac'.
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ A credential granting privileges or a ticket or making an ABAC assertion.
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Privileges or a ticket or an ABAC assertion
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ The type of this credential. Currently a Privilege set or a Ticket or ABAC.
+
+
+
+
+
+
+
+
+
+
+
+
+ A serial number.
+
+
+
+
+ GID of the owner of this credential.
+
+
+
+
+ URN of the owner. Not everyone can parse DER
+
+
+
+
+ GID of the target of this credential.
+
+
+
+
+ URN of the target.
+
+
+
+
+ UUID of this credential
+
+
+
+
+ Expires on in ISO8601 format but preferably RFC3339
+
+
+
+
+ Optional Extensions
+
+
+
+
+
+
+
+
+ Parent that delegated to us
+
+
+
+
+
+
+
+
+
+
+
+
+
+