Re: [abfab] Review of draft-ietf-abfab-aaa-saml-11

Stefan Paetow <Stefan.Paetow@jisc.ac.uk> Mon, 19 October 2015 21:39 UTC

Return-Path: <stefan.paetow@jisc.ac.uk>
X-Original-To: abfab@ietfa.amsl.com
Delivered-To: abfab@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D4A9F1B2D07 for <abfab@ietfa.amsl.com>; Mon, 19 Oct 2015 14:39:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.002
X-Spam-Level:
X-Spam-Status: No, score=-2.002 tagged_above=-999 required=5 tests=[BAYES_40=-0.001, MIME_8BIT_HEADER=0.3, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PQKsSiXzCtkB for <abfab@ietfa.amsl.com>; Mon, 19 Oct 2015 14:38:58 -0700 (PDT)
Received: from eu-smtp-delivery-189.mimecast.com (eu-smtp-delivery-189.mimecast.com [146.101.78.189]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 020821B2D03 for <abfab@ietf.org>; Mon, 19 Oct 2015 14:38:54 -0700 (PDT)
Received: from emea01-db3-obe.outbound.protection.outlook.com (mail-db3lrp0082.outbound.protection.outlook.com [213.199.154.82]) (Using TLS) by eu-smtp-1.mimecast.com with ESMTP id uk-mta-13-eKMT0TmBRdCZrMjyIP4nAw-1; Mon, 19 Oct 2015 22:38:50 +0100
Received: from VI1PR07MB1391.eurprd07.prod.outlook.com (10.164.92.157) by VI1PR07MB1391.eurprd07.prod.outlook.com (10.164.92.157) with Microsoft SMTP Server (TLS) id 15.1.300.14; Mon, 19 Oct 2015 21:38:48 +0000
Received: from VI1PR07MB1391.eurprd07.prod.outlook.com ([10.164.92.157]) by VI1PR07MB1391.eurprd07.prod.outlook.com ([10.164.92.157]) with mapi id 15.01.0300.010; Mon, 19 Oct 2015 21:38:48 +0000
From: Stefan Paetow <Stefan.Paetow@jisc.ac.uk>
To: Sam Hartman <hartmans@painless-security.com>, Alejandro Pérez Méndez <alex@um.es>
Thread-Topic: [abfab] Review of draft-ietf-abfab-aaa-saml-11
Thread-Index: AdEHswO8BUpjHdymSS6jZh1XsrZH3QARbTQAAAZRl6YAoB2ZAA==
Date: Mon, 19 Oct 2015 21:38:48 +0000
Message-ID: <D24AD52D.C0B3%stefan.paetow@jisc.ac.uk>
References: <9846A6064BD102419D06814DD0D78DE112712074@CIO-TNC-D2MBX02.osuad.osu.edu> <5620C974.30400@um.es> <tslmvvjug51.fsf@mit.edu>
In-Reply-To: <tslmvvjug51.fsf@mit.edu>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-messagesentrepresentingtype: 1
x-originating-ip: [109.176.232.150]
x-microsoft-exchange-diagnostics: 1; VI1PR07MB1391; 5:Ny7d8d6v8A6ItTWBaACpXUqLfSokieYgg28usWBFhibTD6X2ejLZwbaR28emBZkwga46iL05jFkXPiZMOU3cf3Gp6ojO9pJpg+IMkE0OkULL9zcBNk5vi3CvOonyEIEPz4tTj5hMWfbja9uplLWypg==; 24:YUYxHTawKav0DMyi6LUIPVzw697+Iod2+AHRNtKgVILDbHVjwK1L0MeZ0s8U10gV7A4l8gVP0RSizbzJ0m4/E/17G3WrMTnDSi/uwmG4WPk=; 20:bctFDu6iYV7w03uXbKBIr9ElqFJXqiUfplj/H0mbb+ldQ19njxUAVx1eGJlfw9RMutl8SnjJC9rERJ3b6MMH4WgarIOfCajMp2seWwYw197yO8kzmKaDEr4zsD+akY2bNswjrL1l5jmkVzLnbwC/2HL4bqmXQCr0Pt7qIa4kcl4=
x-microsoft-antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:VI1PR07MB1391;
x-microsoft-antispam-prvs: <VI1PR07MB139128EB867DDFFECE78ACABC83A0@VI1PR07MB1391.eurprd07.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(274715658323672)(151762989364857);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(601004)(2401047)(8121501046)(5005006)(520078)(3002001); SRVR:VI1PR07MB1391; BCL:0; PCL:0; RULEID:; SRVR:VI1PR07MB1391;
x-forefront-prvs: 07349BFAD2
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(6009001)(199003)(189002)(101416001)(19580405001)(19580395003)(87936001)(64706001)(10400500002)(97736004)(11100500001)(66066001)(92566002)(86362001)(5001960100002)(5001770100001)(81156007)(36756003)(74482002)(105586002)(189998001)(76176999)(46102003)(2950100001)(54356999)(2900100001)(50986999)(230783001)(5007970100001)(102836002)(77096005)(5008740100001)(5002640100001)(5004730100002)(40100003)(106356001)(122556002); DIR:OUT; SFP:1101; SCL:1; SRVR:VI1PR07MB1391; H:VI1PR07MB1391.eurprd07.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
spamdiagnosticoutput: 1:23
spamdiagnosticmetadata: NSPM
Content-ID: <3E8933A7A90BF04F87C4FC73064C4518@eurprd07.prod.outlook.com>
MIME-Version: 1.0
X-OriginatorOrg: jisc.ac.uk
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 Oct 2015 21:38:48.3745 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 48f9394d-8a14-4d27-82a6-f35f12361205
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR07MB1391
X-MC-Unique: eKMT0TmBRdCZrMjyIP4nAw-1
Content-Type: text/plain; charset="WINDOWS-1252"
Content-Transfer-Encoding: quoted-printable
Archived-At: <http://mailarchive.ietf.org/arch/msg/abfab/vxs5pV0kU8UlVJBqCWTnyPba_YY>
Cc: "abfab@ietf.org" <abfab@ietf.org>
Subject: Re: [abfab] Review of draft-ietf-abfab-aaa-saml-11
X-BeenThere: abfab@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Application Bridging, Federated Authentication Beyond \(the web\)" <abfab.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/abfab>, <mailto:abfab-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/abfab/>
List-Post: <mailto:abfab@ietf.org>
List-Help: <mailto:abfab-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/abfab>, <mailto:abfab-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 19 Oct 2015 21:39:01 -0000

