Subject RE: VO challenges - article
From "Jones, Mark B" <Mark.B.Jones@xxxxxxxxxxx>
Date Tue, 27 Oct 2015 16:24:00 +0000

> > IdP has a broader functional scope in SAML than just authentication. Once
> you have a proxy IdP that's doing all the real work of attributes and
> provisioning and so forth, the small bit left is easy to replace with a 
> commodity.
> +1
> I think what you're saying (and I strongly agree) that the authentication
> providers will whither while the attribute providers will flourish.
> Tom
I agree, but only if users end up with fewer passwords to manage than they 
have currently.

