The AuthorizationDecisionStatement element supplies a statement
by the issuer that the request for access by the specified subject to the
specified resource has resulted in the specified decision on the basis of
some optionally specified evidence.
The following schema fragment specifies the expected content contained within
SAML AuthorizationDecisionStatement element.
<complexType name="AuthorizationDecisionStatementType">
<complexContent>
<extension base="{urn:oasis:names:tc:SAML:1.0:assertion}SubjectStatementAbstractType">
<sequence>
<element ref="{urn:oasis:names:tc:SAML:1.0:assertion}Action" maxOccurs="unbounded"/>
<element ref="{urn:oasis:names:tc:SAML:1.0:assertion}Evidence" minOccurs="0"/>
</sequence>
<attribute name="Decision" use="required" type="{urn:oasis:names:tc:SAML:1.0:assertion}DecisionType" />
<attribute name="Resource" use="required" type="{http://www.w3.org/2001/XMLSchema}anyURI" />
</extension>
</complexContent>
</complexType>
|