Skip to content

Commit

Permalink
Update future-proofed-and-federation-ready-enterprise-ids.adoc
Browse files Browse the repository at this point in the history
  • Loading branch information
khazelton authored Oct 8, 2021
1 parent 9a3b929 commit a0c47b8
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion future-proofed-and-federation-ready-enterprise-ids.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -27,7 +27,7 @@ The scope deliberately resembles, and often is, a DNS domain name, but is drawn

Relying parties should not treat this identifier as an email address for the subject as it is unlikely (though not precluded) for it to be valid for that purpose.

*The unique ID should not change as a result of a change to any other data associated with the subject (e.g., name, email address, age, organizational role)*
*The unique ID should not change as a result of a change to any other data associated with the subject (e.g., name, email address, age, organizational role)* This essentially forbids the use of name-based identifiers since it is impossible to guarantee that name-based identifiers will never change.

A given value MUST identify the same subject regardless of the context of use or the relying parties to which the Attribute is given. It is therefore to be assumed by relying parties that receive a given value that the same subject has been identified.

Expand Down

0 comments on commit a0c47b8

Please sign in to comment.