>    "In the case of a SAML processing error, the RADIUS
> server MAY include a SAML response message with an
> appropriate value for the <samlp:Status> element within
> the Access-Accept or Access-Reject packet to notify the client.
> Alternatively, the RADIUS server can respond without a SAML-Message
>attribute.".
>
>Or did we end up calling it SAML-Protocol?

Which? The RADIUS attribute? SAML-AAA-Assertion. I don't see any other
SAML-named attributes anywhere in a FR dictionary.

Stefan Paetow
Moonshot Industry & Research Liaison Coordinator

t: +44 (0)1235 822 125
gpg: 0x3FCE5142
xmpp: stefanp@jabber.dev.ja.net
skype: stefan.paetow.janet

jisc.ac.uk

Jisc is a registered charity (number 1149740) and a company limited by
guarantee which is registered in England under Company No. 5747339, VAT
No. GB 197 0632 86. Jisc¹s registered office is: One Castlepark, Tower
Hill, Bristol, BS2 0JA. T 0203 697 5800.

Jisc Collections and Janet Ltd. is a wholly owned Jisc subsidiary and a
company limited by guarantee which is registered in England under Company
No. number 2881024, VAT No. GB 197 0632 86. The registered office is:
Lumen House, Library Avenue, Harwell, Didcot, Oxfordshire, OX11 0SG. T
01235 822200.