Thanks Hal,
This looks good to me.
Regards,
Erik
Hal Lockhart wrote:
> I agree, but suggest changing the section 5.1 text as follows.
>
> --8<--
> An XACMLPolicy Statement enclosed in a signed SAML assertion MAY be used as a method of authentication of XACML policies. In this case the Policy or PolicySet MUST NOT contain an XACML