@techreport{guenther-saml-policy-00, number = {draft-guenther-saml-policy-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/html/draft-guenther-saml-policy-00}, author = {Christian Guenther}, title = {{SAML in Authorization Policies}}, pagetotal = 13, year = 2005, month = feb, day = 16, abstract = {Rules of an authorization policy prescribe under which conditions an entity or subject has which permissions. Existing policies support identity-based authorization by matching the authenticated identity of the entity requesting access to a resource with the available policies. This document is about formulating policy rules that express conditions with respect to SAML assertions, thereby supporting non-identity-based authorization and anonymity.}, }