Additionally, In the diagram and ToC you mention ActiveSTS before PassiveSTS. Is that just for alphabetical reasons? Seems to me that PassiveSTS would come before ActiveSTS. The rationale being that ActiveSTS wouldn't exist without a token from the Passive and that PassiveSTS needs to process the users creds before the ActiveSTS can process the token retrieved from the PassiveSTS.
Same is also kind of true for the BS v. ConfigService Scenario. Sorry if this is too nit-picky, just something to think about. -Ben Dewey -----Original Message----- From: Nick Hauenstein [mailto:[email protected]] Sent: Tuesday, December 08, 2009 7:24 PM To: [email protected] Subject: StockTrader Sample Documentation Updates Hello All, I took a stab at beginning documentation work for the StockTrader sample application. I am not a great scholar of claims-based security so if anyone would like to review and possibly edit/delete what is there, go right ahead. The main pages I touched were the following (and their respective children): http://cwiki.apache.org/confluence/display/STONEHENGE/Stonehenge+StockTrader+Sample+Application http://cwiki.apache.org/confluence/display/STONEHENGE/StockTrader+Client http://cwiki.apache.org/confluence/display/STONEHENGE/StockTrader+Business+Service http://cwiki.apache.org/confluence/display/STONEHENGE/StockTrader+Configuration+Service http://cwiki.apache.org/confluence/display/STONEHENGE/StockTrader+Order+Processor+Service http://cwiki.apache.org/confluence/display/STONEHENGE/StockTrader+Database If either of the main diagrams will require update, let me know and I can tweak them. Also, I'm holding off on creating the pages for the Active STS and Passive STS until everything is in working order and the precise requirements for each are known and well defined. - Nick
