Re: [Ace] draft-ietf-ace-oauth-authz

Seitz Ludwig <ludwig.seitz@combitech.se> Mon, 04 May 2020 06:43 UTC

Return-Path: <ludwig.seitz@combitech.se>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 142843A0C3C for <ace@ietfa.amsl.com>; Sun, 3 May 2020 23:43:16 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.897
X-Spam-Level:
X-Spam-Status: No, score=-1.897 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5Q4QaWEdo-ty for <ace@ietfa.amsl.com>; Sun, 3 May 2020 23:43:13 -0700 (PDT)
Received: from weald2.air.saab.se (weald2.air.saab.se [136.163.212.4]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0FCC13A0C3D for <ace@ietf.org>; Sun, 3 May 2020 23:43:02 -0700 (PDT)
Received: from mailhub2.air.saab.se ([136.163.213.5]) by weald2.air.saab.se (8.14.4/8.14.4) with ESMTP id 0446gnBj025734 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL); Mon, 4 May 2020 08:42:49 +0200
Received: from corpappl16349.corp.saab.se (corpappl16349.corp.saab.se [10.12.12.112]) by mailhub2.air.saab.se (8.13.8/8.13.8) with ESMTP id 0446gY8t026988 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL); Mon, 4 May 2020 08:42:34 +0200
Received: from corpappl16593.corp.saab.se (10.12.12.125) by corpappl16349.corp.saab.se (10.12.12.112) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.1847.3; Mon, 4 May 2020 08:42:34 +0200
Received: from corpappl16593.corp.saab.se ([fe80::b4c9:ca69:a80d:fa3]) by corpappl16593.corp.saab.se ([fe80::b4c9:ca69:a80d:fa3%4]) with mapi id 15.01.1847.009; Mon, 4 May 2020 08:42:34 +0200
From: Seitz Ludwig <ludwig.seitz@combitech.se>
To: "consultancy@vanderstok.org" <consultancy@vanderstok.org>, Jim Schaad <ietf@augustcellars.com>
CC: 'Ace' <ace@ietf.org>
Thread-Topic: [Ace] draft-ietf-ace-oauth-authz
Thread-Index: AQHWHrytAFclswHm7kqaQRCF7GbsM6iRqECAgAED/ACABNRcQA==
Date: Mon, 04 May 2020 06:42:34 +0000
Message-ID: <6cab8f7fcdbf441fbc3ca747cfb09a72@combitech.se>
References: <56d31e581571721e176b59db20e08c23@bbhmail.nl> <00f101d61f03$a26bb920$e7432b60$@augustcellars.com> <0873a3115cab89036002cf42b1c97608@bbhmail.nl>
In-Reply-To: <0873a3115cab89036002cf42b1c97608@bbhmail.nl>
Accept-Language: en-SE, sv-SE, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.12.13.198]
Content-Type: multipart/alternative; boundary="_000_6cab8f7fcdbf441fbc3ca747cfb09a72combitechse_"
MIME-Version: 1.0
X-Saab-MailScanner-Information: Please contact the ISP for more information
X-Saab-MailScanner-ID: 0446gY8t026988
X-Saab-MailScanner: Found to be clean
X-Saab-MailScanner-SpamCheck: not spam, SpamAssassin (not cached, score=-0.498, required 5, autolearn=not spam, ALL_TRUSTED -1.00, BAYES_00 -0.50, HTML_MESSAGE 0.00, SURBL_BLOCKED 1.00, URIBL_BLOCKED 0.00)
X-Saab-MailScanner-From: ludwig.seitz@combitech.se
X-Saab-MailScanner-Watermark: 1589179355.36516@h31Z06ZE7p5szP8oRmoa8Q
X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.6.2 (weald2.air.saab.se [136.163.212.4]); Mon, 04 May 2020 08:42:49 +0200 (CEST)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/6Lbptthp5Nhj-YrIr5z__af-1xY>
Subject: Re: [Ace] draft-ietf-ace-oauth-authz
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 04 May 2020 06:43:16 -0000

For the sake of getting the document finished before I die of old age ;-) would it be possible to specify this in a separate document?

/Ludwig

From: Ace <ace-bounces@ietf.org> On Behalf Of Peter van der Stok
Sent: den 1 maj 2020 08:56
To: Jim Schaad <ietf@augustcellars.com>
Cc: consultancy@vanderstok.org; 'Ace' <ace@ietf.org>
Subject: Re: [Ace] draft-ietf-ace-oauth-authz

HI Jim,

I try to answer your question,

When I want to access an OCF device I can find its IP address through service discovery (rfc7252 section 7) using an rt-value registered at the IANA core parameters registry.
For example, when I want to initialize the AS I have to type in the IP address of the AS.
From that moment on keys and certificates can be compared to continue initialization.

Using service discovery can automate that process.

My request is that authz draft registers an rt-value in core parameters registry for service discovery of the AS,
unless a different process has already been established for AS initialization.

Many thanks,

peter


Jim Schaad schreef op 2020-04-30 17:25:


What do you expect to see?   By default a client needs to know that something is an AS and have a key to interact with that AS.



Jim





From: Ace <ace-bounces@ietf.org<mailto:ace-bounces@ietf.org>> On Behalf Of Peter van der Stok
Sent: Wednesday, April 29, 2020 11:57 PM
To: Ace <ace@ietf.org<mailto:ace@ietf.org>>
Subject: [Ace] draft-ietf-ace-oauth-authz



Hi authz authors,,

While implementing a version of AS, I noticed that there is no resource type (rt) registered for /.well-known/core discovery.
Is this voluntary?
If not, can it still be added?

thanks,

peter

--

Peter van der Stok
vanderstok consultancy
mailto: consultancy@vanderstok.org<mailto:consultancy@vanderstok.org>, stokcons@bbhmail.nl<mailto:stokcons@bbhmail.nl>
www: www.vanderstok.org<http://www.vanderstok.org>
tel NL: +31(0)492474673     F: +33(0)966015248

_______________________________________________
Ace mailing list
Ace@ietf.org<mailto:Ace@ietf.org>
https://www.ietf.org/mailman/listinfo/ace