<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://www.w3.org/Bugs/Public/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4"
          urlbase="https://www.w3.org/Bugs/Public/"
          
          maintainer="sysbot+bugzilla@w3.org"
>

    <bug>
          <bug_id>3952</bug_id>
          
          <creation_ts>2006-11-04 16:01:41 +0000</creation_ts>
          <short_desc>Change optional example from MTOM to security (Guidelines and Primer)</short_desc>
          <delta_ts>2006-12-06 17:52:18 +0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WS-Policy</product>
          <component>Primer</component>
          <version>FPWD</version>
          <rep_platform>Macintosh</rep_platform>
          <op_sys>All</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords></keywords>
          <priority>P2</priority>
          <bug_severity>normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Frederick Hirsch">w3c</reporter>
          <assigned_to name="Frederick Hirsch">w3c</assigned_to>
          
          
          <qa_contact name="Web Services Policy WG QA List">public-ws-policy-qa</qa_contact>

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>12825</commentid>
    <comment_count>0</comment_count>
    <who name="Frederick Hirsch">w3c</who>
    <bug_when>2006-11-04 16:01:41 +0000</bug_when>
    <thetext>Target: Guidelines, primer

Justification: 

MTOM is a very bad example for optionality since it raises ambiguities depending on message flow. Best practices might suggest using different endpoints for with and without MTOM. Reason is that MTOM assertion mandates usage of MTOM on both requests and responses, so request without MTOM is ambiguous, is it a message that wouldn&apos;t naturally use MTOM, is it in error, or does it signal desire not to use MTOM.

Proposal:
Change to example using WS-SecurityPolicy, for example that messages optionally may need timestamp using Timestamp assertion.

Test: review guidelines and primer.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>13087</commentid>
    <comment_count>1</comment_count>
    <who name="Daniel Roth">Daniel.Roth</who>
    <bug_when>2006-12-06 17:52:18 +0000</bug_when>
    <thetext>Proposal updated as attached to http://lists.w3.org/Archives/Public/public-ws-policy/2006Dec/0018.html.
See resolution at http://www.w3.org/2006/12/06-ws-policy-irc#T17-37-30.</thetext>
  </long_desc>
      
      

    </bug>

</bugzilla>